Tech At Hand Dot Net

Old WordPress Versions Under Attack

Have you upgraded to WordPress Ver 2.8.4 , well if not better read Old WordPress Versions Under Attack blog by Lorelle telling that old WordPress Version is now under attack. I have not encountered any problem with WordPress 2.8.4 , But I believed those people who made their blog customized to lower version of WordPress might have problem. But better do it now or be sorry, You have been warned.

There are two clues that your WordPress site has been attacked.

There are strange additions to the pretty permalinks, such as example.com/category/post-title/%&(%7B$%7Beval(base64_decode($_SERVER%5BHTTP_REFERER%5D))%7D%7D|.+)&%/. The keywords are “eval” and “base64_decode.”

The second clue is that a “back door” was created by a “hidden” Administrator. Check your site users for “Administrator (2)” or a name you do not recognize. You will probably be unable to access that account, but Journey Etc. has a possible solution.

So what are you waiting for act now and upgrade. But be sure to back your files.

Exit mobile version