Public Announcement
Posted: Sat Mar 04, 2017 4:34 pm
Update 2
Dear ENT community,
on Saturday, March, 4th, at roughly 2:30 pm UTC+1, someone hacked one of our staff member's (not the Staff Dept.) forum account. The attacker then logged into the forum's Administrative Control Panel (ACP) and overwrote one of the Staff Department's member's password. He then continued to alter the website's settings and forum structure via that access. You may have noticed the e-mail sent, unfortunately, in ENT's name and the bots' chat messages, too.
At 3 pm, I was notified of the breach. Being rather surprised by the situation and trying to figure out what happened, things didn't look good. Half an hour later, I contacted uakf.b informing him about the breach and we have taken measures to counter the "hack" (which, in fact, was probably just a mere brute-force of a forum user's password; how exactly he got the user's password is unknown to us though).
The website was taken offline, the latest forum backup was restored (from January) and the bot files were restored, too. At 5:15 pm the restoration was done. The forum and staff structure, topics and posts will look like in January. Please give the staff a few hours/days to administrate the forum. Thanks.
To summarize: At no point were the users' passwords in danger. To ensure your password can not be "guessed" via brute-force or other phishing techniques, ensure to use strong, unique passwords and if possible a two factor authentication. However, due to the backup, your password has been restored to the one you used in January. So, if you changed your password in the last two months, use your old one. Plus, don't be surprised about the old topics, we will have to move them.
I sincerely apologize for the inconvenience.
Dear ENT community,
on Saturday, March, 4th, at roughly 2:30 pm UTC+1, someone hacked one of our staff member's (not the Staff Dept.) forum account. The attacker then logged into the forum's Administrative Control Panel (ACP) and overwrote one of the Staff Department's member's password. He then continued to alter the website's settings and forum structure via that access. You may have noticed the e-mail sent, unfortunately, in ENT's name and the bots' chat messages, too.
At 3 pm, I was notified of the breach. Being rather surprised by the situation and trying to figure out what happened, things didn't look good. Half an hour later, I contacted uakf.b informing him about the breach and we have taken measures to counter the "hack" (which, in fact, was probably just a mere brute-force of a forum user's password; how exactly he got the user's password is unknown to us though).
The website was taken offline, the latest forum backup was restored (from January) and the bot files were restored, too. At 5:15 pm the restoration was done. The forum and staff structure, topics and posts will look like in January. Please give the staff a few hours/days to administrate the forum. Thanks.
To summarize: At no point were the users' passwords in danger. To ensure your password can not be "guessed" via brute-force or other phishing techniques, ensure to use strong, unique passwords and if possible a two factor authentication. However, due to the backup, your password has been restored to the one you used in January. So, if you changed your password in the last two months, use your old one. Plus, don't be surprised about the old topics, we will have to move them.
I sincerely apologize for the inconvenience.