1. Advertising
    y u no do it?

    Advertising (learn more)

    Advertise virtually anything here, with CPM banner ads, CPM email ads and CPC contextual links. You can target relevant areas of the site and show ads based on geographical location of the user if you wish.

    Starts at just $1 per CPM or $0.10 per CPC.

How to avoid PHPBB3 being hacked and spammed?

Discussion in 'Content Management' started by TheSyndicate, Aug 6, 2008.

  1. #1
    How to avoid PHPBB3 being hacked and spammed

    I tried a forum 1 year ago but I kept on fighting of hacking and spam so I dropped it. Is there any trick to do to keep the hackers away like hiding index or closing stuff that they can use? I am trying to use as few mods as possible since they can be open to hacking.
     
    TheSyndicate, Aug 6, 2008 IP
  2. buldozerceto

    buldozerceto Active Member

    Messages:
    1,137
    Likes Received:
    43
    Best Answers:
    0
    Trophy Points:
    88
    #2
    The key is constantly updating your forums software and using strong passwords
     
    buldozerceto, Aug 6, 2008 IP
  3. abercrombie

    abercrombie Peon

    Messages:
    654
    Likes Received:
    11
    Best Answers:
    0
    Trophy Points:
    0
    #3
    make sure you have CAPTCHA enabled for registration. seems to halt spam bots in their spot.
     
    abercrombie, Aug 6, 2008 IP
  4. mooseweb

    mooseweb Banned

    Messages:
    1,154
    Likes Received:
    17
    Best Answers:
    0
    Trophy Points:
    0
    #4
    From being hacked, that's nearly impossible. There will always be a security hole somewhere...
    Best solution: Strong Passwords, Up-to-date software, Limited Access (Do not give admin to your new best friend you've known for 3 days)

    From being spammed, that is quite easy: Captcha ;)
     
    mooseweb, Aug 6, 2008 IP
  5. TheSyndicate

    TheSyndicate Prominent Member

    Messages:
    5,410
    Likes Received:
    289
    Best Answers:
    0
    Trophy Points:
    365
    #5
    i saw something of hiding index.php or can you even hide the links telling people its a phpbb3 forum. I mean they must search random for forum?
     
    TheSyndicate, Aug 6, 2008 IP
  6. ~kev~

    ~kev~ Well-Known Member

    Messages:
    2,866
    Likes Received:
    194
    Best Answers:
    0
    Trophy Points:
    110
    #6
    You cant, upgrade to VBulletin or invision power board. If you want a free solution, go with SMF.

    I have seen, and been a member of communities that stayed hacked. One site went through a 2 or 3 month period where they were hacked every couple of weeks when using phpbb. The site was finally closed, moved to smf and reopened.

    A good buddy of mine, he only lives about 45 minutes from me, he finally closed his phpbb site because he was hacked so many times. He gave up on the domain name and phpbb. I did not visit his forum a lot, one day I went to his site and it was gone. So I called him on the phone and asked what was going on. He told me he got tired of being hacked and closed the site.

    You ca do stuff about the spam, such as use captcha. But the hacking is something totally different - this is a security issue you might not be able to fix. If you have been hacked, and went back with the same software, what is going to stop the next hacker? If you have been hacked, its time to consider what is going on with the forum software. Hacked twice - its time to change. Hacked 3 times - its your own fault.

    My personal preference is VBulletin. If you are serious about your forum, then use serious software.
     
    ~kev~, Aug 6, 2008 IP
  7. TheSyndicate

    TheSyndicate Prominent Member

    Messages:
    5,410
    Likes Received:
    289
    Best Answers:
    0
    Trophy Points:
    365
    #7
    I hear you i just want to test the subject for a while if it goes well i will change VB. I guess back up often and check the forum all the time is a good plan.
     
    TheSyndicate, Aug 6, 2008 IP
  8. Suri.CMS

    Suri.CMS Peon

    Messages:
    432
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Sorry to interrupt. Is it PhpBB3 (latest version) ?
    I am asking out of curiosity because Php BB3 looks promising and I thought hacking history of Php BB reduced with latest version. (Though I never been a great fan of Php BB)
     
    Suri.CMS, Aug 7, 2008 IP
  9. TheSyndicate

    TheSyndicate Prominent Member

    Messages:
    5,410
    Likes Received:
    289
    Best Answers:
    0
    Trophy Points:
    365
    #9
    Yes the number 3 or 3.02 is the last version. It looks nice but i seen some people getting hacked already. So i want to know trick how to avoid the evil eye of the hackers
     
    TheSyndicate, Aug 7, 2008 IP
  10. Suri.CMS

    Suri.CMS Peon

    Messages:
    432
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    0
    #10
    Sorry but I don't suggest using PhpBB at all, considering it's hacking history.
    Even if you lose on some features, I suggest you to use SMF - that is more secure.
     
    Suri.CMS, Aug 7, 2008 IP
  11. TheSyndicate

    TheSyndicate Prominent Member

    Messages:
    5,410
    Likes Received:
    289
    Best Answers:
    0
    Trophy Points:
    365
    #11
    Well i think also SMF can be hacked i just want to know tricks not to get hacked. In wordpress you can hide the admin file and such.
     
    TheSyndicate, Aug 7, 2008 IP
  12. ~kev~

    ~kev~ Well-Known Member

    Messages:
    2,866
    Likes Received:
    194
    Best Answers:
    0
    Trophy Points:
    110
    #12
    This page should be of some help then. Even though the post is about vbulletin, just replace "vbulletin" with what ever you are using now. If you are using SMF, as you are reading, just replace "vbulletin" with "smf."

    Some of these suggestions do not relate to smf or phpbb, so just use your imagination.

    Source: http://www.vbulletin.com/forum/showthread.php?t=172234

     
    ~kev~, Aug 7, 2008 IP
  13. TheSyndicate

    TheSyndicate Prominent Member

    Messages:
    5,410
    Likes Received:
    289
    Best Answers:
    0
    Trophy Points:
    365
    #13
    great post this kind of tricks i am looking for :)
     
    TheSyndicate, Aug 7, 2008 IP