Iqonga le-Kodi laqhekezwa

I-Kodi Hack

Ukuchaneka kwamva nje kwedatha yabasebenzisi kubothuse abaphuhlisi

kutshanje ndiyazi ulwazi olukhutshiweyo ngabaphuhlisi beziko leendaba elivulekileyo Kodi apho ku lumkisa abasebenzisi malunga neqonga leqonga lamva nje, inkonzo ye-Pastebin kunye nesayithi ye-wiki yeprojekthi (forum.kodi.tv, paste.kodi.tv, kunye ne-kodi.wiki).

Abaphuhlisi ufumanise malunga ne-hack emva kokuba isiseko somsebenzisi sithengiswe evela kwiqonga le-Kodi. Uphicotho-zincwadi lubonise ukuba iziseko zeprojekthi zazithotyelwe ngokwenene kwaye imikhondo yokugqibela yomsebenzi wohlaseli yarekhodwa ngoFebruwari 16 no-21.

Kwiiyure ezingama-24 ezidlulileyo, siye saqaphela ukulahlwa kwe-Kodi User Forum (MyBB) isoftwe epapashelwa ukuthengiswa kwiiforam ze-intanethi. Esi sithuba siqinisekisa ukuba kukho ulwaphulo-mthetho.

Iilogi zolawulo lwe-MyBB zibonisa ukuba i-akhawunti yelungu elithembekileyo kodwa elingasebenziyo ngoku leqela lolawulo leforamu lisetyenziselwe ukufikelela kwi-intanethi ye-MyBB yolawulo lwe-console kabini: ngoFebruwari 16 kwaye kwakhona ngoFebruwari 21. February. I-akhawunti isetyenziselwe ukwenza i-backups yedatha eyathi yakhutshelwa kwaye yacinywa kamva. Ikwakhuphele ii-backups ezigcweleyo zasebusuku zesiseko sedatha. Umnini-akhawunti uqinisekisile ukuba abakhange bafikelele kwiconsole yolawulo ukwenza ezi ntshukumo.

Ngokuphathelele kwityala, kubalulekile ukukhankanya ukuba ngokukodwa, ushicilelo lweforamu luqulathe ulwazi malunga nokungena kujongano lwewebhu lolawulo ukusuka komnye wabalawuli abangasebenziyo.

Ngaloo ndlela, ukuba ifikelele kujongano lwewebhu ulawulo, abahlaseli benza kwaye bakhuphela ikopi yokugcina yesiseko sedatha, kunye nokukhutshelwa kwe-backups epheleleyo yedatha ekhoyo yasebusuku.

Umnini-akhawunti uqinisekisile ukuba akazange athathe nayiphi na intshukumo kunye neforum kule mihla (akucaciswanga ukuba abahlaseli bakwazi njani ukufumana igama eliyimfihlo lomlawuli). Idatha elayishwe ngabahlaseli yayiquka i-archive epheleleyo yazo zonke iingxoxo zoluntu kunye nezabucala, imiyalezo yangasese, kunye nesiseko somsebenzisi (amagama, i-imeyile, kunye ne-password hashes).

Nangona i-MyBB igcina amagama ayimfihlo kwifomathi efihliweyo, kufuneka sicinge ukuba onke amagama ayimfihlo abekwe emngciphekweni. Oku kufuna iintshukumo ezivela kwiqela kunye nabasebenzisi beforum:

Iqela lolawulo liphanda eyona ndlela ilungileyo yokwenza ukusetha kwakhona igama eliyimfihlo kunye neyona ndlela ilungileyo yokuqinisekisa ukuthembeka komncedisi weseva kunye nesoftware ehambelana nayo. Iseva yeforum ikhutshwe kwi-intanethi ngelixa lo msebenzi ugqityiwe. Oku kuya kuchaphazela iisayithi ze-Kodi wiki kunye ne-pastebin. Okwangoku akukho qikelelo lwexesha lokuba umncedisi weforum abuyele kwi-intanethi; indlela yethu kukuba ngokucokisekileyo, hayi ngokukhawuleza.

Abasebenzisi kufuneka bathathe iziqinisekiso zabo zeforum ye-Kodi kwaye nayiphi na idatha yabucala ekwabelwana ngayo nabanye abasebenzisi ngokusebenzisa inkqubo yemiyalezo yomsebenzisi-to-umsebenzisi isengozini. Ukuba usebenzise igama lomsebenzisi elifanayo kunye negama lokugqitha kuyo nayiphi na enye indawo, kufuneka ulandele ukusetha kwakhona/ukutshintsha inkqubo yegama lokugqitha kuloo sayithi. Nje ukuba iforum ye-Kodi ibuyele kwi-intanethi, siya kubonelela ngemiyalelo malunga nendlela yokugqiba ukuseta kwakhona igama eliyimfihlo leforum ye-Kodi.

Ngexesha lokufunda kokusingqongileyo yenkqubo, bekungekho mikhondo ye-OS compromise okanye izenzo eziye ngaphaya kojongano lwewebhu lolawulo lweforum. Nangona kunjalo, umncedisi weforum ukhutshiwe kunxibelelwano kunye nenkqubo yokufakela kwakhona iqalile yesoftware esetyenziswa kuyo. Iinkonzo ze-Pastebin kunye ne-Wiki zihlelwe kwi-server efanayo, enokuthi ithathelwe ingqalelo njengento enokubakho.

Después ukubuyisela isoftware, kucwangciswe ukulungelelanisa utshintsho lwamagama ayimfihlo abasebenzisi kunye nokuthunyelwa kwezaziso zomntu ngamnye yokuzibophelela (ngaphezu kwama-400.000 abasebenzisi ababhalisiweyo kwiforamu). Abasebenzisi beforum ye-Kodi abasebenzise igama eliyimfihlo kwiindawo ezahlukeneyo bayacetyiswa ukuba bayitshintshe ngokukhawuleza.

Ukuchacha kulindeleke ukuba kuthathe iintsuku ezininzi, njengoko i-Kodi isebenzise ifolokhwe elungisiweyo yenye yeenguqulelo zangaphambili ze-injini ye-MyBB (1.8.27) kunye nongqamaniso lwayo kunye nenguqulo yangoku (1.8.33) kuya kuthatha ixesha.

Indawo yeWiki iya kuhanjiswa kwenye iseva kwaye ihlaziywe kuhlobo lwamva nje lwenjini yeMediaWiki. Inkonzo yePastebin iya kudluliselwa kwenye iseva.

Gqibela ukuba unomdla wokwazi okungakumbi ngayo, ungazijonga iinkcukacha kwi eli khonkco lilandelayo.


Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Inoxanduva lwedatha: I-AB Internet Networks 2008 SL
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.