Recent content by Lucas Nicodemus

  1. Lucas Nicodemus

    CloudBleed HTTPS traffic leak

    A lot of SQL queries to manually invalidate passwords, disable accounts, and emailing all users to manually reset their passwords. Between the combination of actions I tried prior, I'd already forced all users to the password change screen -- I just had to invalidate them manually and then send...
  2. Lucas Nicodemus

    CloudBleed HTTPS traffic leak

    @System0 my requirements were for password reset emails to be sent, and none of the addons I wanted did that. DragonByte security came close but broke down midway through and they ignored my support ticket.
  3. Lucas Nicodemus

    CloudBleed HTTPS traffic leak

    That email -- posted in full below, only states that 150 sites were found in the caches. That doesn't mean that this vulnerability wasn't discovered prior and data mined to oblivion, nor does it mean you weren't affected. You should assume any CloudFlare hosted site is vulnerable if you're using...
  4. Lucas Nicodemus

    CloudBleed HTTPS traffic leak

    Suffice it to say that I'm pretty dissatisfied with trying to mass reset passwords using XenForo. I've tried three different addons and one of them work properly. DragonByte Security (Paid, $25) - Claims to reset people's passwords, but fails to iterate through all users. Reset a good hundred...
  5. Lucas Nicodemus

    XF 1.5 Installing 1.5.4

    The upgrade packages are generated for the specific account & site that downloads it -- if I recall correctly.
  6. Lucas Nicodemus

    To Cloudflare Or Not To Cloudflare

    I've been using CloudFlare for several years now, and it's been really quite nice. The settings I've been using are these:
  7. Lucas Nicodemus

    Fixed Review/rating miscount

    It appears that if you make leaving a text review on a resource optional, ratings are counted as reviews and displayed as such in the tab header. Clicking on the review tab in this case does nothing -- it simply redirects back to the main page. Obviously, this will only happen in the case...
  8. Lucas Nicodemus

    TaigaChat Pro - Realtime chat/shoutbox [Deleted]

    Hiya! I've been using the free version for some time and just did a lot of forum upgrades. If you tag a user with @Name in the shoutbox, does an alert get generated for that? Just curious if I would get that from upgrading to pro.
  9. Lucas Nicodemus

    XenAPI - XenForo PHP REST API

    I can reliably cause an error with the following route: In addition, the getnodes action is public by default, and will show all nodes on the forum, regardless of permissions. This means that my "super secret board here is the password to whatever" description is visible to literally anyone...
  10. Lucas Nicodemus

    [bd] Paygate: STRIPE

    Hi @xfrocks, were you able to fix @BamaStangGuy's issue with Stripe not being able to authenticate payments? I've got the same problem.
  11. Lucas Nicodemus

    LGB Thread Renamer

    Working fine for me on the TShock forums.
Top Bottom