![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
Confirmed User
Industry Role:
Join Date: Feb 2003
Location: Canadabis
Posts: 1,067
|
Hacker alert: few blogs with wordpress 2.0.4 got hacked
So I was just about to update a few blogs and noticed that they were hacked....
It appears he only changed the title in them to let me know, but here is a warning to anyone else using wordpress 2.0.4... this is what he put as a title "Hacked By Piratesgs[Turkish Hacker]" http://www.google.ca/search?hl=en&q=...e+Search&meta= |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
there's no $$$ in porn
Industry Role:
Join Date: Jul 2005
Location: icq: 195./568.-230 (btw: not getting offline msgs)
Posts: 33,063
|
that's why I don't use wordpress
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 |
Confirmed User
Join Date: May 2005
Location: USA
Posts: 2,150
|
How do they do it? Any why is Wordpress so vulnerable?
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
ICQ: 197-556-237
Join Date: Jun 2003
Location: BRASIL !!!
Posts: 57,559
|
Damn, I'm sorry to hear that...
__________________
I'm just a newbie. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#5 |
Confirmed User
Join Date: Feb 2006
Posts: 2,594
|
Stop using software in general if you are afraid for vulnerabilities
Go and check out the change logs and you can find a way. Wordpress is open source. Everyone can take a look at the code. You could say that Wordpress is safer thanks to this. But this is an example of when things go wrong. Always update your blogsoftware is my advice ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 |
Confirmed User
Join Date: Aug 2003
Location: Austin, TX
Posts: 4,090
|
you may want to blow out the wp folder and reinstall.. while it may seem like they only changed the title, they could have dropped in some additional php code/files that could be used as proxies, server controlling functions, etc
Fight the slash and burn!
__________________
http://www.t3report.com (where's the traffic?) v5.0 is out! | http://www.FightThePatent.com | ICQ 52741957 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 |
Too lazy to set a custom title
Industry Role:
Join Date: Aug 2002
Posts: 55,372
|
prob cause they didnt delete the install and setup files
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 |
there's no $$$ in porn
Industry Role:
Join Date: Jul 2005
Location: icq: 195./568.-230 (btw: not getting offline msgs)
Posts: 33,063
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 |
Confirmed User
Industry Role:
Join Date: Feb 2003
Location: Canadabis
Posts: 1,067
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 |
So Fucking Banned
Join Date: Oct 2003
Location: In a house.
Posts: 9,465
|
Here is the deal:
Wordpress has had many versions since 2.0.0 - almost every one of them had at least some sort of security patch or correction in it. You don't have to be the worlds brightest hacker to take a newer version, compare it to the older version, and see where the code changes have happened. The code is all out there in public and not encoded in any manner. 2.0.4 is old - something like 10 versions ago (now 2.2.0). Keep it up to date, and the issues are small. |
![]() |
![]() ![]() ![]() ![]() ![]() |