Jump to content


Photo
- - - - -

CHF Site restored - apparently a file was exploited


  • Please log in to reply
7 replies to this topic

#1 General_Zhaoyun

General_Zhaoyun

    Grand Valiant General of Imperial Han Army

  • Admin
  • 12,048 posts
  • Gender:Male
  • Location:Singapore (Taiwanese/Singapore Permanent Resident)
  • Interests:Chinese History, Chinese Philosophy and Religion, Chinese languages, Minnan/Taiwanese language, Classical Chinese, General Chinese Culture
  • Languages spoken:Mandarin, Taiwanese (Hokkien), English, German, Singlish
  • Ethnic Groups or Race:Han Chinese (Taiwanese Hoklo)
  • Main Interest in CHF:
    General Chinese Culture
  • Specialisation / Expertise:
    Chinese Language, History and Culture

Posted 07 May 2012 - 11:06 AM

Hi all,

I was informed by one CHF member and Sohan (Moderator) that CHF was "hacked" last week. If you go to Firefox/Google Chrome, it will indicate it has been hit by malware (virus or spyware). But you can browse CHF using internet explorer.

I've managed to restore all files dated back to last October (apparently some posts and members are "lost"), as well as done all security measures.

Apparently, according to my webhost report, a file was exploited which allowed the uploading of a PHP shell to the account, causing a compromise to the account.

I will be working on google chrome and firefox to get CHF back. In the meanwhile, you can still browse and use CHF using internet explorer.

I will try to work on the skin when I have the time (quite busy with my work).
Posted ImagePosted Image

"夫君子之行:靜以修身,儉以養德;非淡泊無以明志,非寧靜無以致遠。" - 諸葛亮

One should seek serenity to cultivate the body, thriftiness to cultivate the morals. If you are not simple and frugal, your ambition will not sparkle. If you are not calm and cool, you will not reach far. - Zhugeliang

#2 Sayoka

Sayoka

    Prefect (Taishou 太守)

  • CHF Beginner
  • 28 posts
  • Main Interest in CHF:
    Chinese History
  • Specialisation / Expertise:
    none

Posted 07 May 2012 - 11:22 AM

Is there any chance of recovering the data from October til now?

#3 General_Zhaoyun

General_Zhaoyun

    Grand Valiant General of Imperial Han Army

  • Admin
  • 12,048 posts
  • Gender:Male
  • Location:Singapore (Taiwanese/Singapore Permanent Resident)
  • Interests:Chinese History, Chinese Philosophy and Religion, Chinese languages, Minnan/Taiwanese language, Classical Chinese, General Chinese Culture
  • Languages spoken:Mandarin, Taiwanese (Hokkien), English, German, Singlish
  • Ethnic Groups or Race:Han Chinese (Taiwanese Hoklo)
  • Main Interest in CHF:
    General Chinese Culture
  • Specialisation / Expertise:
    Chinese Language, History and Culture

Posted 08 May 2012 - 07:41 AM

Is there any chance of recovering the data from October til now?


Unfortunately, the latest backup is corrupted with some files infested with malware. I do daily backup. Therefore, if you try to restore that database, the same problem will occur. Therefore, I've to restore an older database with the last version of software, and then upgraded the software and database to the lastest version.

So, I won't be able to recover the data from October till now. So sorry for that.
Posted ImagePosted Image

"夫君子之行:靜以修身,儉以養德;非淡泊無以明志,非寧靜無以致遠。" - 諸葛亮

One should seek serenity to cultivate the body, thriftiness to cultivate the morals. If you are not simple and frugal, your ambition will not sparkle. If you are not calm and cool, you will not reach far. - Zhugeliang

#4 ahxiang

ahxiang

    Supreme Censor (Yushi Dafu 御史大夫)

  • Entry Scholar (Xiucai)
  • 1,181 posts

Posted 08 May 2012 - 05:16 PM

Unfortunately, the latest backup is corrupted with some files infested with malware. I do daily backup. Therefore, if you try to restore that database, the same problem will occur. Therefore, I've to restore an older database with the last version of software, and then upgraded the software and database to the lastest version.

So, I won't be able to recover the data from October till now. So sorry for that.


Can you restore a recent malware-infested copy to a different server and open it to non-public traffic, so that we could manually retrieve some of the posts made in the last half a year? Otherwise, there is a credibility issue with your site.
Posted Image

#5 Sayoka

Sayoka

    Prefect (Taishou 太守)

  • CHF Beginner
  • 28 posts
  • Main Interest in CHF:
    Chinese History
  • Specialisation / Expertise:
    none

Posted 08 May 2012 - 06:37 PM

Unfortunately, the latest backup is corrupted with some files infested with malware. I do daily backup. Therefore, if you try to restore that database, the same problem will occur. Therefore, I've to restore an older database with the last version of software, and then upgraded the software and database to the lastest version.

So, I won't be able to recover the data from October till now. So sorry for that.

Okay, thank you.

Can you restore a recent malware-infested copy to a different server and open it to non-public traffic, so that we could manually retrieve some of the posts made in the last half a year? Otherwise, there is a credibility issue with your site.

Good idea.

#6 xng

xng

    Emperor (Huangdi 皇帝)

  • CHF Han Lin Scholar
  • 2,958 posts
  • Gender:Male
  • Languages spoken:English, Cantonese, Minnan, Mandarin, Singlish
  • Ethnic Groups or Race:Han Chinese
  • Main Interest in CHF:
    Chinese Language
  • Specialisation / Expertise:
    Chinese Linguistics, Buddhism, East Asian anthropology

Posted 09 May 2012 - 12:13 AM

Hi all,

I was informed by one CHF member and Sohan (Moderator)



That CHF member was me ! Why so hesitant to mention me when I alerted the staff here ?

I noticed the error from Google chrome for many days but you guys didn't seem to be aware of it, that's why I made an alert.

I am very disappointed that 6 months of data was lost instead of just 1 week.

This is not the first time this carelessness was practised in this forum.

#7 paysan

paysan

    Military Commissioner (Jiedushi 节度使)

  • Master Scholar (Juren)
  • 98 posts
  • Gender:Male
  • Main Interest in CHF:
    Chinese Literature
  • Specialisation / Expertise:
    none

Posted 14 May 2012 - 03:16 AM

Dear General Zhaoyun,

When CHF was hacked, several pages of the non english topic "Poesia Cinese" got lost. Please let me know whether there is any possibility of recovering them. If your answer is yes, I will wait until this work is done. Otherwise, I could try to restore the pages on the basis of my contributions to the topic.
Best regards.

Paysan

#8 Korin

Korin

    Grand Tutor (Taifu 太傅)

  • Entry Scholar (Xiucai)
  • 363 posts
  • Gender:Male
  • Interests:Han - Three Kingdoms - Sengoku Period - Trojan/Roman History and Mythology - Trojan War (both Trojans and Greeks) - Other History/Geography - Greek Mythology/Ancient Greece - Hittite Mythology - Mongol Empire - Thracian History/Mythology
  • Main Interest in CHF:
    Other Interests
  • Specialisation / Expertise:
    I moved to my interests.

Posted 07 March 2013 - 08:39 PM

How much posts were lost? I wanna know since it's strange the website's been up since 2004 but only 227,000+ posts...


PM me for my Skype, I removed it from the public's view.

 

I research stuff I like, I enjoy it as a hobby but one day I plan to get a master's degree in something I enjoy a lot.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users