{"id":144753,"date":"2015-11-04T09:30:57","date_gmt":"2015-11-04T07:30:57","guid":{"rendered":"http:\/\/mybroadband.co.za\/news\/?p=144753"},"modified":"2015-11-04T09:32:34","modified_gmt":"2015-11-04T07:32:34","slug":"vbulletin-password-hack-could-mean-widespread-0-day-attacks","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/144753-vbulletin-password-hack-could-mean-widespread-0-day-attacks.html","title":{"rendered":"vBulletin password hack could mean widespread 0-day attacks"},"content":{"rendered":"<p>vBulletin released a security patch on 2 November for version 5.1.4 through 5.1.9 of its forum software, just hours after reports emerged that its website had been hacked, <strong><a href=\"http:\/\/arstechnica.com\/security\/2015\/11\/vbulletin-password-hack-fuels-fears-of-serious-internet-wide-0-day-attacks\/\" target=\"_blank\">Ars Technica reported<\/a><\/strong>.<\/p>\n<p>Passwords and other sensitive information for almost 480,000 subscribers may have been leaked.<\/p>\n<p>vBulletin has instituted a mandatory password reset for its users, warning them that the attacker may have accessed customer IDs and encrypted passwords.<\/p>\n<p>The report noted that what was not mentioned is that there may be a critical security vulnerability in vBulletin\u2019s forum software.<\/p>\n<p>It is speculated that the attacker used a 0-day vulnerability that is over 3 years old to get into vBulletin\u2019s system and access\u00a0the personal information of 479,895 users.<\/p>\n<p>A Twitter user who goes by <strong><a href=\"https:\/\/twitter.com\/_cutz\/status\/661687637552603137\" target=\"_blank\">@_cutz<\/a><\/strong> posted an analysis of such a vulnerability. Specifically, a remote code execution exploit.<\/p>\n<p>Ars Technica highlighted that <strong><a href=\"http:\/\/arstechnica.com\/security\/2013\/11\/password-hack-of-vbulletin-com-fuels-fears-of-in-the-wild-0-day-attacks\/\" target=\"_blank\">two years ago<\/a><\/strong> there was a similar breach at vBulletin, which the company said was not as a result of a 0-day flaw, but due to an insecure system used for testing vBulletin mobile applications.<\/p>\n<h3 id=\"related\">More vBulletin and security news<\/h3>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/security\/143983-your-private-information-and-sas-mobile-operators.html\"><strong>Your private information and SA\u2019s mobile operators<\/strong><\/a><\/p>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/security\/142830-sa-state-security-threatens-to-spy-on-whatsapp-and-email-report.html\"><strong>SA State Security threatens to spy on WhatsApp and email: report<\/strong><\/a><\/p>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/security\/141738-wordpress-brute-force-amplification-attack-warning.html\"><strong>WordPress brute force amplification attack warning<\/strong><\/a><\/p>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/security\/140988-telkom-website-exposes-personal-details.html\"><strong>Telkom website exposes personal details<\/strong><\/a><\/p>\n<p><a href=\"http:\/\/mybroadband.co.za\/news\/security\/96793-bidorbuy-forums-hit-with-stealth-hack.html\"><strong>BidorBuy forums hit with stealthy hack<\/strong><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>New versions of forum software vBulletin appear to have an old security flaw that lets hackers access user account details.<\/p>\n","protected":false},"author":23,"featured_media":77034,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_sma_x_autopost_status":"idle","_sma_x_autopost_error":"","_sma_x_post_id":"","_sma_facebook_post_id":"","_sma_instagram_post_id":"","_sma_threads_post_id":"","_sma_x_attempts":0,"footnotes":""},"categories":[27],"tags":[36,33755],"class_list":["post-144753","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-active","tag-vbulletin"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/144753"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/23"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=144753"}],"version-history":[{"count":2,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/144753\/revisions"}],"predecessor-version":[{"id":144759,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/144753\/revisions\/144759"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/77034"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=144753"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=144753"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=144753"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}