Blog on Photoblogs

The photographer's resource for photoblogs

featured photographer

featured image

Gallery Promotions

gallery promotion

Hacked Wordpress site

September 5th, 2009 by brett

hacked_wp copySo the other day, I get an email from a friend of mine asking me to have a look at her blog because some of the links, which were working a few days ago are now dropping everyone on a 400 bad request page.

Before I even have a chance to open up the site, I get another e-mail saying that she thinks that spammers have hacked her WP site! To make a long story short, in the end her WP install had been compromised and there was actually a hidden admin user in the system!

Have a look at the attachment it shows 4 administrator users, but there are only three users total – something doesn’t jive.  I cleaned out the bogus admin user and patched up the install to 2.8.4, and now everything seems OK.

If you are running your photoblog on an older version of Wordpress, patch it right now!

3 Comments

Leave A Comment

3 responses so far ↓

  • 1 JuneH Sep 12, 2009 at 9:37 am

    aren’t you brilliant….as usual….:)

  • 2 Jay Sep 20, 2009 at 6:33 pm

    Did you drop the guys from WP a line about this? Might be a major glitch and they’re glad for watchful users.

  • 3 brett Sep 20, 2009 at 7:41 pm

    Hey Jay,

    It’s actually a well known exploit…My friend just didn’t keep her wordpress blog patched.

    Thanks for the comment,