List Info

Thread: My News Site was HACKED On Blogger ???




My News Site was HACKED On Blogger ???
country flaguser name
United States
2007-08-21 22:52:54
I have no idea where to reach google incase of an emergency,
so I will
post this here.

Lets start from the beginning ...

Surfing the internet for news I ran across a story that said
"Warning!
Gmail users beware, fake upgrade emails" , located on
http://5thirtyone.
com/archives/845

I dug the story. Then using bloggers editor I wanted a
picture of the
scam, so I copied the Picture URL and uploaded it to
blogger. I got my
picture, and the dug story, and published it.

THE PROBLEM !!! - when I was updating my news , the picture
changed
from a gmail picture to "I'm a sticky finger b*stard
uncreative
b*stard I bow down 5thirtyone.com - I discovered the picture
change
after doing another article on McAfee SiteAdvisor , and
thought
blogger was hacked, or my password somehow got out and he
was log'd in
editting my site ....

I have a snap shot of my screen, and the HTML I used in the
publishing
for google to see ....

Question, Blogger DOES NOT upload the picture from the URL
does it ???
so if the picture changes in the URL (
http://5thirtyone.com/wp-content/uploads/20
07/08/fake-gmail-email.jpg
) , it effect's ME ??? HOW is this possible ???? We do not
transfer
the pic to blogger , rather just link to it, so if it
changes , My
site changes ???? From what I can see, this is it. My system
is
secure, I will change my password after this posting, and NO
, I did
not click on or enter my name or password on any other site
other than
blogger.

Also, if this is the case, every picture us bloggers link to
, can
have coding inside it, so we ourselves are broadcasting
malicious code
with our pictures without even knowing it. The pic needs to
be
uploaded to blogger, and scan'd by blogger, to make sure us
bloggers
are not publishing nothing other than users see in our
pictures. (NO
malicious code inside)

This is a severe security oversite on blogger , and needs to
be
address'd.
Again, I have the Code & Snapshot of the incident, for
Google to see.
Where do I go from here ?

OS9USER - George Proulx (Site Owner)
http://www.os9user.bl
ogspot.com

I have posted a comment on 5thirtyone.com to ask them if
they have
been hacked, or how that picture changed ? or is it me on
blogger and
my site was hacked ? = perhaps you can tell me.

NOTE : the article has been edit'd on mysite and picture
removed , I
can not have it appear with my  - NEWS - or feeds ...


--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the
Google Groups "blogger general discussion" group.
To post to this group, send email to
blogger-general-discussiongooglegroups.com
To unsubscribe from this group, send email to
blogger-general-discussion-unsubscribegooglegroups.com
For more options, visit this group at http://groups.google.com/group/blogger-general-di
scussion?hl=en
-~----------~----~----~----~------~----~------~--~---


Re: My News Site was HACKED On Blogger ???
user name
2007-08-21 23:02:18
after posting that article on bloggers groups, the picture changed back to normal again.... HEY , I still have my snapshot and HTML coding to prove, what I saw.. where do I upload it to ?

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups "blogger general discussion" group.
To post to this group, send email to blogger-general-discussiongooglegroups.com
To unsubscribe from this group, send email to blogger-general-discussion-unsubscribegooglegroups.com
For more options, visit this group at http://groups.google.com/group/blogger-general-discussion?hl=en
-~----------~----~----~----~------~----~------~--~---

Re: My News Site was HACKED On Blogger ???
country flaguser name
United States
2007-08-22 01:12:38
You can try contacting Blogger support. Not easy but not
impossible.
One girl got a response within the same day. I too have had
responses
from them so don't be discouraged by those posting negative
remarks
about Blogger support.
http://blogger-tricks.blog
spot.com/2007/06/problem-signing-in-seeing-your-blog-in.html

http://blogger-tricks.blogspot.com
/2006/08/how-to-contact-blogger-support.html

Regarding uploading screenshot, if you arre worried about
compromising
your Blogger account, you can always upload it to
http://www.shareresults.com/t/url.php/cid/2702/sid/6451

Peter (Blog*Star)
http://blogger-tri
cks.blogspot.com (Blogger Tips and Tricks)
http://bloggerf
ordummies.blogspot.com
http://testi
ng-blogger-beta.blogspot.com
h
ttp://dummies-guide-to-google-blogger.blogspot.com


--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the
Google Groups "blogger general discussion" group.
To post to this group, send email to
blogger-general-discussiongooglegroups.com
To unsubscribe from this group, send email to
blogger-general-discussion-unsubscribegooglegroups.com
For more options, visit this group at http://groups.google.com/group/blogger-general-di
scussion?hl=en
-~----------~----~----~----~------~----~------~--~---


Re: My News Site was HACKED On Blogger ???
country flaguser name
United States
2007-08-22 18:22:58
Thank you enviroman , I will give those links a whirl.

All information I have available (or that I am willing to
share on an
open channel) is available at :

http://os9user.blogspot.com
/2007/08/serious-security-hole-discovered-in.html#comments

Here , you can see what was done, with the picture of what
was
changed. There is more information, but I rather not release
it at
this time. - Thanx again enviroman !!!

OS9USER


--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the
Google Groups "blogger general discussion" group.
To post to this group, send email to
blogger-general-discussiongooglegroups.com
To unsubscribe from this group, send email to
blogger-general-discussion-unsubscribegooglegroups.com
For more options, visit this group at http://groups.google.com/group/blogger-general-di
scussion?hl=en
-~----------~----~----~----~------~----~------~--~---


Re: My News Site was HACKED On Blogger ???
country flaguser name
United States
2007-08-22 22:41:45
I located the colprit , and like you said, even though we
wanted to
promote his article , he had a script that stop'd hot
linking. It was
in the IMG like I suspected, however, News sites often refer
to
articles written by other authors, with a thumbnail view, or
picture.
Am I stealing bandwidth promoting other peoples articles
???

Second, after having a blog for over a year now, this is the
1st I
heard of "Hot Linking" ..... The issue here seems
to be is it
legal ??? Are we stealing bandwith ?? Does it give anyone
the right to
change the pic to something obsene ?


--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the
Google Groups "blogger general discussion" group.
To post to this group, send email to
blogger-general-discussiongooglegroups.com
To unsubscribe from this group, send email to
blogger-general-discussion-unsubscribegooglegroups.com
For more options, visit this group at http://groups.google.com/group/blogger-general-di
scussion?hl=en
-~----------~----~----~----~------~----~------~--~---


Re: My News Site was HACKED On Blogger ???
country flaguser name
United States
2007-08-23 13:58:07
If you are linking an image from another person's site, then
you are
using their bandwidth every time someone opens your site to
see the
image. For this reason, a number of people have created
scripts to
discourage hotlinking. Because you are, in effect, taking
money out of
their pocket (the money they pay for bandwidth) they have
the
privilege to prevent that - it's like someone building a
fence around
their house to keep potential robbers out. What you can do
is set up
your own account with a hosting company and upload all
images to
there, then link from there to your blogger account, or, if
you do not
have much of a bandwidth need, you can set up with
photobucket or
another bandwidth-limited photo dump.

The reason for the obscenity is that many people do this
intentionally, especially when posting on forums. Because of
the
number of views on any particular thread on any particular
day, a
person's site can crash or run into bandwidth overages as
the result
of a single image posted in a single thread.

Now imagine if that image is someone's avatar?

If you really want to promote an article, write a summary of
it with a
link to the article. That way you also avoid copyright
issues. Spend a
few minutes reading and carefully summing up the piece, into
a
paragraph or so, and then post that to your site. Not only
will the
recipients of the link be appreciative of the attention, but
they will
be happy that you understood what they wrote well enough to
do more
than just copy/paste.

On Aug 22, 11:41 pm, OS9USER <os9u...gmail.com> wrote:
> I located the colprit , and like you said, even though
we wanted to
> promote his article , he had a script that stop'd hot
linking. It was
> in the IMG like I suspected, however, News sites often
refer to
> articles written by other authors, with a thumbnail
view, or picture.
> Am I stealing bandwidth promoting other peoples
articles ???
>
> Second, after having a blog for over a year now, this
is the 1st I
> heard of "Hot Linking" ..... The issue here
seems to be is it
> legal ??? Are we stealing bandwith ?? Does it give
anyone the right to
> change the pic to something obsene ?


--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the
Google Groups "blogger general discussion" group.
To post to this group, send email to
blogger-general-discussiongooglegroups.com
To unsubscribe from this group, send email to
blogger-general-discussion-unsubscribegooglegroups.com
For more options, visit this group at http://groups.google.com/group/blogger-general-di
scussion?hl=en
-~----------~----~----~----~------~----~------~--~---


[1-6]

about | contact  Other archives ( Real Estate discussion Medical topics )