This forum uses cookies
This forum makes use of cookies to store your login information if you are registered, and your last visit if you are not. Cookies are small text documents stored on your computer; the cookies set by this forum can only be used on this website and pose no security risk. Cookies on this forum also track the specific topics you have read and when you last read them. Please confirm whether you accept or reject these cookies being set.

A cookie will be stored in your browser regardless of choice to prevent you being asked this question again. You will be able to change your cookie settings at any time using the link in the footer.

Hacked
#5
RE: Hacked
(03-29-2017, 04:17 AM)Qtech Wrote: Yes, it's via WP - i suspect Gravity Forms.
Looking at logs there were request to phyMyadmin.

So many issues that it caused router to be rebooted every 10-15 minutes.

I am going to look close at the logs, but that might still not be indication of the extent of the hack.

Administrator accounts were created in WP, so I am assuming that if they can inject into mySQL further access to Sentora could have been mitigated.

Let me know if I am wrong.

Thanks to all that work hard to keep sentora going.

glad to hear that you found where the hack is coming from
for my wp apps I have installed a firewall that block all bad requests or "suspicious", it is for free "PHP_Firewall" its an old plugin but it works however you have to disable a few function within other way it will block some traffic from mobile 4g or 3g ip range
hope that will help you don't forget to do something about the ddos attack Smile it cost me 3 x E7-4850 cpu utill I figure it out
Reply
Thanks given by: Qtech


Messages In This Thread
Hacked - by Qtech - 03-27-2017, 05:58 AM
RE: Hacked - by jonnys - 03-27-2017, 04:00 PM
RE: Hacked - by Qtech - 03-29-2017, 04:17 AM
RE: Hacked - by jonnys - 03-29-2017, 10:52 AM
RE: Hacked - by Me.B - 03-29-2017, 12:00 AM
RE: Hacked - by Qtech - 03-29-2017, 11:46 AM
RE: Hacked - by aroaminggeek - 03-29-2017, 12:40 PM
RE: Hacked - by Qtech - 03-29-2017, 12:58 PM
RE: Hacked - by aroaminggeek - 03-29-2017, 01:17 PM
RE: Hacked - by TGates - 03-29-2017, 09:34 PM
RE: Hacked - by Qtech - 03-30-2017, 04:30 AM
RE: Hacked - by TGates - 03-31-2017, 06:55 AM
RE: Hacked - by Qtech - 03-31-2017, 09:16 AM
RE: Hacked - by TGates - 04-01-2017, 02:12 AM
RE: Hacked - by Qtech - 04-05-2017, 12:24 AM
RE: Hacked - by TGates - 04-06-2017, 03:22 AM
RE: Hacked - by jonnys - 04-19-2017, 01:01 PM
RE: Hacked - by TGates - 04-20-2017, 05:30 AM

Possibly Related Threads…
Thread Author Replies Views Last Post
Hacked - Uploading File Automatically joydeep9932 1 4 ,743 06-16-2018, 01:42 PM
Last Post: Ron-e

Forum Jump:


Users browsing this thread: 3 Guest(s)