![]() |
| ||||||||
|
|||||||
![]() |
|
|
LinkBack | Thread Tools |
|
|
#1 | |
|
HyperActive Warrior
War Room Member
Join Date: Mar 2005
Location: Long Beach, CA, USA.
Posts: 377
Thanks: 8
Thanked 19 Times in 9 Posts
|
Just want to give you guys a heads up for those who run Wordpress blogs:
Wordpress MySQL Injection - Permalink hack %&({${eval(base64_decode($_SERVER[HTTP_REFERER] Thanks, Steve For your convenience, I'm copying & pasting my blog post here (images won't come through): Quote:
| |
|
|
||
|
|
|
|
|
#2 |
|
John Burnette
War Room Member
Join Date: Aug 2007
Location: S.E. USA
Posts: 532
Thanks: 94
Thanked 68 Times in 58 Posts
|
Hi,
There was somebody else that posted this problem earlier: Help! My Blog Posts Now Have Weird Code on the URL Really stinks. Thread does have some additional info. Thanks, John |
|
|
|
|
|
|
|
|
#3 | |
|
Not Banned
War Room Member
Join Date: Jun 2009
Posts: 36
Thanks: 16
Thanked 3 Times in 3 Posts
|
Quote:
The article shows how to clean it up, but doesn't mention a fix. Thanks for posting this, Steve. EDIT: Heh, Steve posted his entire post above, making this post redundant. Move along! | |
|
|
||
|
|
|
|
|
#4 |
|
Program Owner
Join Date: Aug 2009
Location: Ft. Lauderdale, FL
Posts: 14
Thanks: 0
Thanked 0 Times in 0 Posts
|
|
|
I Want Your Insurance Agent Traffic! - affiliate.IAIMS.com
I Also Wholesale High-Quality, Exclusive Insurance Leads - www.IAIMS.com Insurance Agent Internet Marketing Systems (IAIMS) |
|
|
|
|
|
|
#5 |
|
Internet Infopreneur
War Room Member
Join Date: Apr 2008
Location: , , .
Posts: 242
Blog Entries: 2
Thanks: 25
Thanked 200 Times in 69 Posts
|
An article explaining this in more detail:
Old WordPress Versions Under Attack Lorelle on WordPress A way to get rid of the 'hidden' admin: Wordpress Permalink & Rss problems If you need to do a complete re-install: How To Completely Clean Your Hacked WordPress Installation | Smackdown! Apparently, the hack is deep and may affect your database itself, allowing for future attacks. I took the advice in the first article and did a complete deletion and reinstall of my blog, after backing up the content and then imported it back into the new install. It's a pain - but better safe than sorry, right? All success Dr.Mani |
|
|
|
|
|
|
|
|
#6 | |
|
Warrior Member
Join Date: Aug 2008
Posts: 4
Thanks: 0
Thanked 0 Times in 0 Posts
|
Quote:
From testing that has been done it does not look like fresh installs of 2.8.4 are subject to the specific vulnerabilities that are being used in this set of exploits. -Michael | |
|
|
||
|
|
|
|
|
#7 |
|
HyperActive Warrior
Join Date: Feb 2009
Location: Cincinnati, OH, USA
Posts: 296
Thanks: 56
Thanked 34 Times in 28 Posts
|
That is one reason you need to have ALL your tsql code in a business layer so that the hackers cannot inject anything into the code to do stuff like this. Any of you who are coders should know what I am talking about. If you are doing sites for clients please make sure that there are at least 2 layers between the surfers and the actual tsql functionality. You should be running a data validation layer and a communications layer to protect your WP and databases from any kind of injection attacks.
|
|
The Taxman wants his money!! Firesale is on at det-enterprises.com!!! 1,000's of articles on sale now!!! Everything at ridiculously low prices.
|
|
|
|
|
|
|
#8 |
|
Active Warrior
Join Date: Jul 2007
Location: , , .
Posts: 73
Thanks: 0
Thanked 7 Times in 6 Posts
|
correct me if I'm wrong but mysql injection prevention should be done by the web host - first line of defence although it wouldn't surprise me if your web host says it's a wordpress problem like they usually do.
|
|
|
|
|
|
#9 | ||
|
Senior Warrior Member
War Room Member
Join Date: Apr 2006
Location: , , USA.
Posts: 1,708
Thanks: 17
Thanked 41 Times in 40 Posts
|
Quote:
Quote:
If you rented a place to live and something you installed broke, would you blame the landlord? | ||
|
|
|||
|
|
|
|
|
#10 |
|
Warrior Member
Join Date: Jul 2009
Posts: 23
Thanks: 3
Thanked 0 Times in 0 Posts
|
But I would say thanks to thread poster it was informative and some problem solved for me
|
|
|
|
|
|
|
|
|
#11 |
|
Don't think about rabbits
War Room Member
Join Date: Nov 2005
Location: ...between my left and right ear.
Posts: 652
Blog Entries: 1
Thanks: 11
Thanked 30 Times in 23 Posts
|
Thanks for the heads up...I'm sure there will be another update soon to patch this hole.
|
|
Internet Newbie School - Coming Soon...
>>> How to Add an Audio Playbutton To Your Website for Free <<< |
|
|
|
|
![]() |
|
| Tags |
| and% or, attack, injection, latest, mysql, wordpress, wordpress hack, wordpress injection |
| Thread Tools | |
|
|
![]() |