To place an order, check pricing, or to get more information please click the product type above.
First Time Here?
You Again?
Tech Specs       F.A.Q        Contact       Staff Picks       Newsline       Resources       Commentary       Appearances       Spotlight       Home
Welcome New Users!
Headline »
Welcome New Users!
April 9, 2013 – 5:20 pm | Comments Off

Ahhhhh….Spring is here and with it a convention somewhere EVERY weekend!

I just got back from a wonderful trip to Anaheim and WonderCon. I met a lot of you there and not a chance to introduce us and our services to a lot of creator/publishers. I love attending conventions. Conventions are invigorating. They make you want to go home and create! They give you that drive to finally finish up that next issue you’ve been working on for a mighty long time. It’s heartening to see the passion to create comics in so many people.

Read the full story »
Creator Appearances

Personal appearances by Ka-Blam creators

FAQ

Frequently Asked Questions

Resources

Tips, tricks, tutorials, links, etc.

Comics Shops

Comics Shops who support independent comics!

IndyPlanet Ad Swaps

Swap Ads with other creators and independent publishers!

Home » Headline

Update: Ka-Blam, IndyPlanet, ComicsMonkey Hacked

Submitted by BarryGregory on July 24, 2010 – 12:07 am29 Comments




July 27
IndyPlanet and ComicsMonkey are proving to be far more difficult to clean than Ka-Blam was. We’re hoping to have IndyPlanet clean by close of business today. We’re optimistic about that, although in fairness we’ve been hoping to have it back up by close of business every day since Friday. We’re closer now than ever before though. All of the shopping cart related scripts are now clean and we’re focusing on the ancillary areas of the site (most of which are seldom ever accessed by site vistors).

And just by way of clarification … the areas of our domains that were manipulated during the hack were php scripts and html files only. The databases — which contain all of the user information, orders, etc. — are on a separate server and there was never any unauthorized access to them.

July 22
So some time in the early morning hours of Thursday our sites were hacked. We’re not sure how they got in or what they were really trying to accomplish other than cause mischief.

Which they did in abundance.

Thankfully — and luckily for us –they also seem to have been somewhat inept. They left their mark on EVERY php and html file on more than a dozen domains, but they also left a pretty obvious trail behind and it doesn’t appear they did any irreparable harm. Still, Thomas and I have both spent the entire day combing through file after file, line by line, deleting the malicious additions made to our code.

We’re still checking, but it appears that we’ve got Ka-Blam.com clean once again. You may still, however, see a malicious site warning from your browser. My understanding is that those can linger until lifted by the third parties that impose them. We’re looking into that now.

In the meantime, we do believe that Ka-Blam is clean once again but if you should come across an sql error please let us know.

IndyPlanet and ComicsMonkey are both still down. We’ll be working on cleaning those all weekend I’m sure. We apologize for the inconvenience and beg your patience.

29 Comments »

  • Josh says:
    July 24, 2010 at 12:16 am

    Thanks for your hard work guys!

  • Hilary says:
    July 24, 2010 at 12:23 am

    Good lord; I can’t imagine the stress you guys must be under from this. We appreciate everything you’ve done to get the sites back up and running, and I hope this is the last you see of those nasty little creepers.

  • Tony Furtado says:
    July 24, 2010 at 12:45 am

    Nice work, guys!

    Tony

  • Ted says:
    July 24, 2010 at 1:08 am

    Sorry to hear about this. This kind of thing always sucks. Glad to hear you’re getting everything taken care of so quickly. One question if I may? Will this delay the printing and sending of pending orders? I hope everyone on this great site is well and this is all fixed quickly.

    Thanks again for all the work you guys do!

  • Thomas @ Ka-Blam says:
    July 24, 2010 at 1:11 am

    Thanks all.
    To tell the truth, about 4 hours in trying to figure this out, I discovered the heart of the Ka-Blam site, it’s JavaScript code, wasn’t working. I did tear up a little ;( “What’s wrong?”, said Barry. “Oh nothing”, I wept. I soon got it back into shape and WE smiled. That was a DARK moment in my day. Better now. Now on to see what we can do with IndyPlanet and ComicsMonkey. Gotta write some code to fix that. :)

  • David M.C. says:
    July 24, 2010 at 2:33 am

    Good work guys! Glad to see it’s back on track!

    -DMC

  • Dan Sehn says:
    July 24, 2010 at 5:30 am

    Man, some people have too much time on their hands. Glad to see you guys fixed things back up.

  • Sebastian Sandberg says:
    July 24, 2010 at 10:17 am

    Well blimey. I’m very relieved to see that another bunch of hackers was stopped before they could leave their mark. I say, the nerve of some people…

    Thanks for all the hard work you guys do keeping this site running. You guys are true troopers! :)

  • Samantha Burgess says:
    July 24, 2010 at 10:34 am

    glad to hear its (mostly) solved!

  • BarryGregory says:
    July 24, 2010 at 8:36 pm

    Hopefully not, Ted. Ka-Blam’s back up and running so we should be fine there. IndyPlanet and ComicsMonkey are both still down, but we’re making progress. Until we say so here we’d strongly recommend you stay away from both sites. Whoever hacked us (someone in China we’ve discovered) hid tiny little iframes all over the site code. So whenever any page with one of those hidden iframes is called a third party site is also secretly called and some spyware is downloaded. Nasty, nasty stuff. But we’ll have the sites completely disinfected soon and when we do we’ll post Google’s verification that the sites are clean and spyware free so you can visit them again with confidence.

  • Ted says:
    July 25, 2010 at 12:06 am

    Leave to someone in China to ruin everything for the rest of us. Glad you guys are on it. Thanks again.

  • David M.C. says:
    July 25, 2010 at 1:14 am

    This whole ordeal sucks. There was no reason for this! You’re a comic book printer for goodness sakes. We’re covering this on our website blog. We were waiting for Epitaph: Abiding Lilith #1 to hit IP’s online shelf, so I’ll let everyone know what’s up and that Ka-blam back up. I knew this morning, but have to run out so I couldn’t do anything right then.

    -DMC

  • David Lillie says:
    July 25, 2010 at 8:57 pm

    Ick, that’s horrible – I’m sorry you guys have to deal with this sort of stuff, but I know you can handle it. What you’re doing is far too awesome to be stopped by a mere malicious bump in the road.

    Actually, just last month my site’s php pages were hacked with something that sounds very similar to this. Not just me either, at least one other webcomic owner has recently had to deal with this sort of thing. Hopefully we’re not seeing the start of a trend or anything. 8 I

    But in the meanwhile, you guys certainly have the understanding and support of your customers while you fend off these attacks – we’re behind you 100% of the way! 8 )

  • Nate Marcel says:
    July 26, 2010 at 1:08 am

    You guys do such good work. May all transgressors get what they deserve.

  • hushicho says:
    July 26, 2010 at 1:22 am

    I’m so sorry to hear about this. I almost got caught up in it myself when I went to check on one of my additions to the IndyPlanet catalogue.

    You absolutely didn’t deserve this. No-one deserves this kind of treatment, but especially not Ka-Blam. My sincerest sympathies to this, and I send you positive energy and the best wishes to get everything back up and running as soon as possible.

  • JazylH says:
    July 26, 2010 at 7:34 am

    I certainly hope all our financial data is safe? I’m glad you guys are working on solving this. Wishing you the best of luck & I hope you find the perpetrators & bring them to justice!

  • Joey Tripp says:
    July 26, 2010 at 8:04 am

    Thank goodness I didn’t go to Indy Planet a few moments ago. I saw the Warning and check the google and saw you posted the warning. Anyway thank you all for your efforts. I hope those morons get what they deserve. A nice fat stay in prison!

  • Scott "Kidbenicia" Bradley says:
    July 26, 2010 at 3:10 pm

    Oh, man…I’m sorry. This happened to me last year, so I completely sympathize. Happily, it seems that you’ve got it under control.

  • BarryGregory says:
    July 27, 2010 at 1:55 am

    We don’t have any of your financial data … so that’s not a concern at all.

  • Anthony Pike says:
    July 27, 2010 at 12:28 pm

    Ah, I just used the contact form to let you know about the stuff on the other two sites but I’ve just now seen your comment around “# 24 July 2010 at 8:36 pm”. So I guess you already know about it.

  • Erin Fitzgerald says:
    July 27, 2010 at 3:50 pm

    Was any part of the Message Center affected? I’ve been waiting since the 22nd for a reply regarding issues with my print job for Otakon – I’ve sent two additional messages since then and have gotten no answers.

    Good luck with the rest of the cleanup!

  • WCG Comics says:
    July 27, 2010 at 4:14 pm

    What a drag, guys, sorry. SDCC went great, thanks for your terrific work.

  • Meg says:
    July 27, 2010 at 5:02 pm

    Ouch, I had almost exactly the same thing happen to my comic website a few years ago. I wish you luck in getting it all sorted out!

  • Ted says:
    July 28, 2010 at 9:40 am

    I too am waiting to hear back on a message and waiting for a proof. I understand how busy things must be for you all. Just wanting to make sure nothing fell through the cracks. Im going to Chicago comic-con this year and am looking forward to bring all four of my issues with me. Thanks again for everything you all do.

  • David M.C. says:
    July 30, 2010 at 4:40 pm

    You know this is convention season. I know I may be reaching but do you think this was malicious? I mean done on purpose versus being random? I mean why Ka-Blam and why now?

    -Nate

  • Daniel F. says:
    July 30, 2010 at 5:08 pm

    I hate to say it, but I’m with David M.C. I can’t help but wonder if a rival publisher or company caused this.

  • BarryGregory says:
    July 30, 2010 at 5:11 pm

    It was certainly malicious … but I don’t think it was intentionally destructive and I don’t think we were targeted for any particular reason. The attack originated in China and given the level of access they achieved they could have done a LOT more damage. What they were trying to do was to install invisible iframes that would download and install spyware whenever someone accessed the script they had altered. Luckily for us, there were a bit ham-handed and left an obvious trail behind. It’s very time consuming to fix what they did, but not overly difficult.

    BTW, IndyPlanet is now clean … even though the malware warnings haven’t been lifted yet. We’re trying to get those lifted now and hopefully some time next week they’ll go away.

    ComicsMonkey is still a bit of a mess. Steer clear of it still, please.

  • BarryGregory says:
    July 30, 2010 at 11:08 pm

    I highly doubt it, guys.

  • Jeremy Dale says:
    July 31, 2010 at 11:53 am

    Hang in there, guys. I know you’re working around the clock to right the ship. Let me know if we can help in any way. I don’t know HOW, but let us know.

    - jeremy

Leave a comment!

Click here to cancel reply »

Add your comment below, or trackback from your own site. You can also subscribe to these comments via RSS.

Be nice. Keep it clean. Stay on topic. No spam.

You can use these tags:
<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

This is a Gravatar-enabled weblog. To get your own globally-recognized-avatar, please register at Gravatar.

Got a Question for Us?
  
   Search Ka-Blam for the answer!
  

Creator Appearances »

Emilio Velez Jr’s busy weekend!

Emilio Velez Jr spent his weekend attending 2 shows:
On Friday he showcased his Dodgeball Teen series at the Community Resource Fair in the Bronx. On Saturday, he went to the EternalCon in Long Island, NY!

More articles »

FAQ »

Pages vs. Sheets

Pages vs. Sheets

One of the most common mistakes we see on orders is with regard to page count. There is a tendency to confuse sheets with pages. Don’t make that mistake. Sheets and pages are NOT synonymous

More articles »

IndyPlanet Ad Swaps »

IndyPlanet Ad Swap — KuroShouri

IndyPlanet Ad Swap — KuroShouri

Kristin Laflin’s Kuro Shouri joins the IndyPlanet Ad Swap Club…

More articles »

Newsline »

Jon Sampson doesn’t leave us in a Lurch

Jon Sampson did double duty at Lexington Comic Con!
Not only did this creator have our t-shirt modeled but he got to meet Carl Struycken who played Lurch in the 1993 Addams Family movie.

More articles »

Staff Picks »

Jenni’s Pick of the Week: Next Town Over #1

Jenni’s Pick of the Week: Next Town Over #1

Jenni Says — “This book is right up my alley–steampunk and spookiness!”

More articles »

T-Shirt Contest »

Create a T-Shirt Contest — Address

Create a T-Shirt Contest — Address

Check out the latest entrant in Ka-Blam’s Create a T-Shirt Contest!

More articles »

Technical Specs »

Standard Sized Double Page Spread Template

Standard Sized Double Page Spread Template

This template applies to all double page spreads for standard-sized comics, wraparound covers for standard sized comics, as well as the interior covers (endpapers) for standard-sized hardcovers.

More articles »

Tip o’ the Day »

Please Do Not Use Yousendit for Sending Files to Us

Please Do Not Use Yousendit for Sending Files to Us

We’ve mentioned this a few times in the past but just as a reminder, everyone, please do NOT use yousendit.com for sending files to us. The downloads are too slow, the download limits are too small, and the links expire too fast.

More articles »

Archive

  • June 2013
  • May 2013
  • April 2013
  • March 2013
  • February 2013
  • January 2013

Blogroll

  • IndyPlanet
  • ComicsMonkey
  • Art & Story Podcast




Random Posts

Otis Frampton at Heroes Con June 4-6 Three Alarm Comics Biloxi, MS Thomas' Pick of the Week -- Locus #1 Megacon 2013 Order Pickup Barry's Pick of the Week -- Halloween Man IndyPlanet Ad Swap -- DreamWalker Cliff VanMeter at Detroit FanFare 2010 Comfort and Adam's C2E2 2011 Report!
(refresh random posts)

Latest Video Post

Tech Specs

  • Standard Sized Double Page Spread Template
  • Magazine-Sized Page Template
  • Manga-Sized Page Template
  • Standard-Sized Page Template
  • Hardcover Standard-Sized Templates -- FRONT and BACK

Recent Comments

  • Ted Shambaris on Ted Shambaris and Derek Lipscomb to appear at the Amazing Las Vegas Comic Con June 14-16!
  • Jenni on General Technical Specs
  • Mike on General Technical Specs
  • Tania on Magazine-Sized Page Template
  • Katherin on What methods of payment do you accept?

FAQ

  • Pages vs. Sheets
  • Ka-Blam's New Uploads Center
  • T-Shirt FAQ
  • Why is there a margin in the center of the double page template?
  • Can I Print a Comic with a Landscape Orientation?
  • How do I order a custom-sized comic?
  • Can I print a book that's all -- or mostly -- text?
  • What is a Self Cover?
  • What are Ka-Blam Sketch Covers?
  • Will my color gradients have banding?
  • Does Ka-Blam Provide ISBNs?
  • Am I surrendering any rights to my comic by listing it at IndyPlanet or ComicsMonkey?
  • My comic was drawn on blue lined paper other than yours. Is that a problem?
  • Is there a referral bonus?
  • What is the User CP?
  • My question isn't in the FAQ. What now?
  • If I provide a PO, will you ship my comics to a distributor?
  • In what file format should I send my pages?
  • Will you help me sell my comic after it has been printed?
  • How long will it take for me to get my order?
Powered by WordPress | Log in | Entries (RSS) | Comments (RSS) | Arthemia Premium theme by Colorlabs Project