Help the PSP 3D community grow! Vote for us below:


| | Site Feedback - Let us know what you want. |
Welcome to PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums!
You are currently viewing our website as a guest, which gives you limited access to reply and interact to discussions and other members. By joining our free community, you will be able to post topics in the forums, communicate privately with other members, vote in polls, and access many other special features.
Registration is fast, simple, and absolutely free so join our community today!
| 
06-21-2006, 12:03 PM
| | Senior Member
My Mood: | | Join Date: Jan 2006 Location: Netherlands, Noord Brabant, Gemert Age: 18
Posts: 301
Points: 0.21 Donate | | | omg did they got the mysql database down? omg
man then they could have do worse things | 
06-21-2006, 12:07 PM
| | Senior Member | | Join Date: Nov 2005
Posts: 317
Points: 27.11 Donate | | Quote: |
Originally Posted by jsf Who would do something like that? | Script kiddies
__________________ Jap White PSP 2.5>2.6>1.5>2.0>1.5>2.71SEB>2.71SEB'>2.71SEB''>2.7 1SEC 
Jap Black PSP 1.5
1GB Memory Stick
GTA LCS - 41% Complete (Story Completed)
Fired UP - 100% Complete
Burnout Legends - 88% Complete (Gold in all races  )
For savefiles for emulators etc visit Emulator-Zone | 
06-21-2006, 12:07 PM
| | Is Da Best PSP3D Member
My Mood: | | Join Date: Dec 2005 Location: England
Posts: 649
Points: 1.76 Donate | | | atleast u do backups, if u didnt we may of had to start again | 
06-21-2006, 12:08 PM
| | The Venomous One
My Mood: | | Join Date: Jan 2006 Location: RockTown
Posts: 1,134
Points: 119.85 Donate | | | And that would be bad, horribly bad. | 
06-21-2006, 12:21 PM
| | Don't be a fool, wrap your tool!
My Mood: | | Join Date: Nov 2005 Location: VA, USA
Posts: 1,610
Points: 63,575.89 Donate | | | Allow me to clarify a few things...
We have located the criminals. An external organization is currently doing the favor of investigating the crime.
The attack was much bigger than it seems, maybe because of how quickly I managed to get the site back up (and since it occured during night/early dawn hours in the United States, where most of the traffic is from).
This was actually the first real hacking of our site. All the other times were DDoS attacks, but we have purchased DDoS protection for our server since then, so that shouldn't be that much of a problem anymore.
The attack affected the MySQL databases of the site, which basically is the core of all the information stored on the server. All threads, posts, members, news, and basically everything rely off of the interaction with the MySQL database in order to function and store information.
The hacker added an additional approx. 1,000 random values to each table in the database, in between other values, all over; a total mess. The only reason why the site is up and running at the moment is due to the fact that we also pay for hourly full site backups which go into a storage vault in our datacenter, as well as a backup dedicated server which contains an exact replica of all of the information on the site.
All these security measures have been added and payed for because, quite frankly, I'm tired of having to see a large, strong community going down, from past experience.
The method by which the hacker attacked was not a 'script kiddy', as it's called, form of attack, based on the logs, and most probably has some sort of financial backing, as most commonly attacks of this scale aren't done just because of hate.
The group of IPs we located which were inappropiately accessing the site's MySQL database without authorization were located in New York City, New York. They were neither firewalled, nor proxied, which leads me to believe that it was done through a public computer (be it a library, Internet hotspot, university, etc). The external organization that we are currently in contact with will track down and physically walk into the place where the hacking was done, and will deal with whatever evidence they find.
I would like to give a big thanks to ThePlanet for initiating such an in-depth investigation, and urging authorities to take action.
The site is currently patched of the MySQL flaw. The site could have been fixed even without the backups, but would have taken approximately 50 man hours.
Last edited by Robert A. : 06-21-2006 at 12:38 PM.
| 
06-21-2006, 12:22 PM
| | Senior Member | | Join Date: Jan 2006 Location: London
Posts: 750
Points: 17.05 Donate | | | Maybe it was another pspsite...I always am subspicious tht other psp sites try to
make psp3d look bad, but im probally wrong. Although tht guy 'Richard Bru' he
was suposidly sent by pspupdates to give us a bad reputation.
Lets go no further but I just had to say it. | 
06-21-2006, 12:33 PM
| | Senior Member
My Mood: | | Join Date: Nov 2005 Location: The Edge of Sanity Age: 16
Posts: 728
Points: 22.67 Donate | | | Just a couple of people that have nothing better to do than mess with psp sites. lol. I can't see any reason why someone would want to hack us. It's a total waste in my opinion, not that the site isn't good. Just that they wont be achieving anything by doing it. | 
06-21-2006, 12:39 PM
| | Jesus is in the building
My Mood: | | Join Date: Nov 2005 Location: Carle Place..yea its 1 sq mile but so what!!! Age: 19
Posts: 1,071
Points: 13.57 Donate | | | Well adding a few thousand random values to a Mysql table isnt something most people can easily pull off....Especialy in a short amount of time. Im not sure either if the downtime on StarEdit.net was from the same attack or not but they were at the same time. | 
06-21-2006, 12:45 PM
| | Senior Member | | Join Date: Jun 2006
Posts: 225
Points: 18.20 Donate | | | Well, shouldn't this be closed now, it has all been said etc...? | 
06-21-2006, 01:59 PM
| | Camouflage Condoms: They won't see you coming
My Mood: | | Join Date: Nov 2005 Location: Surrey, UK Age: 23
Posts: 1,310
Points: 216.01 Donate | | | Discracefull. Admin, well done on such a well managed and controlled reaction.
You made the right choice in contacting external authorities, and I'm sure the culprit(s) will be caught, as if this was done in a public place, the School/Library it was initiated on should have logs of Who was on the Computers, and When.
I'm Glad you are doing your best to protect this site. I'd be lost without it, and i'm sure many others will agree. Contrary to what "Hydra" said, i think that it couldn't be another PSP site, as PSP3D has no real enemies, so that is unlikely.
Well done, Admin, keep PSP3D's fire burning! | |
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | | | | Thread Tools | | | | Display Modes | Linear Mode |
Posting Rules
| You may not post new threads You may not post replies You may not post attachments You may not edit your posts HTML code is Off Points Per Thread View: 0.00 Points Per Thread: 1.00 Points Per Reply: 0.10 | | | | |