Page 1 of 3
RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 12:35 pm
by Hblade
I've recently banned the user bat78 for his behavior and hack threats. He'll likely try to get revenge as a new user, and will probably be posting links for you to click. Even if the link is from game-editor.com, make absolutely sure you know what you're clicking before you click it.
Learn how to avoid these types of attacks here in this guide...
Firstly, what is a RAT attack?
- Code: Select all
RAT (remote access Trojan)
A remote access Trojan (RAT) is a malware program that gives an intruder administrative control over a target computer. RATs are usually downloaded invisibly with a user-requested program -- such as a game -- or sent as an email attachment. Once the host system is compromised, the intruder may use it to distribute more RATs for a botnet.
RFI Attacks are done by loading a website using the way the forums work. Example, if you see a link like this, avoid it.
- Code: Select all
http://game-editor.com/forum/index.php?page=http://somehacksite.com/badscript.php?
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 12:58 pm
by MrJolteon
I can confirm that if Ale infects your computer with a RAT shit's gonna go down.
I'm speaking from personal experience. He hasn't infected me, but I've watched him screw around with other people.
So yeah, be careful.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:05 pm
by knucklecrunchgames
MrJolteon wrote:I can confirm that if Ale infects your computer with a RAT shit's gonna go down.
I'm speaking from personal experience. He hasn't infected me, but I've watched him screw around with other people.
So yeah, be careful.
Me, to be honest it wasn't her, but she did threatened me once saying and I quote
bat78 wrote:I will force LexC to rape your pc.
I can't remember what we were talking/arguing about but it certainly shut me up before I even knew what hacking was about, at least I know how to avoid it now as much as I can.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:39 pm
by tzoli
I just don't understand why can't one leave without wanting to get revenge...
If he didn't fit here it's not his fault and not our fault, he could have just left, no one forced him to stay.
Unfortunately peaceful methods are not really used in our world...
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:41 pm
by Hblade
tzoli wrote:I just don't understand why can't one leave without wanting to get revenge...
If he didn't fit here it's not his fault and not our fault, he could have just left, no one forced him to stay.
Unfortunately peaceful methods are not really used in our world...
I always try for peaceful methods
It'll be okay, tzoli
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:42 pm
by knucklecrunchgames
Just wanted to point out that a new user marketplace2 joined today at 4:00am greenwich time, maybe bat or coincidence?
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:45 pm
by Hblade
Nah I don't think that's him, but still be warey.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:50 pm
by 420foxbot
Sean, bat hacked your computer once. I watched him do it.
Still have screenshots on my computer somewhere.
And if clicking links is the most of your concerns, you're in for a shock. phpBB is ancient. I don't know much about it's code, but I'm absolutely positive it's vulnerable to a few XSS attacks, and if it's as secure as the previous version was, he could very well inject every one visiting a certain post.
I'd recommend getting some decent opsec for yourself, although that's something everyone should have in this age anyways. Don't allow someone to find your address just by logging into your computer. If you do, you're going to get fucked. Literally.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:55 pm
by tzoli
The only problem is that in this world you can pretty much find anyone. I think I'm quite easy to find on Facebook just by this username, or really easy by my skype name. Anyways, I think I'm not in that big danger, first because I wasn't threatened and second because I get really involved in my computer security. If I were really paranoid I could just use a linux distribution, since it's usually safer.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 1:55 pm
by Hblade
420foxbot wrote:Sean, bat hacked your computer once. I watched him do it.
Still have screenshots on my computer somewhere.
And if clicking links is the most of your concerns, you're in for a shock. phpBB is ancient. I don't know much about it's code, but I'm absolutely positive it's vulnerable to a few XSS attacks, and if it's as secure as the previous version was, he could very well inject every one visiting a certain post.
I'd recommend getting some decent opsec for yourself, although that's something everyone should have in this age anyways. Don't allow someone to find your address just by logging into your computer. If you do, you're going to get fucked. Literally.
Interesting. I'll look into XSS attacks, and see what can be done. Thanks fox.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 2:00 pm
by knucklecrunchgames
420foxbot wrote:Sean, bat hacked your computer once. I watched him do it.
Still have screenshots on my computer somewhere.
And if clicking links is the most of your concerns, you're in for a shock. phpBB is ancient. I don't know much about it's code, but I'm absolutely positive it's vulnerable to a few XSS attacks, and if it's as secure as the previous version was, he could very well inject every one visiting a certain post.
I'd recommend getting some decent opsec for yourself, although that's something everyone should have in this age anyways. Don't allow someone to find your address just by logging into your computer. If you do, you're going to get fucked. Literally.
You are right but I'm pretty sure that would take some time to do, so I may change my password just in case if that even protects me a little. Would proxy servers protect me or can they still be traced back to me?
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 2:05 pm
by 420foxbot
Here's a screenshot for you, Sean.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 2:06 pm
by Hblade
Idk, a VPN might protect you.
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 2:08 pm
by knucklecrunchgames
420foxbot wrote:Here's a screenshot for you, Sean.
Well as long as he can't do it again, my internet has changed so that shouldn't be too much of a problem.
Btw when was this taken? During the time I was hacked or later on?
Re: RAT / RFI Attack Warning: How to avoid it
Posted:
Wed Aug 12, 2015 2:13 pm
by 420foxbot
knucklecrunchgames wrote:Well as long as he can't do it again, my internet has changed so that shouldn't be too much of a problem.
Btw when was this taken? During the time I was hacked or later on?
Oh, he can do it again. He can do it as many times as he pleases.
This was taken while he was controlling your computer, so you were being hacked at the time, yes.