Buy Sell Discuss UK Domain Names at AcornDomains.co.uk Price Freeze on Business Hosting frm £4.95/month

Today's Drop Dates are: 19-02-2012 or 26-02-2012   All times are GMT. The time now is 09:24:20 AM.
Domain Name Sales Domain Software Calculate UK Domain Drop Dates Domain Registration NameDrive Domain Parking Subscribe to our Domains For Sale newsletter
Go Back   Domain Forum Acorn Domains Buy Sell Auction UK Domains > Website Design and Promotion > Content Management Systems > Joomla
Connect with Facebook

Joomla Joomla CMS

Closed Thread
 
LinkBack Thread Tools Display Modes
Old 06-12-2008, 09:27:26 AM     #1 (permalink)

 
droid's Avatar
 
Join Date: May 2007
Location: Stoke on Trent
Posts: 221
droid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond reputedroid has a reputation beyond repute

Hacked Joomla sites

Hi all,

Just wondered if anyone else has recently had their Joomla sites hacked.

I had all mine hacked thro firstly the config and then the index.php files.

Though quite easy to fix (and change permissions to 644) was this a widespread thing or just me.

Gary
droid is offline  
Old 06-12-2008, 09:55:07 AM     #2 (permalink)
Administrator
 
admin's Avatar
 
Join Date: Jun 2004
Posts: 8,601
admin has disabled reputation

Mine are OK (famous last words).

Hacking is an occupational hazard.

Just make sure the passwords you are using for your DB connections are not the same for every site or one that you use for something else such as your PayPal account.

I now use a password generator for my DB passwords since one of mine was hacked and they posted the username and password on a forum.

Admin
admin is offline  
Old 30-05-2009, 06:35:03 PM     #3 (permalink)
mat

 
mat's Avatar
 
Join Date: Apr 2007
Location: Hampshire
Posts: 3,328
mat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond repute

One of mine is getting done daily at the moment! Any tips on securing it? Its just the index page being replaced every time, such a pain!!
__________________
Mathew.co.uk - Follow me on Twitter here
mat is offline  
Old 30-05-2009, 07:39:23 PM     #4 (permalink)

 
Join Date: Apr 2009
Location: Manchester
Posts: 196
rush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond reputerush has a reputation beyond repute

Have you tried a Plugin like this:

jSecure Authentication - Joomla Plugin

It adds a layer of security at the back end/admin login page, i.e. you have to add a security key to the */administrator address in order to access?

Or are they getting in another way/front end?
rush is offline  
Old 30-05-2009, 07:47:50 PM     #5 (permalink)
mat

 
mat's Avatar
 
Join Date: Apr 2007
Location: Hampshire
Posts: 3,328
mat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond repute

The first time I found a trojan called "lol.php" in the modules folder. Does that give a clue to how they are getting in? Since then its been done again but I found no trojan file....
__________________
Mathew.co.uk - Follow me on Twitter here
mat is offline  
Old 31-05-2009, 11:00:37 AM     #6 (permalink)
Member
 
Join Date: Jun 2008
Location: Yorkshire
Posts: 66
Juniper is on a distinguished road

I had a Mambo site that was always getting hit, eventually I uninstalled one of the modules and updated all the other ones I had in place.

They were exploiting a weakness in the add-on module, its important to keep all your add-ons up to date as many I had installed had security fixes added since they were first integrated.
__________________
Koh Samui Travel ¦ Gold
Juniper is offline  
Old 31-05-2009, 11:04:21 AM     #7 (permalink)
Administrator
 
admin's Avatar
 
Join Date: Jun 2004
Posts: 8,601
admin has disabled reputation

Try and analyse your hosting log files, comparing the activity around the date/timestamp of the replaced files. I have used this many times to find how they are getting access.

I will help you with the analysis if anyone needs it

Admin
admin is offline  
Old 31-05-2009, 04:41:16 PM     #8 (permalink)
mat

 
mat's Avatar
 
Join Date: Apr 2007
Location: Hampshire
Posts: 3,328
mat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond reputemat has a reputation beyond repute

If anyone uses the Agora Forum component I found it to be that, they have released the fix for it as of 27th May...
__________________
Mathew.co.uk - Follow me on Twitter here
mat is offline  
Closed Thread



Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Similar Threads
Thread Thread Starter Domain Name Community Replies Last Post
moving a Joomla site admin Joomla 2 11-09-2009 11:38:57 AM
Sites which collect articles automatically somehow?? woopwoop Website Design 0 30-10-2008 05:10:15 AM
Domain Parking Versus Mini Sites Billy General Domain Parking 6 26-07-2008 03:24:07 PM
Adsense Allowed sites golddiggerguy Internet Marketing 4 15-11-2007 11:09:13 PM


All times are GMT. The time now is 09:24:20 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.6.0 RC 2
All content on Acorn Domains is member generated and is not moderated before posting. All content is viewed and used by you at your own risk and AD does not warrant the accuracy or reliability of any of the information. The views expressed are those of the individual contributors and not necessarily those of AD. Please contact us to report any issues or send a PM to "Admin".