Home » Announcement, News

Old WordPress Versions Under Attack – UPGRADE ALERT

6 September 2009 279 views No Comment Print This Post Print This Post
Tags: , , ,

wordpress-logoKepada pengguna Wordpress yang masih belum upgrade ke WP 2.8.4, sila upgrade blog anda kepada version yang terkini. Maklumat dari wordpress developers mengatakan pengguna blog versi lama terutama sekali pengguna yang mengaktifkan fungsi “Anyone can register”, paling mudah terkena serangan ini. Untuk pengguna versi sebelum 2.7, anda perlu upgrade secara manual.

Pengguna wordpress.com, anda tak perlu risau sebab kat situ memang diorang dah upgrade ke versi terkini.

Source : Lorelle

Otto42 of OttoDestruct, a key WordPress developer and supporter, reports that there is an “attack” on older versions of WordPress right now. The number of sites hit by this is growing every hour. Protect your WordPress blog now: UPDATE NOW!!!

How Do I Know If My Site Has Already Been Attacked?
There are two clues that your WordPress site has been attacked.

There are strange additions to the pretty permalinks, such as example.com/category/post-title/%&(%7B$%7Beval(base64_decode($_SERVER%5BHTTP_REFERER%5D))%7D%7D|.+)&%/. The keywords are “eval” and “base64_decode.”

The second clue is that a “back door” was created by a “hidden” Administrator. Check your site users for “Administrator (2)” or a name you do not recognize. You will probably be unable to access that account, but Journey Etc. has a possible solution.

WordPress.com blogs are not impacted as they are up-to-date. Only versions prior to WordPress 2.8.4 are impacted.

Kalau nak vote artikel ni boleh klik kat "stars" kat bawah. Tak pun korang try baca pulak artikel lain yang pernah aku post dulu;

  1. Wordpress 2.8.5
  2. Welcome to the new site!
  3. 15 ciri-ciri blog yang menyampah
  4. Marlust syndrome
  5. Salam Aidiladha
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...

Leave your response!

Add your comment below, or trackback from your own site. You can also subscribe to these comments via RSS.

Be nice. Keep it clean. Stay on topic. No spam.

You can use these tags:
<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

This is a Gravatar-enabled weblog. To get your own globally-recognized-avatar, please register at Gravatar.

Subscribe without commenting