![]() | | ||||||||
| | #1 |
| Active Warrior Join Date: Mar 2009
Posts: 81
Thanks: 3
Thanked 7 Times in 6 Posts
|
There has been a mass attack. A lot of wordpress blogs were hacked yesterday.. I think everyone should check their blogs now, because you might not even know that your blog is hacked. Here's a quick guide how to find out if you have been hacked. 0. Look at your permalinks. If there is a string attached like the one below, you have been hacked: PHP Code: 2. Under "Users" -> "Authors & Users" you will find all users, click on "Administrators". 3. Pay attention closely. If you see another name there (for a second only) you might have been hacked. Verify the number of administrators at the top. Remember the name of the unknown admin. In my case it was something like "EarnestCummingham". 4. Go to your PHPMyAdmin site and open the table "wp_usermeta". 5. Locate "EarnestCummingham" or a user with "wp_user_level" = "10". 6. Delete the user 7. Upgrade your wordpress blog to 2.8.4 (secure) How to make your blog even more secure? 8. Read the full article at WebmasterWeblog.com I hope this helps some people.. maybe you have been hacked and don't even know it .. that kinda scares me. A lot of people will not notice this and the hackers will then get what they want .. simply disgusts me |
| | |
| | #2 |
| Senior Warrior Member War Room Member Join Date: Jun 2005 Location: NSW, Australia
Posts: 2,981
Thanks: 166
Thanked 156 Times in 58 Posts
|
I have quite a number of outdated blogs and none have been hacked. So I dont know if this is an over reaction, or if Im just lucky...
|
| | |
| | |
| | #3 | |
| I am not a cowboy War Room Member Join Date: Apr 2007 Location: Caldwell, Idaho, USA.
Posts: 1,644
Thanks: 235
Thanked 491 Times in 341 Posts
| Quote:
If you're unwilling or unable to upgrade, be sure to do periodic backups that you can fall back on. Some of the earlier hacks and attacks were so pervasive that it required manually going through each post... | |
|
this area under construction
| ||
| | |
| | #4 |
| The Nature Lady War Room Member Join Date: Nov 2004 Location: , , USA.
Posts: 4,099
Thanks: 2,673
Thanked 3,187 Times in 1,753 Posts
|
These attacks have been going on for awhile now. Nothing new - just getting very frequent since January.
|
| | |
| | |
| | #5 |
| Senior Warrior Member War Room Member Join Date: Aug 2008 Location: Atlanta GA Metro Area, USA.
Posts: 3,643
Blog Entries: 5 Thanks: 311
Thanked 925 Times in 644 Posts
|
Is this one of those many hacks that only work if the WP registration and/or remote posting has been left open? I did some searching around but I couldn't find any answers to how the hack works. All I could find are panicky blog and forum posts saying upgrade to a version of WordPress that doesn't work right with several plugins I use on my older WP sites. |
| Product Reviews | Earn Online Cash | Free HTML Templates Free WordPress Themes: Boring Memo | Dateless Mini-Site | Info Magazine | 100 Twenty-Ten Niche Headers Discount Templates, Graphics and Scripts: Templates for Website | |
| | |
| | #6 | |
| HyperActive Warrior War Room Member Join Date: Dec 2008
Posts: 189
Thanks: 35
Thanked 107 Times in 12 Posts
| Quote:
It appears the only real solution is upgrading. You can read all about the attacks here, including a post by Matt from Wordpress: Techmeme: I don't feel safe with Wordpress, hackers broke in and took things (Robert Scoble/Scobleizer) | |
| | |
![]() |
|
| Tags |
| attack, mass, update, urgent, wordpress |
| Thread Tools | |
| |
![]() |