News: Welcome back to Bullworth! If you haven't already, you will need to reset your password..


Author Topic: Bully-Board Was Compromised  (Read 5495 times)

0 Members and 1 Guest are viewing this topic.

Offline AJ Collins

  • Administrator
  • Full Member
  • *****
  • Posts: 176
  • Gender: Male
    • View Profile
    • GZWN
Bully-Board Was Compromised
« on: March 13, 2021, 06:33:02 PM »
All,

Earlier this week Bully-Board was compromised using an inactive administrator's account. Unfortunately, logs indicate the threat actor used Simple Machine Forum's backup utility to ex-filtrate a backup of the database. This backup would have contained hashed passwords, Email addresses, posts, private messages, IP addresses, and anything else you may have shared with the forum. If you re-used your password anywhere, I'd highly advise you to change them immediately.

After discovering the compromise, I took the forum offline for a few days to dig through files and the database to check for any further indications of compromise. While things looked clean, in abundance of caution I've spent a few hours rebuilding the site from the latest clean version of Simple Machines Forum. Past administrators who have not logged in for a few years have had their permissions revoked.

I've also scrambled password hashes - meaning you will need to use the password reset if this is your first time visiting since the compromise.

I apologize for the inconvenience this caused.

Thanks,
AJ

Offline Razc01na

  • Lord Slayer
  • Full Member
  • ***
  • Posts: 156
  • Gender: Male
  • Doom is life
    • View Profile
Re: Bully-Board Was Compromised
« Reply #1 on: March 14, 2021, 03:10:43 PM »
Hope everything is ok now... :)

Offline Dave

  • Global Moderator
  • Define "Life" For Me Again...
  • *****
  • Posts: 36,234
  • Gender: Male
    • View Profile
Re: Bully-Board Was Compromised
« Reply #2 on: March 16, 2021, 03:40:10 PM »
Thought I was going insane! Tried to login but kept saying my password was wrong when I knew it wasn't.

Thanks for the heads up AJ. Glad everything is good now.

Offline Ibra35

  • Newbie
  • *
  • Posts: 1
    • View Profile
Re: Bully-Board Was Compromised
« Reply #3 on: March 20, 2021, 06:03:16 PM »
I would like to talk to you regarding this talk in pm please contact me

Offline BonusStage

  • Jr. Member
  • **
  • Posts: 2
    • View Profile
Re: Bully-Board Was Compromised
« Reply #4 on: March 23, 2021, 04:36:36 PM »
Uh OOPS I wish I saw this sooner lol
I can't log in even with the reset password feature (tis Hayley btw)
So uh, *twiddles thumbs*
I sent a message to Cobra so I hope his account is fine hnn (he's the only active admin that I know of soooo)
« Last Edit: March 23, 2021, 04:39:40 PM by BonusStage »

Offline Hayley

  • _( :⁍ 」 )_
  • Global Moderator
  • I Live Here
  • *****
  • Posts: 17,006
    • View Profile
Re: Bully-Board Was Compromised
« Reply #5 on: March 23, 2021, 04:49:54 PM »
WE GOOCHI BOIS

Offline Aladdin

  • Jr. Member
  • **
  • Posts: 95
  • Gender: Male
  • We goin' wild.
    • View Profile
Re: Bully-Board Was Compromised
« Reply #6 on: March 27, 2021, 09:13:35 AM »
Looks pretty neat and dope ngl.