473,763 Members | 5,412 Online
Bytes | Software Development & Data Engineering Community
+ Post

Home Posts Topics Members FAQ

Reset unknown root password

This is stupid I know. In my fumbling around with mySQL and phpMyAdmin an
internet intruder has gone and set a password unknown to me.
Incredibly, I was only online for 3 hours when this happened and I spotted
it on a log.

I replaced the mySQL folder and updated the version but I still can't log
in.

Will one of you Gurus tell me how to just dump everything and start over?

Thank you

Ver 8.40 Distrib 4.0.20, for apple-darwin7.3.0
-- Gnarlie
http://www.Gnarlodious.com/

Jul 20 '05 #1
2 2183
Gnarlodious wrote:
This is stupid I know. In my fumbling around with mySQL and phpMyAdmin an
internet intruder has gone and set a password unknown to me.
Incredibly, I was only online for 3 hours when this happened and I spotted
it on a log.


Resetting the root password is not enough, the intruder might have set
other accounts for him/her/it -self, so you would need to remove all
user accounts, and change all passwords.

And are you sure the database is only that got hurt? It is common for
intruders to open few backdoors for them to use later. How did the
intruder get it? What else might be infected? Did you have a root
account for remote logins, but without a password?
http://dev.mysql.com/doc/mysql/en/Re...rmissions.html
Jul 20 '05 #2
Entity Aggro spoke thus:
Gnarlodious wrote:
This is stupid I know. In my fumbling around with mySQL and phpMyAdmin an
internet intruder has gone and set a password unknown to me.
Incredibly, I was only online for 3 hours when this happened and I spotted
it on a log.
Resetting the root password is not enough, the intruder might have set
other accounts for him/her/it -self, so you would need to remove all
user accounts, and change all passwords.

I think I'm safe since the logs showed no other invasive activity at the
time (4 months ago).

No unknown user as shown up in NetInfo either.
And are you sure the database is only that got hurt? It is common for
intruders to open few backdoors for them to use later. How did the
intruder get it? Through phpMyAdmin, which is open to the world by default. In any case, I'm
on a dynamic IP so I'm a moving target.
What else might be infected? Did you have a root
account for remote logins, but without a password? MySQL is running well on my laptop, but it's not the server. I may be doing
this wrong but I'm saying:
mysql-h 192.168.2.1 -uroot -p

but all I get is a 5 minute timeout with error:

ERROR 2003: Can't connect to MySQL server on '192.168.2.1'.
http://dev.mysql.com/doc/mysql/en/Re...rmissions.html

Thanks, I'll study that tomorrow.
-- Gnarlie
http://www.Gnarlodious.com/Cogent/Cogent.html

Jul 20 '05 #3

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

3
2376
by: Ian | last post by:
Hi I know there are products out there that can do this like http://www.psynch.com/technology/ska.html What is the code that is used to Reset a Users password so the next time they logon to the domain they are promoted for a new password? I know the code will have to run under the Admin. That is fine I just need to know what the API is and how to use it.
5
4313
by: MLH | last post by:
I'm supposed to set a password for the MySQL root user. The output of mysql_install_db instructed me to run the following commands... /usr/bin/mysqladmin -u root -h appserver password mynwewpasswd I did. It did not work. Here's the error: /usr/bin/mysqladmin: connect to server at 'appserver' failed error: 'Host 'appserver.crci.com' is not allowed to connect to this MySQL server' Another command I'm supposed to run also resulted in an...
0
2346
by: serkan | last post by:
Guys, I am trying to get this password reset functionality wor for me but I am not successful at all. Please somebody help me. I get "Your password could not be reset - please try again later" so I think the get_random_word function is not working right. Here are the scripts: This is the script after the user enters his/her userid. <?php require_once("bookmark_fns.php"); // creating short variable name $username = $_POST;
0
2030
by: damontimm | last post by:
My setup: Mac OS 10.4.4; mysql 4.x ... everything was installed and working fine for some time. Today, I added drupal to my system and had to create a new database in mysql -- now I am having some problems. I will outline the problem, what I have tried to do to fix it, and what I think caused it. Hope you can help and I am sorry this is long. The problem: I can't login to mysql anymore with the "root" username (which is where I have all...
7
161311
by: rajbala.3399 | last post by:
Hi , I want to download sql in my linux system........... # rpm -ivh MySQL-server-5.0.24a-0.glibc23.i386.rpm MySQL-cl ient-5.0.24a-0.glibc23.i386.rpm Preparing... ########################################### package MySQL-client-5.0.24a-0.glibc23 is already installed package MySQL-server-5.0.24a-0.glibc23 is already installed
6
9933
by: jarice1978 | last post by:
Hello, I have been scanning the internet for a few days now. That is not working. So now it is time to post! I have read a few other posts on here about authentication but they do not match exactly. We currently have an intranet app built in a mixture of asp and asp.net 1.1 and 2.0 written in VB .Net. We have a form where the user logs in and it authenticates against active directory successully in 2 ways: 1. The admin resets the...
2
3204
by: DarthPeePee | last post by:
Hello everyone. I am working on a Password Strength Meter and I am running into 1 problem that I would like to fix. When pressing the "Clear Password & Try Again" button, the password clears out of the text box, but the meter will stay at its current position until text is entered back into the textbox. Once text is re-entered, the meter will display the results again. I would like everything to reset when the button is pushed, but I...
3
3446
by: randeeparora | last post by:
Guys, I desperately need some help here. I have lost my root password and I am unable to login in. Every time on the CL prompt I am asked for a password and I obviuosly can't get through. I also tried removing the MySQL, manually deleting the entire directory, reg entries and every time I re-install it asks for the same password again and again that I unfortunately don't remember. Even while configuring the MySQL server it keeps on referring...
2
3801
by: ivytony | last post by:
First of all, I'm not sure if I've set up root password for MySQL server or not. I was following this tutorial http://www.howtoforge.com/centos-5.1-server-lamp-email-dns-ftp-ispconfig-p4 to install mysql on my CentOS 5 server. When I run 'mysqladmin -u root password yourrootsqlpassword', I got this error message: Then I go to MySQL prompt running ' mysql -uroot -pPassword' (Password is replaced by actual password) When I am on MySQL...
0
9563
marktang
by: marktang | last post by:
ONU (Optical Network Unit) is one of the key components for providing high-speed Internet services. Its primary function is to act as an endpoint device located at the user's premises. However, people are often confused as to whether an ONU can Work As a Router. In this blog post, we’ll explore What is ONU, What Is Router, ONU & Router’s main usage, and What is the difference between ONU and Router. Let’s take a closer look ! Part I. Meaning of...
0
9997
jinu1996
by: jinu1996 | last post by:
In today's digital age, having a compelling online presence is paramount for businesses aiming to thrive in a competitive landscape. At the heart of this digital strategy lies an intricately woven tapestry of website design and digital marketing. It's not merely about having a website; it's about crafting an immersive digital experience that captivates audiences and drives business growth. The Art of Business Website Design Your website is...
1
9937
by: Hystou | last post by:
Overview: Windows 11 and 10 have less user interface control over operating system update behaviour than previous versions of Windows. In Windows 11 and 10, there is no way to turn off the Windows Update option using the Control Panel or Settings app; it automatically checks for updates and installs any it finds, whether you like it or not. For most users, this new feature is actually very convenient. If you want to control the update process,...
0
9822
tracyyun
by: tracyyun | last post by:
Dear forum friends, With the development of smart home technology, a variety of wireless communication protocols have appeared on the market, such as Zigbee, Z-Wave, Wi-Fi, Bluetooth, etc. Each protocol has its own unique characteristics and advantages, but as a user who is planning to build a smart home system, I am a bit confused by the choice of these technologies. I'm particularly interested in Zigbee because I've heard it does some...
0
8821
agi2029
by: agi2029 | last post by:
Let's talk about the concept of autonomous AI software engineers and no-code agents. These AIs are designed to manage the entire lifecycle of a software development project—planning, coding, testing, and deployment—without human intervention. Imagine an AI that can take a project description, break it down, write the code, debug it, and then launch it, all on its own.... Now, this would greatly impact the work of software developers. The idea...
1
7366
isladogs
by: isladogs | last post by:
The next Access Europe User Group meeting will be on Wednesday 1 May 2024 starting at 18:00 UK time (6PM UTC+1) and finishing by 19:30 (7.30PM). In this session, we are pleased to welcome a new presenter, Adolph Dupré who will be discussing some powerful techniques for using class modules. He will explain when you may want to use classes instead of User Defined Types (UDT). For example, to manage the data in unbound forms. Adolph will...
0
5270
by: TSSRALBI | last post by:
Hello I'm a network technician in training and I need your help. I am currently learning how to create and manage the different types of VPNs and I have a question about LAN-to-LAN VPNs. The last exercise I practiced was to create a LAN-to-LAN VPN between two Pfsense firewalls, by using IPSEC protocols. I succeeded, with both firewalls in the same network. But I'm wondering if it's possible to do the same thing, with 2 Pfsense firewalls...
3
3522
muto222
by: muto222 | last post by:
How can i add a mobile payment intergratation into php mysql website.
3
2793
bsmnconsultancy
by: bsmnconsultancy | last post by:
In today's digital era, a well-designed website is crucial for businesses looking to succeed. Whether you're a small business owner or a large corporation in Toronto, having a strong online presence can significantly impact your brand's success. BSMN Consultancy, a leader in Website Development in Toronto offers valuable insights into creating effective websites that not only look great but also perform exceptionally well. In this comprehensive...

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.