Hi all, this is the second time my site has been hacked. I need to get the site upgraded to 7.4 and install protector and another program.
My question is this, how are they managing the entry to the site? Is this a well known exploit or did someone place a file on my server? (I just want a general idea of what to look for) Is there a common method to attack a Nuke website?
They seem to only do their dirty deed to all the themes the site uses. I have a backup from this morning, but unfortunately my partner and I spent all day working on the site. I was just sitting down to back it up when my partner says we just were attacked.
Grin and bare as they say eh? I have a good idea who it may be, a former website I co-owned. Several staff members and regular members had it in for me. No matter if I did know who what could I do right..
If someone could kick me a little background on this I would very much appreciate it. Thanks.
Depends on what security patches or programs you have installed, could also be a vulnerable module like webmail, my_egallery, coppermine and others, the best way to find out is to request from your hosting provider a copy of your site's access log, check any odd entries in it.
Thanks chatserv I have time to get that log. I am removing the coopermine gallery. We can show pictures through links no point. I allow email accounts for members. Could it be that those who have one may have done this?
I have no protection or modules, I am waiting until after my upgrade. Where do I send you the check? Donations?
Great I will dust off the cobwebs and send out a nice donation to you when I my next check comes in. You deserve it if anyone does.
Can I get away with installing the security patches before my upgrade? I sure hope my upgrade goes well today. Either way I will most likely install the protection. Someone is attacking me personally not random at all. I have the access log but not sure yet how to figure out who did this. I have found one IP number that looks like the one.
Thanks again Chatserv.. You made me a loyal fan of this website and PHP Nuke.
The correct way would be to apply the patches after you upgrade, when you download the new version of Nuke you want to upgrade to simply uncompress it on your pc, do the same thing with the patch and then simply load the patch files over Nuke's files then you can upload this patched Nuke to the server.
The correct way would be to apply the patches after you upgrade, when you download the new version of Nuke you want to upgrade to simply uncompress it on your pc, do the same thing with the patch and then simply load the patch files over Nuke's files then you can upload this patched Nuke to the server.
If I have this right then, the patched version of nuke that I have does not need this process done? If that is correct, then I simply run the upgrade script file to setup the DB by pointing the browser at it?
I was told that version 7.4 was out, can I go from 7.2 to 7.4 okay? The last thing I do after running the upgrade Script is edit the config.php correct? I will read all the text files again, just verifying or maybe overly paranoid attempting something I have never done before. Thanks again.
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum