Announcement

Collapse
No announcement yet.

Lead article redirecting to Porn ads.

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Lead article redirecting to Porn ads.

    I assume this is not intentional

    Code:
    curl -I http://www.raptorsrepublic.com/2015/07/13/norman-powell-your-new-favorite-raptor/
    HTTP/1.1 302 Moved Temporarily
    Server: nginx/1.4.1
    Date: Mon, 13 Jul 2015 19:32:20 GMT
    Content-Type: text/html
    Connection: keep-alive
    X-Powered-By: PHP/5.3.6-13ubuntu3.10
    Location: http://xcoderx.com/mobil.php
    Cache-Control: max-age=0, no-cache
    X-Page-Speed: 1.6.29.7-3453

  • #2
    Zarar needs to get on this, unless you've taken a brazen new tact in your ad strategy, your site has been compromised, probably a SQL injection attact of some sort.

    Edit:

    - change all passwords with admin priv
    - change your db password
    - update wp and all plugins to latest versions

    But I guess Zarar knows all this.
    Last edited by Quirk; Mon Jul 13, 2015, 03:59 PM.

    Comment


    • #3
      Some of the other articles aren't leading to porn ads. Just want consistency

      Comment


      • #4
        Quirk wrote: View Post
        Zarar needs to get on this, unless you've taken a brazen new tact in your ad strategy, your site has been compromised, probably a SQL injection attact of some sort.

        Edit:

        - change all passwords with admin priv
        - change your db password
        - update wp and all plugins to latest versions

        But I guess Zarar knows all this.
        Thanks man. This is killing me but almost through this. I'm more concerned about what the point of attack was. Will also do a release upgrade to latest version of Ubuntu, but do-release-upgrade scares the shit out of me.

        Comment


        • #5
          Arsenalist wrote: View Post
          Thanks man. This is killing me but almost through this. I'm more concerned about what the point of attack was. Will also do a release upgrade to latest version of Ubuntu, but do-release-upgrade scares the shit out of me.
          so no more porn 😨

          Comment


          • #6
            what pages were affected by this "hack" ?

            Comment


            • #7
              rocwell wrote: View Post
              what pages were affected by this "hack" ?
              The ones with analysis and profiles. Everything should just be porn

              Comment


              • #8
                Arsenalist wrote: View Post
                Thanks man. This is killing me but almost through this. I'm more concerned about what the point of attack was. Will also do a release upgrade to latest version of Ubuntu, but do-release-upgrade scares the shit out of me.
                You should have done that upgrade after critical "ghost" vulnerability was disclosed.. 6 months ago

                Comment


                • #9
                  I would strongly doubt it's an OS issue, the most likely point of attach is unescaped input in a plugin or custom code. If you've updated wp and all the plugins everything it should be ok. Make sure you have a back up. If you have any custom code or use any plugins that might be poorly maintained, check out this;

                  http://codex.wordpress.org/Data_Validation

                  Thanks for your great work on this site!

                  edit: though of course, keeping your OS up to date is always a good idea in anycase.
                  Last edited by Quirk; Mon Jul 13, 2015, 07:39 PM.

                  Comment


                  • #10
                    raptors999 wrote: View Post
                    The ones with analysis and profiles. Everything should just be porn
                    I was really surprised there where no redirects to used Miata ads.

                    Comment


                    • #11
                      Quirk wrote: View Post
                      I was really surprised there where no redirects to used Miata ads.
                      Sold. Now trying to get rid of 2 slightly soiled king-sized mattresses , no box spring

                      Comment


                      • #12
                        Glad to find out it was the site. Thought my android phone had been infected.

                        Comment

                        Working...
                        X