![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
Beer Money Baron
Industry Role:
Join Date: Jan 2001
Location: brujah / gmail
Posts: 22,157
|
Wordpress stealth hack
Wordpress sites are being hacked by the hundreds, and you may not even realize that yours is too if you host on any number of shared servers (Network Solutions, Dreamhost, GoDaddy, etc...).
http://www.wpsecuritylock.com/breaki...-on-dreamhost/
__________________
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
GFY's Halfpint
Industry Role:
Join Date: Jun 2007
Location: UK
Posts: 15,223
|
Thanks man bump for more awareness
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 |
Confirmed User
Industry Role:
Join Date: Dec 2002
Location: Mallorca - Nottingham
Posts: 5,176
|
Wordpress = fucking nightmare.
__________________
See sig... |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
Confirmed User
Industry Role:
Join Date: Aug 2006
Posts: 5,594
|
Where there's a will, there's a way.
Any mass software solution is going to be hit sooner or later. Stinks, but it's inevitable. Thanks Brujah. Now I remember why I let a 100 domain experiment die on its ass. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 | |
Check SIG!
Industry Role:
Join Date: Mar 2006
Location: Europe (Skype: gojkoas)
Posts: 50,945
|
Quote:
![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 |
So Fucking Banned
Join Date: Aug 2008
Location: Just Blow Me
Posts: 10,551
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 |
Confirmed User
Industry Role:
Join Date: Aug 2009
Posts: 2,346
|
That friggin sucks.
__________________
![]() ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 |
Confirmed User
Join Date: Sep 2009
Posts: 5,795
|
This seems like a hosting issue, not wordpress.
Any php site on these affected shared hosts are vulnerable. There are people with phpld, joomla sites, even custom php sites that are getting hit. Only thing they have in common is that they used one of the above-mentioned shared hosts. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 |
Too lazy to set a custom title
Industry Role:
Join Date: Dec 2006
Posts: 16,256
|
its only on shared hosting? so blogs on dedicated servers aren't being affected?
__________________
I SELL ADULT BACKLINKS! Email: eroticweb>gmail SKYPE: gfybloggerz $$$$$ MAKE HUGE MONEY IN CAMS - CLICK HERE $$$$$ |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#11 |
Confirmed User
Join Date: Sep 2009
Posts: 5,795
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#12 |
Damn Right I Kiss Ass!
Industry Role:
Join Date: Dec 2003
Location: Cowtown, USA
Posts: 32,409
|
Wonder if it is the same shitheads that did the big attack last time.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#13 |
She is ugly, bad luck.
Industry Role:
Join Date: Jan 2010
Posts: 13,177
|
Thanks for that. Can't find any with a problem
![]()
__________________
↑ see post ↑ 13101 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#14 |
MFBA
Industry Role:
Join Date: Mar 2003
Location: PNW
Posts: 7,230
|
has anyone found one of these websites or is it just dreamhost bashing?
considering the source is a person who makes money selling WordPress security software and knowledge ![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#15 |
Confirmed User
Join Date: Sep 2009
Posts: 5,795
|
Dreamhost, network solutions, godaddy are all being hit, all kinds of php sites. Not exclusive to wordpress at all.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#16 |
Confirmed User
Industry Role:
Join Date: May 2006
Posts: 4,665
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#17 |
Confirmed User
Industry Role:
Join Date: May 2006
Posts: 4,665
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#18 |
Beer Money Baron
Industry Role:
Join Date: Jan 2001
Location: brujah / gmail
Posts: 22,157
|
On wordpress.org forums there's a list of people who claim their sites were hacked.
http://wordpress.org/support/topic/396524?replies=1 Add BlueHost to the list of shared hosts. Also, this doesn't seem to be exclusive to wordpress, but sometimes other .php files on the servers.
__________________
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#19 |
Confirmed User
Join Date: Nov 2007
Posts: 2,681
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#20 |
Confirmed User
Industry Role:
Join Date: Dec 2007
Location: Las Vegas
Posts: 3,220
|
cant you set wordpress to only let your ip login?
__________________
Network Of Adult Blogs With Hardlink Rentals Available |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#21 |
Confirmed User
Industry Role:
Join Date: Jul 2001
Location: 127.0.0.1
Posts: 9,266
|
the attacks are on Apache, not WordPress, that's why it only works on shared hosting. They attacked WP, ZenCart, Drupal and almost any PHP file at sight. Thing is WP has millions of users, hence you'll see "WP is under attack". Or do you expect to see "some custom php script is under attack"? geez, some people
![]() Quite curiously, you'll rarely see "some idiots at shared hosting have no clue about what they're doing", and in 99% of cases that is the issue.
__________________
This post is endorsed by CIA, KGB, MI6, the Mafia, Illuminati, Kim Jong Il, Worldwide Ninjas Association, Klingon Empire and lolcats. Don't mess around with it, just accept it and embrace the truth |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#22 |
Confirmed User
Industry Role:
Join Date: Jul 2001
Location: 127.0.0.1
Posts: 9,266
|
yes you can with some easy custom mod. However, the attacks were from inside the server, so how do you stop that? Last time, when the NetSol fiasco shown up (1 month ago or so) it was proven they had a rogue admin that changed permissions to allow access to account. Same with GoDaddy hosting. How do you plan to stop that?
__________________
This post is endorsed by CIA, KGB, MI6, the Mafia, Illuminati, Kim Jong Il, Worldwide Ninjas Association, Klingon Empire and lolcats. Don't mess around with it, just accept it and embrace the truth |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#23 |
Confirmed User
Industry Role:
Join Date: Apr 2006
Location: Germany
Posts: 4,323
|
I have no problems with my php sites on Dreamhost.
__________________
--- ICQ 14-76-98 <-- I don't use this at all |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#24 |
So Fucking Banned
Industry Role:
Join Date: Sep 2009
Posts: 1,732
|
This is a sever config problem.. NOT Wordpress....
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#25 |
Confirmed User
Industry Role:
Join Date: May 2006
Posts: 4,665
|
I checked all my WP stuff on shared earlier and it was OK!
|
![]() |
![]() ![]() ![]() ![]() ![]() |