Hacked
-
hi, my fully updated WordPress installation was hacked. I’m on Hostinger. I thought i’d give a brief description here in case anyone wants to know more.
i posted a link to a data privacy tool 2 days ago on mastodon. I noticed a minute or two later that my site was brought down: ‘cannot connect to db” error. The db had been remotely accessed and corrupted.
i had a strong password but had whitelisted remote db access for some reason. I entered my hostinger control panel and asked ai to repair the db. Apparently it could not, and it restored my last 24 hr backup. I lost a little work. No big deal.
i changed the db pass in wp-config and removed remote access. This restored my system. Obviously i could not trust the files.
I then noticed i was locked out and my wp credentials were not working. So, i logged in using the hostinger control panel. Then i changed all the credentials in wp-config and installed a 2FA plugin. This held and the site was backup.
i didn’t have an smtp plugin functioing so i was kinda locked out of the system because the 2FA couldn’t email me. No biggie.
the site was back up. I was on my touchscreen, i left it for a few hours until i was back on my system.
in the end i installed a static website plugin on localhost then i deployed this staic site to production. I now use wordpress locally for editing etc. But i push a static website to live.
the hack appeared to have originated in the US. I’ll examine the logs closely. Does anyone have any specific questions beforehand?
You must be logged in to reply to this topic.