http://www.surfionline.com/archives/2007/04/04/timeline-of-the-mybb-124-release/
Talk about rush hour.
| 5:35 AM |
Vulnerability posted, Chris sleeping. |
| 8:26 AM |
Woken up by client on the phone, had some issues uploading images to his site. |
| 8:51 AM |
Client issues resolved, pushed new changes live to his site. |
| 8:52 AM |
Decided to check community forums whilst waiting for client to call back. |
| 8:52 AM |
New private message from Tickhi, “Big exploit MyBB 1.2.3″.
Sinking feeling in stomach.
|
| 8:54 AM |
Noticed vulnerability had been published on milw0rm with full proof of concept & exploit scripts.
Panic mode sets in.
|
| 8:57 AM |
Checked staff forums for notification of vulnerability too. Sure enough, it’s posted there as well. |
| 9:00 AM |
Transmit (OS X SFTP client) opened, connected to MyBB server. |
| 9:07 AM |
Analysed proof of concept to see what was being exploited. |
| 9:14 AM |
Patch in place on MyBB Community Forums. |
| 9:17 AM |
Notice several IP address in the Who’s Online which look like they’re people attempting to exploit the Community Forums.
Stomach just fell to the floor.
|
| 9:18 AM |
MyBB 1.2.3 release patched, manual patch instructions written. |
| 9:19 AM |
Informed users on the IRC channel of patched 1.2.3 release & pasted manual patch instructions to them. |
| 9:24 AM |
MyBB 1.2.3 release cloned as MyBB 1.2.4, version check & downloads file updated to show 1.2.4 as the latest version. |
| 9:31 AM |
MyBB 1.2.4 changed files archive generated. |
| 9:36 AM |
Release announcement written and posted on Community Forums. |
| 9:50 AM |
Release announcement written and posted on MyBB site. |
| 10:07 AM |
Change status on MSN Messenger from ‘Appear Offline’ to ‘Online’. Flooded with messages from 6 people. |
| 10:08 AM |
Vulnerability scanner written, tested & posted in release announcement. |
| 10:15 AM |
Announcements mailing list message written & queued for delivery. |
| 10:35 AM |
Breakfast time. |
http://www.surfionline.com/archives/2007/04/03/mozilla-firefox-using-330mb-memory-1-window-1-tab/

What a joke.
Firefox is a decent browser, but seriously.. 330mb for one browser window with one tab?
I only have two extensions installed - the Web Developer Toolbar and Firebug.
I’m changing to Opera when I’m using Windows from now on.
http://www.surfionline.com/archives/2007/03/21/mybb-plugin-version-checking/
Ryan likes the way we’re “plugging in” in MyBB 1.4.
Ryan has just finished one of the new features to be found in the MyBB 1.4 Admin CP. (with a little bit of XML goodness from myself too)
We’re implementing plugin version number checking directly in to the Admin CP and integrating it with the MyBB Mods site so you can quickly and easily check when the plugins you’re using have been updated.
http://www.surfionline.com/archives/2007/03/18/dennistt-on-the-mybb-copyright/
DennisTT has a rant about people removing the copyright in MyBB.
We’re hard working and honest people bringing you a quality product. Why can’t you say thank you by leaving 2 simple & small lines of text on the bottom of your forum?
Oh, and don’t think we can’t find your forum if you decide you’re going to remove the copyright.
http://www.surfionline.com/archives/2007/03/14/stargate-sg1-unending/
After an amazing 10 year run, Stargate SG1 has sadly essentially came to an end in quite possibly the best possible finalé episode.
This is a TV series I’ll miss. Every week I hung out waiting for this show.




To Sci Fi Channel - you guys suck. Majorly.
http://www.surfionline.com/archives/2007/03/06/leafy/
Everyone loves a leafy, everyone loves a leafy, go leafy go!
I like the colour in this photo I took yesterday - it’s not your typical plantish green, but looks nice. Also my current wallpaper.
http://www.surfionline.com/archives/2007/03/05/on-mybb-thread-subscriptions-favourites/
We’ve recently had a few people ask on the MyBB Community Forums how they can subscribe to a thread they reply to but not receive email notifications of new replies. They didn’t realise that we already had this functionality – you can add threads to a “favourites list”.
Why didn’t they realise this? The two leading commercial bulletin boards, vBulletin and Invision Power Board have both set the standard in user expectations on how features should work. Both of these commercial and highly popular bulletin board scripts allow users to add threads to their subscriptions list without receiving email notifications.
This creates a bit of a problem for us in MyBB as we’ve got this feature – favourite threads, which nobody actually uses or knows what it does because most are used to the ability to subscribe to a thread and elect to receive no email notifications of new replies.
In an attempt to “normalise” the front end functionality between bulletin boards, MyBB 1.4 now adopts a similar approach – we’ve completely scrapped the separate interface for favourite threads and merged the functionality in to the subscriptions system. This isn’t about us copying x or y, it’s about us bringing an interface to MyBB which hopefully brings some sort of small amount standardisation to the market.
People usually visit several different forums on the internet and interact with each of them. They’re most probably powered by several different forum scripts too and the problem with this is that usually features are worded differently or behave differently between these applications and uses do get lost and don’t know how to perform a task they can on another board. We need to help with this in some cases so we can provide a better experience for your users.
To explain a little better, the new subscriptions system has the following functionality:
- When registering or editing their profile, users can select their default thread subscription method: Do not subscribe to threads, subscribe to threads but don’t send notification emails or subscribe to threads and receive instant notification emails.
- Users can select which type of notification they want when making a new thread or posting a reply - the same options as above.
- When clicking the “Subscribe to thread” link in threads, users are presented with a screen allowing them to choose how they’d like to be notified of new replies (not at all or instant notification)
- The subscriptions page now lists all subscriptions, you’re notification method for new replies and looks similar to the standard thread listing pages.

The options you’re shown when subscribing to a thread from the show thread page.

Your subscriptions list - looking similar to the thread listing & containing checkboxes to manage the subscriptions.
http://www.surfionline.com/archives/2007/02/21/windows-vista-lollipop/
I got told I had to upload a photo of this. Almost a month ago, Microsoft sent out launch kits for Windows Vista & Office - being a distributor and OEM we received these kits. They came with the usual stuff, information brochures, lanyards with info sheets but also surprisingly they came with lollipops too - and they’re tasty!

The Windows Vista Lollipop
No, they don’t kill you they may however be, like any Microsoft product, susceptible to viruses.
Interestingly enough after Microsoft did such a fine implementation of UAC (User Account Control) in Vista, they seemed to have forgotten about it in the lollipop and you’re not asked every 5 to 10 seconds if you’re intentionally trying to eat it or if you meant to take the wrapper off. Finally, a Microsoft product that lets you get on with it.
http://www.surfionline.com/archives/2007/02/03/sidebar-gadget-vista-mint/
I’ve created a Windows Sidebar gadget for users of Mint so they can get a quick glance at their statistics similarly to the Junior Mint widget for Mac OS X.
Read about it & download a copy if you’re interested.

The gadget when docked to the sidebar

The gadget when undocked from the sidebar

The configuration window
http://www.surfionline.com/archives/2007/02/02/lake-conjola-2007-photos/
So I was away from the 16th until the 26th on the yearly holiday down at Lake Conjola. The perfect opportunity to put the new camera to the test.
Unfortunately we had some problems with our boat. (I believe it’s called lack of use and neglect from its owner) However, that didn’t stop those that wanted to wakeboard from wakeboarding and getting up to mischief on the water.
View 293 photos from Lake Conjola on my flickr account (Out of approximately 2,000 which I ended up taking)
Uhhh, oops?