Pelican Parts Forums

Pelican Parts Forums (http://forums.pelicanparts.com/)
-   Off Topic Discussions (http://forums.pelicanparts.com/off-topic-discussions/)
-   -   Speaking of web site attacks... (http://forums.pelicanparts.com/off-topic-discussions/109197-speaking-web-site-attacks.html)

widebody911 05-03-2003 04:59 PM

Speaking of web site attacks...
 
I host a VW bus web site, and have a gallery section where you can upload your own images. Apart from one or two pranksters, I hadn't had any problems in 4 years or so. (http://vintagebus.com/gallery)

Recently, someone was uploading images that had *NOTHING* to do with buses at all. I removed the html stubs associated with the images, so they didn't show up in the gallery. They *KEPT* uploading more images, some the same, some similar. There were just a handful of networks from which these images were coming, so I wrote a trap to sideline those images.

But they still kept coming, even though the images were not appearing in the gallery. This seemed to be beyond a prank. So I looked thru my logs, and found that another side was linking to images on my server. Hmm. It's possible to set the web server up to prevent that, but I like to be able to give people a link to a specific image on my server, which I wouldn't be able to do. I don't think I can have it both ways.

Needless to say, I was a bit miffed. So, I decided to have a little fun. I replaced all of those images that they'd linked with new ones of my own choosing. I went for maximum shock value; hey, it's my b/w and h/w - tough noogies if you linked to content there. If you really want the link, PM me.

I really hope this guy's mom visits his site; I really do. :mad:

I'm wondering now if this is a means of resource stealing which could be more prevalent than I thought. People have deep-linked since the beginning of the web, but with galleries such as this, they now have to deep-link to content they provide, and stick somoene else for the storage and bandwidth.

My next task is to clean up my gallery directories and actually remove the inappropriate images that aren't used.

bell 05-03-2003 05:16 PM

heehee.......i can only imagine the replacement pics :D

widebody911 05-03-2003 05:48 PM

Just don't go in on a full stomach...

widebody911 05-03-2003 07:51 PM

Party's over
 
Someone pulled the plug on their entire site, even the parts I didn't affect. My last log entries come from the same network as their web server, so I'm guessing that was the admins verifying a complaint.

beepbeep 05-06-2003 08:50 AM

Ahh...those pr0n mogules are getting more and more creative.

I had some idiots back-door (pun intended) my own web server and start storing porn flicks with lot's of traffic as a result. It wasn't just a prank, those flicks were deep-linked from porn-sites!!!

So there are armies of well-paid script kiddies sitting somewhere looking for free place to store their junk on.

Finally, i started to remove everything and they finally crashed my server with heaps of money/time lost as result. Lesson learned, i reinstalled machine with real firewall and everything buttoned down. I was stupid and i learned the lesson.

If i ever stumble over one of those kids i'll beat them sensless, i'm kidding you not!!!


Neverttheless

widebody911 05-06-2003 01:03 PM

Actually, the images they were storing weren't pr0n. Most of them were family and friends, the rest were pop-culture type stuff. Two of the sites, hosted off of asianavenue.com, were total hip-hop wannabe gang-banger sites, so their HTML text with something like 'hard in da hood' went especially well with the images of young men intertwined in compromising positions. Another one was done by a high school (purported) girl, who was using my server to host a stylised anime background. I replaced it with an anime image of my own choosing. (those tentacles are going where?)

cstreit 05-06-2003 04:51 PM

Thom, you rock. Great solution :)


All times are GMT -8. The time now is 07:19 PM.

Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
Search Engine Optimization by vBSEO 3.6.0
Copyright 2025 Pelican Parts, LLC - Posts may be archived for display on the Pelican Parts Website


DTO Garage Plus vBulletin Plugins by Drive Thru Online, Inc.