This blog was hacked :(

Indeed, I spent all yesterday morning to fix whatever damages that has been done. It’s not really bad though. Aside of defaced front page and unknown new administrator *gasp*, everything else is normal.

defaced frontpage

the "rogue" admin

It’s amazing that even it went unnoticed for some days, yet it only did minimal damages.

After taking some security measures (as suggested on WordPress FAQ[1][2]), it’s time to weed out bad codes. It seems the attacker managed to put some script on Twenty Eleven theme directory.

the culprit

How the script could end up there is beyond me. All I know is that Twenty Eleven will be in no-no list for quite some time.

[1]FAQ My site was hacked
[2]Hardening WordPress

About Willy Permana

Comments

2 Responses to “This blog was hacked :(”
  1. Hello, i have got the same probleme, can you help me ? We realy need you. Contact me at for music-and-co@hotmail.com
    Thank’s.

    Google Chrome 14.0.835.202 Windows 7
  2. Black_Claw says:

    Kalau permisi berkas udah bener, versi wotpres ga ada known bug buat fail inklusyen, paling itu folder jamping host yang sama. Apalagi beberapa hari ga diapa-apain, itu mungkin malah dibikinin botnya sama orangnya buat tekoper massal. :mrgreen:

    Google Chrome 15.0.874.106 Windows XP

Speak Your Mind

Tell us what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!