A bunch of PRODOS sites and systems on my Australian server – but not including the THINKER TO THINKER™ blog platform – were hacked a couple of days ago.
Files types targeted were:
- index.php
- admin/index.php
- admin/help/index.php
- admin/home.php
- index.html
iframe tags enclosing a known .cn “attack site” URL were included within these tags and injected into the files, causing sites to break.
After two days of working at it I think I’ve now repaired and restored everything and added extra security here and there.
Unfortunately I haven’t been able to identify the exact point of vulnerability which allowed the code injection into the system. That potentially leaves the sites opened to be re-hacked. Still working on it.
This repair job has delayed finalizing the move of the mailing list service to the new server, unfortunately. So, if you’ve applied for a mailing list account, it’s going to be a couple more days before I can set this up for you.
Report This Post