Community security breach

Discussion in 'SMF Discussions' started by lordi, Jul 23, 2013.

  1. lordi

    lordi Regular Member

    20
    6
    44
    just posted in their official sites :

    source : http://www.simplemachines.org/community/index.php?topic=508232.new#new

    :(
     
    cpvr, zappaDPJ and Brandon like this.
  2. Brandon

    Brandon Regular Member

    6,602
    1,707
    918
    thanks for the info @lordi
     
    lordi likes this.
  3. zappaDPJ

    zappaDPJ Regular Member

    250
    165
    418
  4. Autopilot

    Autopilot Regular Member

    514
    334
    462
    Security breaches are not uncommon with SMF and it is generally frowned upon to report them. Most people will avoid reporting this problem because they are met with denial IE there are no security issues.

    There is supposed to be a new version 2.1 that is said to fix many of the issues ignored in 2.0.4 and previous versions but one just has to look at the reluctance to fix current bugs and security issues to see this 2.1 update will in all likely hood be a new version of previous screw ups.
     
    Last edited: Jul 27, 2013
  5. lordi

    lordi Regular Member

    20
    6
    44
    based on their announcement , this breach is not because of flaw in SMF script, but because weak password used by one of their admin. like ubuntu case and other recent breach
     
  6. Autopilot

    Autopilot Regular Member

    514
    334
    462
    LOL the flaws are never in SMF according to their support people. It's either the user, or more often they say it is the host.
     
  7. cpvr

    cpvr Regular Member

    3,220
    823
    918
    Sucks that this happened. Just saw this email as well. I used SMF prior to moving to vBulletin 4.
     
  8. Autopilot

    Autopilot Regular Member

    514
    334
    462
    I've just read through many of the posts about this security issue on their forum and others and it would seem that person is being thrown under the bus.
     
    Last edited: Aug 3, 2013
  9. thebrad

    thebrad Regular Member

    172
    18
    349
    I seen this on Simplemachines it self its pretty bad i always trusted SMF in like covering my details but seems not, MyBB is better nevertheless.
     
    Autopilot likes this.

Share This Page