GoFuckYourself.com - Adult Webmaster Forum

GoFuckYourself.com - Adult Webmaster Forum (https://gfy.com/index.php)
-   Fucking Around & Business Discussion (https://gfy.com/forumdisplay.php?f=26)
-   -   Webair Please Respond! (https://gfy.com/showthread.php?t=662396)

Verbal 10-04-2006 09:14 AM

Webair Please Respond!
 
http://www.gofuckyourself.com/showthread.php?t=662380

http://www.gfy.com/fucking-around-and-business-discussion/660506-getting-hacked.html

http://www.gofuckyourself.com/showthread.php?t=661811

martinsc 10-04-2006 09:17 AM

bump bump

Ray@TastyDollars 10-04-2006 09:32 AM

This is NOT fucking good. 4 of our TGPs were hit

webair 10-04-2006 09:41 AM

ill get a tech have you tried getting with them yet PRIOR to posting here??

Violetta 10-04-2006 09:43 AM

I have the same problem! And it is fucking my biz. I am currently writing emails with them. This has to be solved!!!

escorpio 10-04-2006 09:44 AM

Quote:

Originally Posted by webair
ill get a tech have you tried getting with them yet PRIOR to posting here??

Did you read the threads PRIOR to posting this? People have been going back and forth with your techs for a week.

darksoul 10-04-2006 09:44 AM

lol
7 days since the problem was reported.

webair 10-04-2006 09:45 AM

I have techs on it now sorry about that we dont usually check the boards for support guys

Verbal 10-04-2006 09:46 AM

Quote:

Originally Posted by webair
ill get a tech have you tried getting with them yet PRIOR to posting here??

Twice over the last week.

webair 10-04-2006 09:55 AM

I have one of my top guys on give me a bit thus far it seems to be a wordpress issue i'll hit you with more ASAP

Verbal (anyone else with this issue) please contact me on aim or icq I'll keep you posted there

Devilporn 10-04-2006 09:57 AM

Do any of you guys having the problem have wordpress on that server?

gooddomains 10-04-2006 10:03 AM

Keep us updated what caused this, if there is an issue with wordpress then this nees to be announced everywhere

SubSonic 10-04-2006 10:07 AM

So here we go again:

"Hackers are launching attacks on popular PHP-based blogging, wiki and content management program that failed to patch a serious security hole discovered in July. The attacks exploit flaws in the way PHP libraries handle XML-RPC commands, and appear to be targeting installations of WordPress and Drupal.
If left unpatched, an attacker could compromise a web server through vulnerable programs including WordPress, Drupal, PostNuke, Serendipity, phpAdsNew and phpWiki, among others. These projects all issued fixes six months ago, as did the authors of the affected PHP libraries.
But as is often the case, some web servers and individual blogging applications remain unpatched. The Internet Storm Center has been receiving reports of attacks that install a remote access trojan through a weakness in the XML-RPC function in some PHP libraries, which allow applications to exchange XML data using remote procedure calls (RPC). XML-RPC has many uses in web applications, including "ping" update notifications for RSS feeds. The affected libraries, including PHPXMLRPC and Pear XML-RPC, are included in many interactive applications written in PHP.
The flaws may be of particular interest to phishing operations, which have recently been installing spoof pages through security holes in bulletin boards and content management apps. Updated copies of the affected PHP libraries are now available, and immediate upgrades are recommended."

gooddomains 10-04-2006 10:12 AM

When and where was this info posted?



Quote:

Originally Posted by SubSonic
So here we go again:

"Hackers are launching attacks on popular PHP-based blogging, wiki and content management program that failed to patch a serious security hole discovered in July. The attacks exploit flaws in the way PHP libraries handle XML-RPC commands, and appear to be targeting installations of WordPress and Drupal.
If left unpatched, an attacker could compromise a web server through vulnerable programs including WordPress, Drupal, PostNuke, Serendipity, phpAdsNew and phpWiki, among others. These projects all issued fixes six months ago, as did the authors of the affected PHP libraries.
But as is often the case, some web servers and individual blogging applications remain unpatched. The Internet Storm Center has been receiving reports of attacks that install a remote access trojan through a weakness in the XML-RPC function in some PHP libraries, which allow applications to exchange XML data using remote procedure calls (RPC). XML-RPC has many uses in web applications, including "ping" update notifications for RSS feeds. The affected libraries, including PHPXMLRPC and Pear XML-RPC, are included in many interactive applications written in PHP.
The flaws may be of particular interest to phishing operations, which have recently been installing spoof pages through security holes in bulletin boards and content management apps. Updated copies of the affected PHP libraries are now available, and immediate upgrades are recommended."


SubSonic 10-04-2006 10:15 AM

The "when" might be the problem. I noticed to late, that this problem were posted in early 2005. But it's interesting that the same problem appeared a few years ago.

Well, i'll go on with my search because i'd like to setup some wordpress blogs without running into the same problems.

I'll keep you updated

webair 10-04-2006 10:17 AM

Quote:

Originally Posted by gooddomains
Keep us updated what caused this, if there is an issue with wordpress then this nees to be announced everywhere


of course 100% I'll make sure its posted whatever we find

escorpio 10-04-2006 10:17 AM

no blog, no wordpress

tgps running comus and ttt

Violetta 10-04-2006 10:19 AM

Quote:

Originally Posted by Devilporn
Do any of you guys having the problem have wordpress on that server?

yes I do run a old version!! Will an upgrade help?

webair 10-04-2006 10:21 AM

Quote:

Originally Posted by Rockatansky
yes I do run a old version!! Will an upgrade help?

yes it would

killerkay 10-04-2006 10:21 AM

ah sounds like a big problem for webair :x

thaifan99 10-04-2006 10:25 AM

slightly off topic but still webair related.

Google cant verify my sitemaps on my webair account. i can see the site - why cant google?

SubSonic 10-04-2006 10:31 AM

I'm not sure if this helps

http://www.webhostingtalk.com/showthread.php?p=3729722

Devilporn 10-04-2006 10:37 AM

Quote:

Originally Posted by SubSonic
So here we go again:

"Hackers are launching attacks on popular PHP-based blogging, wiki and content management program that failed to patch a serious security hole discovered in July. The attacks exploit flaws in the way PHP libraries handle XML-RPC commands, and appear to be targeting installations of WordPress and Drupal.
If left unpatched, an attacker could compromise a web server through vulnerable programs including WordPress, Drupal, PostNuke, Serendipity, phpAdsNew and phpWiki, among others. These projects all issued fixes six months ago, as did the authors of the affected PHP libraries.
But as is often the case, some web servers and individual blogging applications remain unpatched. The Internet Storm Center has been receiving reports of attacks that install a remote access trojan through a weakness in the XML-RPC function in some PHP libraries, which allow applications to exchange XML data using remote procedure calls (RPC). XML-RPC has many uses in web applications, including "ping" update notifications for RSS feeds. The affected libraries, including PHPXMLRPC and Pear XML-RPC, are included in many interactive applications written in PHP.
The flaws may be of particular interest to phishing operations, which have recently been installing spoof pages through security holes in bulletin boards and content management apps. Updated copies of the affected PHP libraries are now available, and immediate upgrades are recommended."

One of my friends is a coder and he checked the latest version of wordpress....the php libraries are up to date so this shouldn't affect wordpress users with the latest build

SpeakEasy 10-04-2006 10:39 AM

Quote:

Originally Posted by webair
I have techs on it now sorry about that we dont usually check the boards for support guys


He stated a few times that yes he has tried via email and not getting any results.:2 cents:

Violetta 10-04-2006 10:53 AM

Quote:

Originally Posted by webair
yes it would

ok great! Nice to know! :winkwink:

Hopefully that will fix my problems!

webair 10-04-2006 11:04 AM

Quote:

Originally Posted by thaifan99
slightly off topic but still webair related.

Google cant verify my sitemaps on my webair account. i can see the site - why cant google?

do you have any contact info ill have a tech hit you up

Ray@TastyDollars 10-04-2006 11:18 AM

Not good

Ray <--- not to happy today, really not

fris 10-04-2006 11:23 AM

there was a wordpress issue a while ago, that needed an upgrade

Ray@TastyDollars 10-04-2006 11:26 AM

Quote:

Originally Posted by Fris
there was a wordpress issue a while ago, that needed an upgrade

There are people without WP that have the same issue...thats what they tell me anway

kmanrox 10-04-2006 11:30 AM

its' funny to see idiots that still don't know how to get a hold of techsupport even though like 20 ICQ numbers, a toll free number etc etc are listed all over Webair's site.

Webair rocks.

I, personally think they should IQ test for idiots before they allow them to be customers and subsequently try to slander Webair.

escorpio 10-04-2006 11:34 AM

Quote:

Originally Posted by Ray@TastyDollars
There are people without WP that have the same issue...thats what they tell me anway

I DO NOT run Wordpress and I'm having the same issues. :(

escorpio 10-04-2006 11:41 AM

Quote:

Originally Posted by kmanrox
its' funny to see idiots that still don't know how to get a hold of techsupport even though like 20 ICQ numbers, a toll free number etc etc are listed all over Webair's site.

Webair rocks.

I, personally think they should IQ test for idiots before they allow them to be customers and subsequently try to slander Webair.

I've gone over this 3 times with 3 different techs. :321GFY

Devilporn 10-04-2006 11:44 AM

Quote:

Originally Posted by kmanrox
its' funny to see idiots that still don't know how to get a hold of techsupport even though like 20 ICQ numbers, a toll free number etc etc are listed all over Webair's site.

Webair rocks.

I, personally think they should IQ test for idiots before they allow them to be customers and subsequently try to slander Webair.

What makes you think we are not talking to webair on icq, by e-mail etc...?

webair 10-04-2006 11:45 AM

We have found that MOST of these isues are directly related to clients using old versions of wordpress. However, a couple of the complaints were related to other scripts that were running that are vulnerable to exploit and need to be upgraded. Clients MUST CONTACT US DIRECTLY and we will work with you on a case by case basis to resolve accordingly.

I can with 100% confidence assure you this is not related to a server compromise but something related to vulnerable scripts that were installed or wordpress. Webair clients that are experiencing any issues please contact me directly and I wiill assign a tech to work with you directly immediately.

If you have any questions or concerns please feel free to contact me.

Ray@TastyDollars 10-04-2006 11:58 AM

Quote:

Originally Posted by kmanrox
its' funny to see idiots that still don't know how to get a hold of techsupport even though like 20 ICQ numbers, a toll free number etc etc are listed all over Webair's site.

Webair rocks.

I, personally think they should IQ test for idiots before they allow them to be customers and subsequently try to slander Webair.


With all do respect, you're the only idiot here right now. I know that personally we have been in contact with Webair for a while now...but that is not the point here.


All times are GMT -7. The time now is 12:30 PM.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
©2000-, AI Media Network Inc123