MyBB GitHub Account compromised

Discussion in 'other security issues & news' started by dogbite, Nov 15, 2014.

  1. dogbite

    dogbite Registered Member

    Joined:
    Dec 13, 2012
    Posts:
    1,166
    Location:
    EU
    MyBB is a free forum software. In their blog they reported the attack.

    "Yesterday, 14th of November, my (Pirata Nervo) GitHub account was compromised. By taking advantage of that, the attacker made a commit to our GH pages, more specifically one which is retrieved by the MyBB software in order to process version checks. Unfortunately, the attack allowed the attacker to setup Database backups of any MyBB forum, without exception, via JavaScript."

    http://blog.mybb.com/2014/11/15/github-account-compromised/
     
Loading...