My Site Got Hacked by Stupid Hacker

Status
Not open for further replies.

cyb3r

Banned
Banned
225
2010
9
0
Hey guys

Sorry if this is in the wrong forum but my site got hacked today, this has never happened to me so how can he hack a Wordpress blog???
 
54 comments
Maybe a bad plugin, and sometimes it's not the site script, sometimes it's the server that has sucky security.
 
It could be the host you are hosted on who dosent know how to
configure their server and their security might have vulnerabilities.
 
hehe Stupid hacker that a weird name for someone to call himself with.
@topic: I'm not sure but there is some potential SQL injection/XSS vulns in WP latest version.As far as I know it still being tested so if he discovered them mehh it means he's not stupid.
Anyway it can be done with other things even the custom skin that you install can be exploited so worry about what you install in you WP blog next time.
 
I'd say this issue is also related to outdated software in scorpio server. They are running php 5.2.13 (latest 5.2.16) and probably some outdated 2.2.x apache (latest 2.2.17).

Kernel is old too. 2.6.18-164.15.1.el5.028stab068.9 #1 SMP Tue Mar 30 18:07:38 MSD 2010 i686
Latest stable from kernel.org: 2.6.36.2 - 2010-12-09

-.-
 
I'd say this issue is also related to outdated software in scorpio server. They are running php 5.2.13 (latest 5.2.16) and probably some outdated 2.2.x apache (latest 2.2.17).

Kernel is old too. 2.6.18-164.15.1.el5.028stab068.9 #1 SMP Tue Mar 30 18:07:38 MSD 2010 i686
Latest stable from kernel.org: 2.6.36.2 - 2010-12-09

-.-

Ouch, that's old OpenVZ kernel. There is already a localroot exploit out for that version. No wonder how you got rooted, it was only a matter of time.
 
Status
Not open for further replies.
Back
Top