Pages:
Author

Topic: how to add avatar pic? (Read 1123 times)

hero member
Activity: 686
Merit: 500
February 20, 2014, 05:20:16 PM
#26
atleast this thread explains it all.
yes thanks for the read guys!
member
Activity: 112
Merit: 10
February 19, 2014, 09:24:42 AM
#25
atleast this thread explains it all.
hero member
Activity: 868
Merit: 1000
February 19, 2014, 09:15:51 AM
#24
I don't see how simply reinstating avatars would take away focus from the new forum. And he seems to have a team working on that. not him.

No idea.
BTW, there are already dozens of threads in meta asking about the avatar for the past 3 months.
newbie
Activity: 42
Merit: 0
February 19, 2014, 08:48:02 AM
#23
was wondering about this too
legendary
Activity: 1232
Merit: 1195
February 19, 2014, 08:41:28 AM
#22
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible?

If you mean how the feature is disabled by theymos, yes it is possible.

If you mean how the forum was hacked with avatar, please check this thread.
https://bitcointalksearch.org/topic/about-the-recent-attack-306878

It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.


So if it wasn't that then why haven't they reinstated them?



Probably because the new forum software is being developed, and theymos wants to focus on it...
You may find some info here.
https://bitcointalksearch.org/topic/leaked-latest-status-on-forum-software-451893 and https://bitcointalksearch.org/topic/--455867


I don't see how simply reinstating avatars would take away focus from the new forum. And he seems to have a team working on that. not him.
hero member
Activity: 868
Merit: 1000
February 19, 2014, 05:45:58 AM
#21
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible?

If you mean how the feature is disabled by theymos, yes it is possible.

If you mean how the forum was hacked with avatar, please check this thread.
https://bitcointalksearch.org/topic/about-the-recent-attack-306878

It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.


So if it wasn't that then why haven't they reinstated them?



Probably because the new forum software is being developed, and theymos wants to focus on it...
You may find some info here.
https://bitcointalksearch.org/topic/leaked-latest-status-on-forum-software-451893 and https://bitcointalksearch.org/topic/--455867
legendary
Activity: 2394
Merit: 1412
Leading Crypto Sports Betting & Casino Platform
February 18, 2014, 06:04:09 PM
#20
Pro tip: You can't.


Forum satff said that a software update is coming up somewhat soon so they won't bbother to update the current one.
hero member
Activity: 826
Merit: 1000
February 18, 2014, 06:03:10 PM
#19
I dont think this feature will ever come back any time soon. Ever since the hack of this forum awhile back.
hero member
Activity: 532
Merit: 500
Currently held as collateral by monbux
February 18, 2014, 05:19:10 PM
#18
Think I read they don't plan on enabling it until the new software is completed and its 100% secure.
sr. member
Activity: 350
Merit: 252
REAL-EYES || REAL-IZE || REAL-LIES||
February 18, 2014, 03:47:46 PM
#17
you cant change it either.I'm stuck with WDC  Grin
haha now that is not the situation you want yourself in..! get well soon [to you avatar]
legendary
Activity: 1400
Merit: 1000
February 18, 2014, 03:45:15 PM
#16
you cant change it either.I'm stuck with WDC  Grin
full member
Activity: 140
Merit: 100
February 18, 2014, 03:43:22 PM
#15
you can't because the forums have been hacked and they haven't fixed it yet..

If you read the linked thread in my previous post, you will know that the avatar indeed has nothing to do with the hack at all...
It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.
ok now we are not going to argue about what happened back then , the point is that the feature is disabled and admin will notify whenever it'll be back..! so till then " NO AVATAR "

Indeed, a new forum software is being developed, and the avatar will not be back until the new software is ready.

You may find some info here.
https://bitcointalksearch.org/topic/leaked-latest-status-on-forum-software-451893 and https://bitcointalksearch.org/topic/--455867

Peace  Smiley
I don't think members here are in mood of peace ..! they want to argue let them do that,
legendary
Activity: 1232
Merit: 1195
February 18, 2014, 03:40:34 PM
#14
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible?

If you mean how the feature is disabled by theymos, yes it is possible.

If you mean how the forum was hacked with avatar, please check this thread.
https://bitcointalksearch.org/topic/about-the-recent-attack-306878

It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.


Thanks, I meant the latter, but I like your humor.

What humour?
newbie
Activity: 28
Merit: 0
February 18, 2014, 03:39:05 PM
#13
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible?

If you mean how the feature is disabled by theymos, yes it is possible.

If you mean how the forum was hacked with avatar, please check this thread.
https://bitcointalksearch.org/topic/about-the-recent-attack-306878

It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.


Thanks, I meant the latter, but I like your humor.
full member
Activity: 196
Merit: 101
February 18, 2014, 03:36:20 PM
#12
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible?

If you mean how the feature is disabled by theymos, yes it is possible.

If you mean how the forum was hacked with avatar, please check this thread.
https://bitcointalksearch.org/topic/about-the-recent-attack-306878

It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.


So if it wasn't that then why haven't they reinstated them?

HA!

I said it was a hack attack Cheesy
legendary
Activity: 1232
Merit: 1195
February 18, 2014, 02:50:56 PM
#11
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible?

If you mean how the feature is disabled by theymos, yes it is possible.

If you mean how the forum was hacked with avatar, please check this thread.
https://bitcointalksearch.org/topic/about-the-recent-attack-306878

It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.


So if it wasn't that then why haven't they reinstated them?
hero member
Activity: 868
Merit: 1000
February 18, 2014, 02:43:11 PM
#10
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible?

If you mean how the feature is disabled by theymos, yes it is possible.

If you mean how the forum was hacked with avatar, please check this thread.
https://bitcointalksearch.org/topic/about-the-recent-attack-306878

It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.
newbie
Activity: 28
Merit: 0
February 18, 2014, 02:12:01 PM
#9
thanks  Smiley
That feature is disabled by the administration i think, because someone told me that it was the reason of forum getting hacked some time ago correct me if i'm wrong . 

How can that be possible? Learn something new everyday.
hero member
Activity: 868
Merit: 1000
February 18, 2014, 01:37:36 PM
#8
you can't because the forums have been hacked and they haven't fixed it yet..

If you read the linked thread in my previous post, you will know that the avatar indeed has nothing to do with the hack at all...
It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.
ok now we are not going to argue about what happened back then , the point is that the feature is disabled and admin will notify whenever it'll be back..! so till then " NO AVATAR "

Indeed, a new forum software is being developed, and the avatar will not be back until the new software is ready.

You may find some info here.
https://bitcointalksearch.org/topic/leaked-latest-status-on-forum-software-451893 and https://bitcointalksearch.org/topic/--455867

Peace  Smiley
full member
Activity: 140
Merit: 100
February 18, 2014, 01:28:53 PM
#7
you can't because the forums have been hacked and they haven't fixed it yet..

If you read the linked thread in my previous post, you will know that the avatar indeed has nothing to do with the hack at all...
It was initially suspected by many that the attack was done by exploiting a flaw in SMF which allows you to upload any file to the user avatars directory, and then using a misconfiguration in nginx to execute this file as a PHP script. However, this attack method seems impossible if PHP's security.limit_extensions is set.
ok now we are not going to argue about what happened back then , the point is that the feature is disabled and admin will notify whenever it'll be back..! so till then " NO AVATAR "
Pages:
Jump to: