Chiều nay lên phpbb.com để cập nhật phiên bản mới thì thấy open source forum này đã bị ... hack.
Maintenance
We are sorry to report that we have been attacked through a 0-day-exploit in our PHPList installation (responsible for the mailing list about new releases). phpBB.com will remain unavailable while we work to recover. No vulnerabilities have been found in the phpBB software itself.
You can download phpBB here: http://www.ohloh.net/p/phpbb
You can get support at the http://area51.phpbb.com/phpBB/viewforum.php?f=71 or on IRC:
chat.freenode.net #phpbb
A http://area51.phpbb.com/phpBB/viewtopic.php?f=3&t=29973 about the incident.
Press Contact: If you need to get in contact with the management, please email phpbb_press (at) marshalrusty (dot) com.
– the phpBB team
[Question] Re: phpbb.com đã bị hack do lỗi 0-day-exploit
we have recently been attacked via a vulnerability in an outdated PHPList installation. The initial attack was performed well before a new version of the software was released or a patch provided. It is important to stress that no vulnerabilities have been found in the phpBB software itself.
theo thông báo thì phpBB bị tấn công thông qua PHPList chứ ko phải vì bug của phần mềm phpBB.