To place an order, check pricing, or to get more information please click the product type above.
First Time Here?
You Again?
Tech Specs       F.A.Q        Contact       Staff Picks       Newsline       Resources       Commentary       Appearances       Spotlight       Home
Updated:  The Hiccups Have Gone Away
Headline »
Updated: The Hiccups Have Gone Away
August 31, 2010 – 4:36 pm | No Comment

I learned today — with some sadness — that the company from which we had been ordering our binding supplies (glue, laminate, chip boards, etc.) for the past four years has shuttered their doors and gone out of business. It’s nothing to worry about, but this does put us in something of a tight spot for the next couple of days …

Read the full story »
Comics Shops

Comics Shops who support independent comics!

IndyPlanet Ad Swaps

Swap Ads with other creators and independent publishers!

Home » Headline

Update: Ka-Blam, IndyPlanet, ComicsMonkey Hacked

Submitted by BarryGregory on July 24, 2010 – 12:07 am29 Comments




July 27
IndyPlanet and ComicsMonkey are proving to be far more difficult to clean than Ka-Blam was. We’re hoping to have IndyPlanet clean by close of business today. We’re optimistic about that, although in fairness we’ve been hoping to have it back up by close of business every day since Friday. We’re closer now than ever before though. All of the shopping cart related scripts are now clean and we’re focusing on the ancillary areas of the site (most of which are seldom ever accessed by site vistors).

And just by way of clarification … the areas of our domains that were manipulated during the hack were php scripts and html files only. The databases — which contain all of the user information, orders, etc. — are on a separate server and there was never any unauthorized access to them.

July 22
So some time in the early morning hours of Thursday our sites were hacked. We’re not sure how they got in or what they were really trying to accomplish other than cause mischief.

Which they did in abundance.

Thankfully — and luckily for us –they also seem to have been somewhat inept. They left their mark on EVERY php and html file on more than a dozen domains, but they also left a pretty obvious trail behind and it doesn’t appear they did any irreparable harm. Still, Thomas and I have both spent the entire day combing through file after file, line by line, deleting the malicious additions made to our code.

We’re still checking, but it appears that we’ve got Ka-Blam.com clean once again. You may still, however, see a malicious site warning from your browser. My understanding is that those can linger until lifted by the third parties that impose them. We’re looking into that now.

In the meantime, we do believe that Ka-Blam is clean once again but if you should come across an sql error please let us know.

IndyPlanet and ComicsMonkey are both still down. We’ll be working on cleaning those all weekend I’m sure. We apologize for the inconvenience and beg your patience.

29 Comments »

  • Josh says:
    July 24, 2010 at 12:16 am

    Thanks for your hard work guys!

  • Hilary says:
    July 24, 2010 at 12:23 am

    Good lord; I can’t imagine the stress you guys must be under from this. We appreciate everything you’ve done to get the sites back up and running, and I hope this is the last you see of those nasty little creepers.

  • Tony Furtado says:
    July 24, 2010 at 12:45 am

    Nice work, guys!

    Tony

  • Ted says:
    July 24, 2010 at 1:08 am

    Sorry to hear about this. This kind of thing always sucks. Glad to hear you’re getting everything taken care of so quickly. One question if I may? Will this delay the printing and sending of pending orders? I hope everyone on this great site is well and this is all fixed quickly.

    Thanks again for all the work you guys do!

  • Thomas @ Ka-Blam says:
    July 24, 2010 at 1:11 am

    Thanks all.
    To tell the truth, about 4 hours in trying to figure this out, I discovered the heart of the Ka-Blam site, it’s JavaScript code, wasn’t working. I did tear up a little ;( “What’s wrong?”, said Barry. “Oh nothing”, I wept. I soon got it back into shape and WE smiled. That was a DARK moment in my day. Better now. Now on to see what we can do with IndyPlanet and ComicsMonkey. Gotta write some code to fix that. :)

  • David M.C. says:
    July 24, 2010 at 2:33 am

    Good work guys! Glad to see it’s back on track!

    -DMC

  • Dan Sehn says:
    July 24, 2010 at 5:30 am

    Man, some people have too much time on their hands. Glad to see you guys fixed things back up.

  • Sebastian Sandberg says:
    July 24, 2010 at 10:17 am

    Well blimey. I’m very relieved to see that another bunch of hackers was stopped before they could leave their mark. I say, the nerve of some people…

    Thanks for all the hard work you guys do keeping this site running. You guys are true troopers! :)

  • Samantha Burgess says:
    July 24, 2010 at 10:34 am

    glad to hear its (mostly) solved!

  • BarryGregory says:
    July 24, 2010 at 8:36 pm

    Hopefully not, Ted. Ka-Blam’s back up and running so we should be fine there. IndyPlanet and ComicsMonkey are both still down, but we’re making progress. Until we say so here we’d strongly recommend you stay away from both sites. Whoever hacked us (someone in China we’ve discovered) hid tiny little iframes all over the site code. So whenever any page with one of those hidden iframes is called a third party site is also secretly called and some spyware is downloaded. Nasty, nasty stuff. But we’ll have the sites completely disinfected soon and when we do we’ll post Google’s verification that the sites are clean and spyware free so you can visit them again with confidence.

  • Ted says:
    July 25, 2010 at 12:06 am

    Leave to someone in China to ruin everything for the rest of us. Glad you guys are on it. Thanks again.

  • David M.C. says:
    July 25, 2010 at 1:14 am

    This whole ordeal sucks. There was no reason for this! You’re a comic book printer for goodness sakes. We’re covering this on our website blog. We were waiting for Epitaph: Abiding Lilith #1 to hit IP’s online shelf, so I’ll let everyone know what’s up and that Ka-blam back up. I knew this morning, but have to run out so I couldn’t do anything right then.

    -DMC

  • David Lillie says:
    July 25, 2010 at 8:57 pm

    Ick, that’s horrible – I’m sorry you guys have to deal with this sort of stuff, but I know you can handle it. What you’re doing is far too awesome to be stopped by a mere malicious bump in the road.

    Actually, just last month my site’s php pages were hacked with something that sounds very similar to this. Not just me either, at least one other webcomic owner has recently had to deal with this sort of thing. Hopefully we’re not seeing the start of a trend or anything. 8 I

    But in the meanwhile, you guys certainly have the understanding and support of your customers while you fend off these attacks – we’re behind you 100% of the way! 8 )

  • Nate Marcel says:
    July 26, 2010 at 1:08 am

    You guys do such good work. May all transgressors get what they deserve.

  • hushicho says:
    July 26, 2010 at 1:22 am

    I’m so sorry to hear about this. I almost got caught up in it myself when I went to check on one of my additions to the IndyPlanet catalogue.

    You absolutely didn’t deserve this. No-one deserves this kind of treatment, but especially not Ka-Blam. My sincerest sympathies to this, and I send you positive energy and the best wishes to get everything back up and running as soon as possible.

  • JazylH says:
    July 26, 2010 at 7:34 am

    I certainly hope all our financial data is safe? I’m glad you guys are working on solving this. Wishing you the best of luck & I hope you find the perpetrators & bring them to justice!

  • Joey Tripp says:
    July 26, 2010 at 8:04 am

    Thank goodness I didn’t go to Indy Planet a few moments ago. I saw the Warning and check the google and saw you posted the warning. Anyway thank you all for your efforts. I hope those morons get what they deserve. A nice fat stay in prison!

  • Scott "Kidbenicia" Bradley says:
    July 26, 2010 at 3:10 pm

    Oh, man…I’m sorry. This happened to me last year, so I completely sympathize. Happily, it seems that you’ve got it under control.

  • BarryGregory says:
    July 27, 2010 at 1:55 am

    We don’t have any of your financial data … so that’s not a concern at all.

  • Anthony Pike says:
    July 27, 2010 at 12:28 pm

    Ah, I just used the contact form to let you know about the stuff on the other two sites but I’ve just now seen your comment around “# 24 July 2010 at 8:36 pm”. So I guess you already know about it.

  • Erin Fitzgerald says:
    July 27, 2010 at 3:50 pm

    Was any part of the Message Center affected? I’ve been waiting since the 22nd for a reply regarding issues with my print job for Otakon – I’ve sent two additional messages since then and have gotten no answers.

    Good luck with the rest of the cleanup!

  • WCG Comics says:
    July 27, 2010 at 4:14 pm

    What a drag, guys, sorry. SDCC went great, thanks for your terrific work.

  • Meg says:
    July 27, 2010 at 5:02 pm

    Ouch, I had almost exactly the same thing happen to my comic website a few years ago. I wish you luck in getting it all sorted out!

  • Ted says:
    July 28, 2010 at 9:40 am

    I too am waiting to hear back on a message and waiting for a proof. I understand how busy things must be for you all. Just wanting to make sure nothing fell through the cracks. Im going to Chicago comic-con this year and am looking forward to bring all four of my issues with me. Thanks again for everything you all do.

  • David M.C. says:
    July 30, 2010 at 4:40 pm

    You know this is convention season. I know I may be reaching but do you think this was malicious? I mean done on purpose versus being random? I mean why Ka-Blam and why now?

    -Nate

  • Daniel F. says:
    July 30, 2010 at 5:08 pm

    I hate to say it, but I’m with David M.C. I can’t help but wonder if a rival publisher or company caused this.

  • BarryGregory says:
    July 30, 2010 at 5:11 pm

    It was certainly malicious … but I don’t think it was intentionally destructive and I don’t think we were targeted for any particular reason. The attack originated in China and given the level of access they achieved they could have done a LOT more damage. What they were trying to do was to install invisible iframes that would download and install spyware whenever someone accessed the script they had altered. Luckily for us, there were a bit ham-handed and left an obvious trail behind. It’s very time consuming to fix what they did, but not overly difficult.

    BTW, IndyPlanet is now clean … even though the malware warnings haven’t been lifted yet. We’re trying to get those lifted now and hopefully some time next week they’ll go away.

    ComicsMonkey is still a bit of a mess. Steer clear of it still, please.

  • BarryGregory says:
    July 30, 2010 at 11:08 pm

    I highly doubt it, guys.

  • Jeremy Dale says:
    July 31, 2010 at 11:53 am

    Hang in there, guys. I know you’re working around the clock to right the ship. Let me know if we can help in any way. I don’t know HOW, but let us know.

    - jeremy

Leave a comment!

Click here to cancel reply »

Add your comment below, or trackback from your own site. You can also subscribe to these comments via RSS.

Be nice. Keep it clean. Stay on topic. No spam.

You can use these tags:
<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

This is a Gravatar-enabled weblog. To get your own globally-recognized-avatar, please register at Gravatar.

Got a Question for Us?
  
   Search Ka-Blam for the answer!
  

IndyPlanet Ad Swaps »

IndyPlanet Ad Swap –Lutu Warrior of the North

IndyPlanet Ad Swap –Lutu Warrior of the North

Steve Coffin’s Lutu Warrior of the North joins the IndyPlanet Ad Swap Club…

More articles »

Archive

  • August 2010
  • July 2010
  • June 2010
  • May 2010
  • April 2010

Blogroll

  • IndyPlanet
  • ComicsMonkey
  • Art & Story Podcast






Random Posts

Standard Sized Double Page Spread Template IndyPlanet Ad Swap -- [Messenger] Thomas’ Pick of the Week — Contagion #1 Calibrate Your Monitor! How long will it take for me to get my order? SDCC Indy Press Videos (Featuring Ka-Blam Creators!) Roger Langridge at Heroes Con June 4-6 Nathan Girten at Chicago Comic Con Aug 19-22 Three Alarm Comics Biloxi, MS Art & Story Extreme --Jimcon!! Blambot Fonts for May 2010 Comic Book Diner Podcast
(refresh random posts)

Latest Video Post

Comic Book Diner Podcast

Tech Specs

  • Standard Sized Double Page Spread Template
  • Magazine-Sized Page Template
  • Manga-Sized Page Template
  • Standard-Sized Page Template
  • Hardcover Standard-Sized Templates -- FRONT and BACK

Recent Comments

  • BarryGregory on General Technical Specs
  • anon7 on General Technical Specs
  • JIGreco on Manga-Sized Page Template
  • BarryGregory on Standard Sized Double Page Spread Template
  • Fany on Standard Sized Double Page Spread Template

FAQ

  • Why is there a margin in the center of the double page template?
  • Can I Print a Comic with a Landscape Orientation?
  • How do I order a custom-sized comic?
  • Can I print on the interior covers of a Hardcover?
  • Can I print a book that's all -- or mostly -- text?
  • What is a Self Cover?
  • What are Ka-Blam Sketch Covers?
  • Will my color gradients have banding?
  • Does Ka-Blam Provide ISBNs?
  • If I've already printed a TPB do I need to resend the files if I now want a Hardcover, too?
  • Am I surrendering any rights to my comic by listing it at IndyPlanet or ComicsMonkey?
  • My comic was drawn on blue lined paper other than yours. Is that a problem?
  • Is there a referral bonus?
  • What is the User CP?
  • My question isn't in the FAQ. What now?
  • If I provide a PO, will you ship my comics to a distributor?
  • In what file format should I send my pages?
  • Will you help me sell my comic after it has been printed?
  • How long will it take for me to get my order?
  • When will I be billed?
Powered by WordPress | Log in | Entries (RSS) | Comments (RSS) | Arthemia Premium theme by Colorlabs Project