WordPress.org

Ready to get started?Download WordPress

Forums

"Fake" users/authors (6 posts)

  1. stellarlogic
    Member
    Posted 7 years ago #

    Recently a number of people have managed to break into my blog and sign themselves up as authors. So far, I have managed to catch them and delete them before they could do any damage.

    I have changed my password, but since I did that I had 3 more such attacks.

    Does anyone know anything about this--and how to deal with it?

    thanks

  2. moshu
    Member
    Posted 7 years ago #

    Do you mean they registered as users (at whatever level is set your blog) or they registered and promoted themselves to the "Author" level/role?

    There are reports about some kind of "registering spam" going on...

  3. stellarlogic
    Member
    Posted 7 years ago #

    They somehow got into the dashboard and registered themselves as authors. The first time it happened I figured that they "guessed" my password, so I changed it, but then it has happened at least 3 more times (at least).

  4. moshu
    Member
    Posted 7 years ago #

    What did your host say?
    Although, before that, let me ask you this: how many files do you have wild open = chmod 666, for online editing?

  5. stellarlogic
    Member
    Posted 7 years ago #

    Jeebus, I have no clue. I guess I will have to figure out how to figure that out!

  6. moshu
    Member
    Posted 7 years ago #

    I mean did you ever edit your template files with the online Theme Editor?

    If the answer is yes, you used the methods described here:
    http://codex.wordpress.org/Changing_File_Permissions
    meaning if you changed any file permissions, you need to change them back.

Topic Closed

This topic has been closed to new replies.

About this Topic