Skip to Content Skip to Menu

System Sending Fake PMs

  • slabbi
  • slabbi
  • OFFLINE
  • Posts: 3709
  • Thanks: 250
  • Karma: 153
12 years 9 months ago - 12 years 9 months ago #191870 by slabbi
Replied by slabbi on topic Re: System Sending Fake PMs
Switching the PM system does not solve you problem, since it is not the PM system.

These notifications do not come from uddeIM (or if they are initiated by another component of yours).


btw: I have updated my previous post.

uddeIM & uddePF Development
CB Language Workgroup
CB 3rd Party Developer
Last edit: 12 years 9 months ago by slabbi.
The following user(s) said Thank You: nihil

Please Log in or Create an account to join the conversation.

  • slabbi
  • slabbi
  • OFFLINE
  • Posts: 3709
  • Thanks: 250
  • Karma: 153
12 years 9 months ago #191871 by slabbi
Replied by slabbi on topic Re: System Sending Fake PMs
Do you use PHPmailer? Maybe this script is vulnerable?

uddeIM & uddePF Development
CB Language Workgroup
CB 3rd Party Developer
The following user(s) said Thank You: nihil

Please Log in or Create an account to join the conversation.

  • nihil
  • nihil
  • OFFLINE
  • Posts: 15
  • Thanks: 0
  • Karma: 0
12 years 9 months ago - 12 years 9 months ago #191873 by nihil
Replied by nihil on topic Re: System Sending Fake PMs

slabbi wrote: Do you use PHPmailer? Maybe this script is vulnerable.


How would i determine that? i haven't installed that as a module/plugin/component.

i activated the CSRF setting in UddeIM. Just in case.

EDIT: When i set CSRF to YES i couldn't send messages, everything was a CSRF attack, so i set that to NO.
Last edit: 12 years 9 months ago by nihil.

Please Log in or Create an account to join the conversation.

  • nihil
  • nihil
  • OFFLINE
  • Posts: 15
  • Thanks: 0
  • Karma: 0
12 years 9 months ago #191874 by nihil
Replied by nihil on topic Re: System Sending Fake PMs

slabbi wrote: Do you use a 3rd party component that also uses uddeIM to send messages? There are several (CB, Autowelcome, Kunena Forum, Autouserpoints and so on). Maybe this component is not configured correctly.

It is the first time I hear about this. Please keep me informed.


Kunena connects to UddeIM by providing a link to the user.

i turned off Alpha User Point notifications off, just in case. Pretty sure none of my AUP rules involve notifications via PM.

Please Log in or Create an account to join the conversation.

  • nihil
  • nihil
  • OFFLINE
  • Posts: 15
  • Thanks: 0
  • Karma: 0
12 years 9 months ago #191984 by nihil
Replied by nihil on topic Re: System Sending Fake PMs
i turned off PM notifications and those fake messages stopped. It seems that something was using the PM system to send those messages.

If someone is phishing from the outside they must have a copy of our database because they have usernames and email addresses.

Please Log in or Create an account to join the conversation.

  • slabbi
  • slabbi
  • OFFLINE
  • Posts: 3709
  • Thanks: 250
  • Karma: 153
12 years 9 months ago #192006 by slabbi
Replied by slabbi on topic Re: System Sending Fake PMs
The main component cannot sent fake messages. When you want to identify the user that has initiated the message, you can try following:
Take the message id from the link in the notification message and search the corresponding entry in jos_uddeim table. The fields fromid and toid identify the sender and the recipient of the message. The fromid is zero when a public user has created the message using the public frontend plugin from the premium plugins.

uddeIM & uddePF Development
CB Language Workgroup
CB 3rd Party Developer

Please Log in or Create an account to join the conversation.

Moderators: beatnantslabbikrileon
Powered by Kunena Forum