Forums

Latest WP version hacked - please help! (2 posts)

  1. business2press
    Member
    Posted 1 year ago #

    Hi Everyone,

    There appears to be a serious problem on our hands, and I am hoping to get some help as I am not a technical person.

    It looks like there is a WordPress vulnerability in the latest version which has resulted in our blog being hacked.

    Perhaps it is an SQL injection, but what is happening, our article content is being changes behind the scenes with spam words such as "Buy Prozak Without Prescription".

    Our articles are even being indexed by Google with the spam titles/descriptions, but what is funny is that if you go to the actual page, these words do not appear anywhere in the source code of the page, but are clearly visible with Google cache.

    http://www.google.ca/news/
    search?aq=f&pz=1&cf=all&ned=ca&hl=en&q=site%3Abusiness2press.com

    The problem is also present with our articles being indexed on Google News, which is a serious problem because this could result in a penalty from Google, and of course, it is expensive to produce content.

    http://webcache.googleusercontent.com/search?q=cache:4OH0BICUpBsJ:business2press.com/2008/11/09/more-jobs-threatened-dhl-could-cut-20000-jobs/+buy+prozak+without+prescription+site:business2press.com/&cd=1&hl=en&ct=clnk&gl=us&client=firefox-a

    Any help would be greatly appreciated. We are concerned because it is clear there is an issue (maybe a security breach) that could significantly adversely affect our Google News and organic search rankings.

    I am hoping to identify the problem and to completely eradicate it.

    Any help would be greatly appreciated as it is very costly to publish news, and having spammers undermine our efforts is very wrong.

    Thanks everyone in advance for help, really, it is greatly appreciated.

    Hopefully a fix is possible and that any issue identified by the WordPress team could be patched ASAP.

    http://business2press.com

    Thanks!

  2. Rev. Voodoo
    Volunteer Moderator
    Posted 1 year ago #

    chances are, it's not a WordPress hole. It's a server issue. Most likely something your host has configured badly. Here is the standard reading for a hacked site. There is no easy, one size fits all sure unfortunately

    http://codex.wordpress.org/FAQ_My_site_was_hacked
    http://ocaoimh.ie/did-your-wordpress-site-get-hacked/
    http://smackdown.blogsblogsblogs.com/2008/06/24/how-to-completely-clean-your-hacked-wordpress-installation/
    http://www.snipe.net/2010/01/when-wordpress-gets-hacked/

    My Experiences with being hacked:
    http://www.rvoodoo.com/2010/02/the-dreaded-base64-wordpress-hack-and-other-hacks-too/

    And when you're done:
    http://codex.wordpress.org/Hardening_WordPress

Topic Closed

This topic has been closed to new replies.

About this Topic