Falsehoods unchallenged only fester and grow.


All times are UTC - 5 hours [ DST ]




Post new topic Reply to topic  [ 9 posts ]     
Author Message
 Post subject: Database Error
PostPosted: Sun Jan 16, 2011 6:06 pm 
Offline
User avatar

Joined: Mon Jun 15, 2009 6:22 am
Posts: 6442
Location: downstairs
I'm sorry I forgot to tell you earlier, but very, very early this morning I couldn't get on to FB for about 15 minutes and it said there was a MySQL Error. Just so you know about it. No need to respond.

_________________
I have never made but one prayer to God, a very short one: "O Lord make my enemies ridiculous." And God granted it.--Voltaire


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Sun Jan 16, 2011 6:16 pm 
Offline
User avatar

Joined: Fri Feb 20, 2009 9:09 pm
Posts: 7769
Location: USA
Occupation: Amateur radio host trying to figure out how to lower myself to shameless begging and stupid petition filing. It might be a good way to make a living. ;)
I saw the same thing but then I saw Foggy on line so I figured he was backing up the database or doing some maintenance.

_________________
The O-bot prayer:

Grant me the superior wit and biting sarcasm to mock the Birthers whose minds I cannot change
The superior facts, law, and reason to change the minds of the Birthers whom I can
And the wisdom to team up at Politijab The Fogbow with those who share my addiction and know the difference


- Allison 2/16/2009


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Sun Jan 16, 2011 7:41 pm 
Offline
User avatar

Joined: Fri Jan 23, 2009 3:53 pm
Posts: 12870
Location: location, location
Occupation: Ruler of the Intarwebz
Adelante wrote:
I'm sorry I forgot to tell you earlier, but very, very early this morning I couldn't get on to FB for about 15 minutes and it said there was a MySQL Error. Just so you know about it. No need to respond.

R.C. is right. Every morning, sometime between 4 a.m. and 6 a.m., I back up the Fogbow database. And while I download the database, Hostgator denies access so that you don't put up a post when I'm only part way through the download.

For you techies, the database is stored in *.sql.gz format, and it's already up to 53,195 KB, even zipped up like that.

Res Ipsa explained one time that our website is hosted on a computer with more than 100 other websites, and I'm sure they have backups of their own. But if the absolute worst was to happen, and their server blew up or something, when they get me back online I'll have a backup of my own, and we can never lose more than 24 hrs. worth of posts.

_________________
... then one day I found some birthers on my planet. Image


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Mon Jan 17, 2011 11:02 am 
Offline

Joined: Tue Mar 02, 2010 9:52 am
Posts: 3938
Location: Switzerland
Foggy wrote:
Every morning, sometime between 4 a.m. and 6 a.m., I back up the Fogbow database. And while I download the database, Hostgator denies access so that you don't put up a post when I'm only part way through the download.

ME TOO !!!!!!!!!!!!!!!!!!!!!!!!

I got this disturbing message while having my third cup (or was it the jug?) of coffee and taking slice of Fog from the Bow for breakfast at 10am.

PS. I hope your procedure first makes the database backup to disk and then the FTP of that file down to your pc. Helps with overall speed and isn't necessarily affected in case communications burps.


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Mon Jan 17, 2011 11:31 am 
Offline
User avatar

Joined: Fri Jan 23, 2009 3:53 pm
Posts: 12870
Location: location, location
Occupation: Ruler of the Intarwebz
RTH10260 wrote:
PS. I hope your procedure first makes the database backup to disk and then the FTP of that file down to your pc. Helps with overall speed and isn't necessarily affected in case communications burps.

No, but after you explain to HostGator, I'm certain they'll change their evil ways. [-(

_________________
... then one day I found some birthers on my planet. Image


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Fri Apr 01, 2011 9:38 pm 
Offline
User avatar

Joined: Wed Oct 07, 2009 4:18 pm
Posts: 2474
Warning --- (NOT an April fool's joke, that I can tell) -- SQL (ie the forum database) can get corrupted.

http://arstechnica.com/security/news/2011/03/massive-sql-injection-attack-making-the-rounds694k-urls-so-far.ars

I have no idea if this happens on the FB forum software.

For once, Dr Obly may be right ...

_________________
Don't pee in a tree without a TJ Hunter www.tjhunters.com)
Fog-doe 1-909 REEKO subpoenas should be properly served on Blunt Force Donato
Feel free to copy/republish anything I post, with (tjh and/or tfb) or without attribution
Moderators : feel free to delete anything that offends/provides any assistance to the enemy.


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Fri Apr 01, 2011 9:47 pm 
Offline
User avatar

Joined: Sun Mar 22, 2009 11:17 pm
Posts: 13589
Location: New England
Occupation: Professor of Sociology
tjh wrote:
Warning --- (NOT an April fool's joke, that I can tell) -- SQL (ie the forum database) can get corrupted.

http://arstechnica.com/security/news/2011/03/massive-sql-injection-attack-making-the-rounds694k-urls-so-far.ars

I have no idea if this happens on the FB forum software.

The Ars Technica article says this pattern of attack has been observed for some six months. MySQL was attacked. PHP is vulnerable.
Quote:
Hundreds of thousands of URLs have been compromised—at the time of writing, 694,000—in an enormous and indiscriminate SQL injection attack. The attack has modified text stored in databases, with the result that pages served up by the attacked systems include within each page one or more references to a particular JavaScript file.

It would probably be good to know what that particular JavaScript file looks like.

_________________
"Someone should tell Mrs. Reagan that young people -- not even young people on drugs -- are not the ones responsible for the major problems besetting the world!" John Irving, A Prayer for Owen Meany: A Novel, p. 370.


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Sat Apr 02, 2011 7:47 am 
Offline
User avatar

Joined: Fri Jan 23, 2009 3:53 pm
Posts: 12870
Location: location, location
Occupation: Ruler of the Intarwebz
I checked the phpBB support site. If this was happening to phpBB forums all over the place, their team of competent volunteer experts would be on top of it. There hasn't been a post about SQL injections there since sometime in 2008, as far as I can find. There are no alerts to board owners. I think this isn't a problem for Fogbow, but I'll keep an eye on it. I do make a full copy of the database every morning. The worst that can happen is we lose one day's worth of posts. That hasn't happened since the day Fogbow came online.

_________________
... then one day I found some birthers on my planet. Image


Top
 Profile  
 
 Post subject: Database Error
PostPosted: Sat Apr 02, 2011 9:53 pm 
Offline

Joined: Tue Mar 02, 2010 9:52 am
Posts: 3938
Location: Switzerland
Comment: Websites that modify their web page generating code often and take user input are the sites that are vulenerable to SQL injections. Often these are customer oriented websites where web developers get little time to test their code, or where inexperienced developers are working on.

Code with little modifications in reference to user input gets seasoned over time and will generally not be cracked easy. Open source projects for major software packages have now well implemented test procedures to prevent such attacks. phpBB can be considered seasones in this sense. The last major failure I remember was the WordPress issue last year. The problem at the users end is generally not following the deleopment of their supplier, and ignoring updates or not implementing them fast enough after a security issue was communicated.


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 9 posts ]     

All times are UTC - 5 hours [ DST ]


Who is online

Users browsing this forum: No registered users and 0 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
View new posts | View active topics



Powered by phpBB® Forum Software © phpBB Group