1
ju2au
My older version of XOOPS got hacked
  • 2009/9/8 2:11

  • ju2au

  • Just popping in

  • Posts: 1

  • Since: 2005/2/14


Four years ago, I installed XOOPS as a CMS for a community sports club; I think it's version 1.7. Haven't upgraded it since then.

Yesterday, I visited that website and immediately my Firefox crashed and my anti-virus caught a trojan trying to infect my PC. After cleaning the mess up, I ftp to that website to figure out what happened.

I found that one file "mainfile.dist.php" was modified recently and one additional line was inserted after the php code. Below is that malicious line of code, don't click on it or it may infect your PC:

Hackers must have got in through a security hole somewhere and inserted that line.

That encounter certainly jolted me out of my comfort zone. Need to be more vigilant with security and keep my software up-to-date.

[EDIT by Mamba]: hackers code has been altered, so we are not another source of info for them

Login

Who's Online

431 user(s) are online (36 user(s) are browsing Support Forums)


Members: 0


Guests: 431


more...

Donat-O-Meter

Stats
Goal: $100.00
Due Date: Oct 31
Gross Amount: $0.00
Net Balance: $0.00
Left to go: $100.00
Make donations with PayPal!

Latest GitHub Commits