Loading...
 

Tikiwiki-devel (mailman list mirror)


Security Concerns

posts: 2695 United States

In the process of upgrading from 15.0 to 15.2, I discovered my site was
having ?problems?
Memory usage was at my limit. I have a VPS on dreamhost with 500mb.
My site was resetting every few minutes. If usage goes way above my limit,
the server robot resets the server.
I adjusted my limit temporarily up to 1000mb and the max I saw it hit was
930.
I was still unable to complete the upgrade process, so I shut down my site.
It still took a few hours before the usage dropped.
This allowed me to upgrade through a sub domain.

Looking at my log files...
I found several .ru sites sending traffic to me.
I found a few errors which were likely hacking attempts.
...

If this might have been caused by the security concerns that warranted the
upgrade,
would someone like to email me privately if you need me to do any more
checking.
I know we don't openly discuss the issues, since that might help hackers...

--
God Bless
WizarDave Akins
Webmaster
http://Infowars.wiki/ Because there's a war on for your mind...
http://MajorNews.com/ Government and Utiltity Knowledge Base (Very Early
Stages)
http://JESUSaves.com/ OnLine Christian Community
http://jabi.com/ Just Another Bright Idea - Pronounced jab eye

posts: 126261

Hi WizarDave

Please send any info you have to security at tiki.org

Thanks


> On 14 Jul 2016, at 21:14, WizarDave Akins <wizardave@gmail.com> wrote:
>
> In the process of upgrading from 15.0 to 15.2, I discovered my site was having ?problems?
> Memory usage was at my limit. I have a VPS on dreamhost with 500mb.
> My site was resetting every few minutes. If usage goes way above my limit, the server robot resets the server.
> I adjusted my limit temporarily up to 1000mb and the max I saw it hit was 930.
> I was still unable to complete the upgrade process, so I shut down my site.
> It still took a few hours before the usage dropped.
> This allowed me to upgrade through a sub domain.
>
> Looking at my log files...
> I found several .ru sites sending traffic to me.
> I found a few errors which were likely hacking attempts.
> ...
>
> If this might have been caused by the security concerns that warranted the upgrade,
> would someone like to email me privately if you need me to do any more checking.
> I know we don't openly discuss the issues, since that might help hackers...
>
> —
> God Bless
> WizarDave Akins
> Webmaster
> http://Infowars.wiki/ Because there's a war on for your mind...
> http://MajorNews.com/ Government and Utiltity Knowledge Base (Very Early Stages)
> http://JESUSaves.com/ OnLine Christian Community
> http://jabi.com/ Just Another Bright Idea - Pronounced jab eye
> ------------------------------------------------------------------------------
> What NetFlow Analyzer can do for you? Monitors network bandwidth and traffic
> patterns at an interface-level. Reveals which users, apps, and protocols are
> consuming the most bandwidth. Provides multi-vendor support for NetFlow,
> J-Flow, sFlow and other flows. Make informed decisions using capacity planning
> reports.http://sdm.link/zohodev2dev
> ___
> TikiWiki-devel mailing list
> TikiWiki-devel at lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/tikiwiki-devel


Why Register?

Register at tiki.org and you'll be able to use the account at any *.tiki.org site, thanks to the InterTiki feature. A valid email address is required to receive site notifications and occasional newsletters. You can opt out of these items at any time.