- Joined
- Nov 3, 2008
- Posts
- 1,109
- Reaction score
- 14
Hello,
just wanted to warn you all that there is a major threat to wordpress sites that have outdated versions of wordpress or plugins installed.
We've just seen over a dozen sites attacked in 2 days across servers, theme providers, and different versions of wordpress.
Check your files to see if you have a base64 code inserted into the beginning of php files.
It seems that you can be attacked even if you have the latest version of wordpress installed, old plugins can let them in.
Not pleasant, but has been useful to us, rather than trying to fix a whole pile of crappy sites we've just killed them off and left a much smaller group of good sites to work on.
You have to look for a silver lining eh?
just wanted to warn you all that there is a major threat to wordpress sites that have outdated versions of wordpress or plugins installed.
We've just seen over a dozen sites attacked in 2 days across servers, theme providers, and different versions of wordpress.
Check your files to see if you have a base64 code inserted into the beginning of php files.
It seems that you can be attacked even if you have the latest version of wordpress installed, old plugins can let them in.
Not pleasant, but has been useful to us, rather than trying to fix a whole pile of crappy sites we've just killed them off and left a much smaller group of good sites to work on.
You have to look for a silver lining eh?