![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
Raise Your Weapon
Industry Role:
Join Date: Jun 2003
Location: Outback Australia
Posts: 15,605
|
Global Wordpress Brute Force Attack
Right now there is a global Wordpress brute force attack taking place where up to 90,000 individual IP addresses have been detected as involved.
http://blog.sucuri.net/2013/04/mass-...r-reality.html http://blog.sucuri.net/2013/04/prote...e-attacks.html Check your server logs, ensure you have strong passwords and preferably don't use "admin" as your login name. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
BACON BACON BACON
Industry Role:
Join Date: Nov 2002
Location: Poems everybody, the laddie fancies himself a poet
Posts: 35,457
|
who would have guessed wordpress is vulnerable?
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 |
So Fucking Banned
Industry Role:
Join Date: Jan 2013
Location: lollling
Posts: 4,390
|
what's a word press
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
Confirmed User
Industry Role:
Join Date: Aug 2002
Location: Sunny Fucking California
Posts: 1,575
|
This plugin prevents the unlimited login attempt's WordPress allows
http://wordpress.org/extend/plugins/...ogin-attempts/
__________________
“Ours is a world of nuclear giants and ethical infants. We know more about war than we know about peace, more about killing than we know about living. If we continue to develop our technology without wisdom or prudence, our servant may prove to be our executioner.” ― Omar Bradley (1948) |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#5 |
Porn is Dead. Move along.
Industry Role:
Join Date: Aug 2006
Posts: 13,295
|
fun stuff
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 |
So Fucking What
Industry Role:
Join Date: Jul 2006
Posts: 17,189
|
i made da wordpess imma da webpage dedinuuhhhh . i dedign webpage
![]()
__________________
best host: Webair | best sponsor: Kink | best coder: 688218966 | Go Fuck Yourself ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 |
Too lazy to wipe my ass
Industry Role:
Join Date: Aug 2002
Location: A Public Bathroom
Posts: 38,512
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 |
Confirmed User
Industry Role:
Join Date: Apr 2013
Posts: 122
|
Thanks for heads up.
__________________
![]() email: mark[at]insanedollars[dot]com | ICQ::685~986~008 Flat $125 PPS Cam Site! Make Insane Dollar$!! |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 |
Confirmed User
Join Date: Feb 2007
Location: Sweden
Posts: 5,623
|
I assume that as long as you use a decent password you should be OK since they're using wordlists for the attacks?
__________________
Free 🅑🅘🅣🅒🅞🅘🅝🅢 Every Hour (Yes, really. Free ₿itCoins.) (Signup with ONLY your Email and Password. You can also refer people and get even more.) |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 |
She is ugly, bad luck.
Industry Role:
Join Date: Jan 2010
Posts: 13,177
|
The vulnerability is just down to the number of users and the likelihood of people being stupid enough to use abc123 as their password.
__________________
↑ see post ↑ 13101 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#12 |
Confirmed User
Join Date: Jul 2008
Posts: 850
|
Thanks for the heads up. It always amazes me that websites dont have more sophisticated anti-hacking measures along these lines.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#13 |
Confirmed User
Industry Role:
Join Date: Oct 2011
Location: SE New England
Posts: 577
|
Thanks, AK - passed the word along.
__________________
Just your run of the mill former fetish performer who is now writing for adult web sites. If you want authentic detail that gets noticed, get in touch. email: smut [at] rubygoodnight [dot] com | twitter: @RubyGoodnight | Skype: RubyGoodnight portfolio : rubygoodnight.com | non-exclusive adult written content: downloads.rubygoodnight.com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#14 | |
Confirmed User
Industry Role:
Join Date: Jul 2002
Location: Atlanta,Ga.
Posts: 3,180
|
Quote:
Issue was resolved before I got out of bed. Only reason you might worry is if your server isnt hosted at MojoHost.
__________________
Assclown Bob Rice wants to BANG your credit card! "I am putting the bastards of this world on notice; greed and corruption will always be met with "a voice made of ink and rage." All the information above is my personal opinion.
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#15 | ||
feeding the wolves
Industry Role:
Join Date: Aug 2012
Location: between sand and stars in Jamaica
Posts: 6,231
|
Quote:
it's still a great plugin, just not against this sort of attack Quote:
unrelated to wordpress, I had a bunch of weird questions from pseudo-customers a few weeks back (3 on the same day) asking me to play the 'porn star name game' (where the answers are one's middle name, street one grew up on, name of one's first pet, etc). It didn't occur to me that it was anything significant (other than being weird) until I read that those are often password retrieval questions for online accounts. It was a total 'duh' moment and I'm glad I just ignored the losers who had asked me. /threadjack thanks for posting the links, AdultKing
__________________
throwing molotav cocktails at the precinct |
||
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#16 |
She is ugly, bad luck.
Industry Role:
Join Date: Jan 2010
Posts: 13,177
|
There is always quite a few sites about harvesting passwords in the guise of Check How Secure Your Password Is too.
__________________
↑ see post ↑ 13101 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#17 |
Confirmed User
Join Date: Sep 2008
Posts: 491
|
So is admin1234 not secure? Man. I got a lot of sites to change. Can anyone help?
__________________
Email - popuplace [at] yahoo [dot] com |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#18 |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Hollywood Fl.
Posts: 8,973
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#19 |
Confirmed User
Join Date: May 2008
Location: Pennsylvania
Posts: 4,204
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#20 |
SO FUCKING SCAMMED
Industry Role:
Join Date: Mar 2010
Location: UK
Posts: 1,377
|
Use .htaccess to password protect /wp-admin folder and add deny access to all traffic excluding your own IP.
__________________
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#21 |
Confirmed User
Industry Role:
Join Date: Aug 2001
Location: Scotland
Posts: 2,238
|
__________________
Programming today is a race between software engineers striving to build bigger and better idiot-proof programs, and the Universe trying to produce bigger and better idiots. So far, the Universe is winning. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#22 |
Tube groupie.
Industry Role:
Join Date: Aug 2002
Location: LoScandalous, CA
Posts: 13,483
|
We had to deal with it yesterday
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#23 |
Registered User
Industry Role:
Join Date: May 2012
Location: Over the Rainbow
Posts: 83
|
Why would they want to hit Wordpress? I was aware of this yesterday....unfortunately..
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#24 |
So Fucking Banned
Industry Role:
Join Date: Oct 2007
Posts: 6,748
|
Thanks for the info all.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#25 | |
Confirmed User
Industry Role:
Join Date: Jan 2004
Location: philly
Posts: 4,752
|
Quote:
![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#26 |
Confirmed User
Join Date: Aug 2002
Posts: 2,781
|
Stick you wp-admin directory behind a basic authentication prompt as well
__________________
I don't endorse a god damn thing...... ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#27 |
So fuckin' bored
Industry Role:
Join Date: Jun 2003
Posts: 32,381
|
Vulnerable? How password bruteforcing is related to the definition of "vulnerability"?
__________________
Obey the Cowgod |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#28 |
Confirmed User
Industry Role:
Join Date: Dec 2007
Location: Las Vegas
Posts: 3,220
|
my server was down at mojo. they want me to upgrade. too many blogs on one box
__________________
Network Of Adult Blogs With Hardlink Rentals Available |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#29 |
Friends of Venus founder
Industry Role:
Join Date: Jul 2010
Posts: 1,965
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |