WelcomeWelcome | FAQFAQ | DownloadsDownloads | WikiWiki

Author Topic: URGENT: Hacker/fishing attack on TC forum or "just me" situation  (Read 2427 times)

Offline TT

  • Newbie
  • *
  • Posts: 45
Hi there,

There is, possibly, ongoing a hacker/fishing attack on the forum, or it could be "just me" situation with a compromised DNS.

I have long suspected no https protocol for the forum is asking for troubles here.


So, here is what's happened seconds ago:

0) was logged-in "forever" checking the recent posts
1) refreshed that page this morning: somehow found my self to be "a guest"
2) typed in my credentials, pressed Enter
3) was greeted with stylized:

http://forum.tinycorelinux.net/index.php?action=login2

Error 403

We're sorry, but we could not fulfill your request for /index.php?action=login2 on this server.

You do not have permission to access this server. Before trying again, close your browser, run anti-virus and anti-spyware software and remove any viruses and spyware from your computer.

Your technical support key is: xxxx-xxxx-xxxx-xxxx

You can use this key to fix this problem yourself.
<-- a hidden symbol here

If you are unable to fix the problem yourself, please contact the WEBMA5TER and be sure to provide the technical support key shown above.

4) immediately changed password
5) reporting here and asking URGENTLY for an ACTION, or, at least, about the REVIEW of SECURITY POLICIES


All forum users, please, do report here.

Offline Greg Erskine

  • Sr. Member
  • ****
  • Posts: 402
Re: URGENT: Hacker/fishing attack on TC forum or "just me" situation
« Reply #1 on: January 04, 2021, 11:54:08 AM »
I have been getting that for a long time....months, maybe years.  :o

Offline TT

  • Newbie
  • *
  • Posts: 45
Re: URGENT: Hacker/fishing attack on TC forum or "just me" situation
« Reply #2 on: September 18, 2022, 11:54:44 AM »
any news on this?

again, the same situation.

Offline TT

  • Newbie
  • *
  • Posts: 45
Re: URGENT: Hacker/fishing attack on TC forum or "just me" situation
« Reply #3 on: September 23, 2022, 08:10:49 AM »
Hello, guys,

I am sad by my discovery, but today even

Code: [Select]
http://forum.tinycorelinux.net/index.php?action=login
had been blocked (locked out) for me (this time through Tor).

This post required some wizardy to share.

I am not accessing (neither I had) the forum from any "spam-like" IP.

It seems somebody is blocking out the very possibility of a login to 'forum.tinycorelinux.net' for certain IPs seemingly for no reason. And this situation is dynamic.

Today I am here to say that such practice, if confirmed, is absolutely unacceptable. Please check your blocking lists (if any) and review.

Glory to Ukraine.
« Last Edit: September 23, 2022, 08:17:34 AM by TT »

Offline TT

  • Newbie
  • *
  • Posts: 45
Re: URGENT: Hacker/fishing attack on TC forum or "just me" situation
« Reply #4 on: November 04, 2022, 10:58:21 PM »
Right after the forum has moved to a new hosting, I was able to log in without any troubles.

Now the trouble is back again, as described at the beginning.

I have to surgically prepare my cookies just to let you know about this and to be able to report this issue.

Please FIX THAT permissions, or whatever, ASAP.

Otherwise it simply scares potential contributors to the TC community away.