Page 1 of 1

hmm

PostPosted: September 25th, 2025, 3:37 pm
by Termingamer2-JD
- The forum's running an outdated version of phpbb, going by the docs/CHANGELOG.htm file it is running 3.0.11
- The server itself runs debian 9 stretch, which is EOL already and likely runs an obsolete version of php (7.0/7.2 possibly)
- Apache2 likely isn't configured safely, everything's presumably in /var/www/html given I can access the site from the ip
- The shortlink domain died years ago as did the HTTPS, which causes google to now redirect you to malware whenever you try to go to a result from this forum, since it's either muddling results up when generating the google url or idk. Derp.
- Registrations are disabled due to excess spam.

I'm kind of concerned that a random bad actor could blow the website up or pull off a Board2 and flood the place with crap somehow. In particular I imaginr thr password algorithms used by such an old version of phpBB are relatively weak by modern standards - and there have been instances of compromised accounts elsewhere showing up

So yeh