This morning when I access to www.paulooi.com. I saw the picture shown above, I access to all the website I hosted, also the same page coming out. Except Mel’s blog. Then I only found out some very high skills hacker inject index.html into every hosted folder. The files “index.html” started to inject since this morning 7am.
Am still checking how was the file got injected into all the folders. Thanks Mr Hacker.
Beside that, Hey! I am on zone-h list 🙂 and I think Mr Forever is from 85.96.125.3
The Caused
Some of the customer didn’t patch the Mambo/Joomlah to latest version. Please do so please please please, patch your Mambo/Joomlah/Wordpress. If you require me to patch for you, let me know!
23 responses to “Server Gotcha by Hacker”
How do you solve the problem? Why kena hack? 😛
Remove index.html and waiting the hacker respond in this comment why kena hack 😛
eh paul, still dunno where the cause ar?
mambo
paul, mod_security can help you from this kind of attack even you didnt patch the application. at least it give you another level of protection 🙂
i read about this potential risk last week and there was not patch at that time… gosh. i better go find mod_security now… thanks.
mod_security doesn’t help much, it will show you which site got compromise and affect others. Better patch your Mambo/Joomlah Sam 😛
tell Danny this, because he asked us to tell you.
is this an advertisement for yyps ?
tell Danny this, he asked you to tell me? …
jerrywho, i not understand! what do you mean by “tell Danny this, because he asked us to tell you. ”
i think i very long long long time never talk to you. and i talk to paul everyday. please don’t simply use my name. thanks
ya.. we chat everyday… by the way what is “tell Danny this, because he asked us to tell you” means..?
“tell Danny this, because he asked us to tell you” = 火星语?
hahaha “tell Danny this, because he asked us to tell you” = 火星语?
i’m not from 火星 so i cant understand
well, tell Lai tell Qu no use one. The bottom line is no one patched…
I remember sending people a link about the file injection vulnerability a week ago (forgot when exactly been travelling a lot). Still everyone kena. tell…
duh??? what u guys talking bout??? who tell who what about what?
it didnt tell..it stop it paul.. go read!
Dude, mod_security does give you protection instead of logging capabilities only, you will have to learn how to write the filtering, go play with it.
mod_security == application firewall in that sense.
‘tell’ing …. great hack-graphics…
Life is a box of chocolate… it gets us confused sometimes. hahaha…
hahaha… danny! so, you are really god… cannot use your name in vain.
It’s all Max’s fault.
He is taking revenge because you make him work at THAT company.
when r u taking revenge on me because I made you what at THAT company too