Info about the outage

Okay, finally I got logged out and had to log in again. And threads are still all marked Unread.

I’m guessing that the DDoS was itself a whole bunch of failed login attempts.

I’m not on Facebook, and apparently the group is private or closed to outside peeks or whatever the hell they call it in that weird dimension it occupies. So a hard-to-search-for group, on a site most here are not members of, which is closed to outsiders, is not the best place to go to for information.

SDMB MIRV ICBM attack on the scumbags, ideally…

Another problem I just noticed. Multiquoting is no longer allowed.

I’m still having to log back in every time I come back.

You mean like continuously running the user list through a login function without any password? That would explain why so many, myself included, were flagged as having exceeded our failed login tries.

And if the rogue program was running on the server, would explain why the offending IP showed an internal number.

Another problem I just noticed … read-before-you-post protocols remain the same as ever … :wink:

Just kidding … this is a very busy thread! :slight_smile:

I’m also still having trouble with Tapatalk. It often can’t get the contents of the board and kicks me back to the front page (Main). And, even when I’m in, I don’t have any reply or quote buttons.

At first I just assumed it was only sometimes getting in. But the reply thing makes me think that maybe one of the fixes borked Tapatalk.

And, do note, this Tapatalk is used a lot around here.

Well I’m back. I knew you would all be worried about me, but I’m OK. You can relax. Sorry to have caused you concern.

I was not here for the Great Banning. Will this be known as “The Great Outage”?

Glad the Board seems to be back on it’s little centipede feet. That was sheer torture.

:smack:

Yeah, the “Distributed” part of DDOS not applying here.

On, ahem, another board, I read a theory that they might have been spoofing their IP address to avoid being easily caught.

I know I remember one hacker in college who somehow had it say 172.0.0.1 (the address that means “My Computer”) and they couldn’t figure out how they did it. The implication being that it definitely wasn’t actually coming from their computer.

But I’ve never explored the “dark side” (insert wavy text there) of computing.

Finally! Great to be back- I was going through “Dope” withdrawl. :stuck_out_tongue:

My legs! I can’t feel my legs!
Was this attack from the same fools who keep posting all those live streaming video spam posts?

From what little I know of these matters, I don’t see what’s to be gained by spoofing an address from a reserved internal block. Better to spoof real addresses and create a confusing trail. If this particular 10...* address is a real internal address, the attack may have come from a server hack.

I just hope and assume that law enforcement authorities are involved, as they should be. This is a commercial site and hacking is no joke.

:eek: Who would do such a thing to the sweet li’l ol’ innocent ol’ Dope?!

Just adding that the auto-logout and having all threads marked unread (except for my UserCP, in which all of those threads are ALWAYS marked unread) are also happening to me.