Free Republic
Browse · Search
News/Activism
Topics · Post Article

To: trapped_in_LA

We had a customer that had a server hacked with a phishing site created on one of their web servers. It appeared to be an automated attack which leveraged a vulnerability on wordpress. From there they were able to install several other files on the server. It was stopped before they could do anything else but we found other vulnerabilities which would have allowed them to gain access to most of the network.

This was on a linux server and they didn’t even need root to do this. It was all done through application software which hadn’t been properly patched.


6 posted on 06/26/2012 4:53:45 PM PDT by driftdiver (I could eat it raw, but why do that when I have a fire.)
[ Post Reply | Private Reply | To 4 | View Replies ]


To: driftdiver

“... It was all done through application software which hadn’t been properly patched.”

That’s always the killer, if you don’t keep up with the security patches you’re dead meat.


8 posted on 06/26/2012 5:34:04 PM PDT by trapped_in_LA
[ Post Reply | Private Reply | To 6 | View Replies ]

Free Republic
Browse · Search
News/Activism
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson