Automatically pulled from My Clippings on NewsGator Online

Filed under: , ,

Several sites are reporting that a major attack on Wordpress blogs started yesterday. The latest version of Wordpress, 2.8.4, is not vulnerable to this particular worm, so upgrading now could save you a lot of headaches. The worm creates a new, hidden administrator account on your blog, allowing whoever’s behind this thing to access the guts of your blog, databases and all.

How do you know if your site has been affected? Lorelle on Wordpress offers two possible ways to find out:

There are strange additions to the pretty permalinks, such as example.com/category/post-title/%&(%7B$%7Beval(base64_decode($_SERVER%5BHTTP_REFERER%5D))%7D%7D|.+)&%/. The keywords are “eval” and “base64_decode.”

The second clue is that a “back door” was created by a “hidden” Administrator. Check your site users for “Administrator (2)” or a name you do not recognize.

Wordpress has acknowledged the attacks and encouraged users to upgrade their sites. Wordpress.com users aren’t affected, as the whole system has already been updated to 2.8.4. If you’ve already been afflicted by the attack, start on the steps in Wordpress’ FAQ.

[via Mashable]

Wordpress under attack, upgrade your blog now originally appeared on Download Squad on Sun, 06 Sep 2009 17:35:00 EST. Please see our terms for use of feeds.

Read | Permalink | Email this | Comments

Add to digg
Add to del.icio.us
Add to Google
Add to StumbleUpon
Add to Facebook
Add to Reddit
Add to Technorati



Sponsored Topics:
WordpressDownload SquadBlogWeblogsOn the Web
Go to Source

Share and Enjoy:
  • Digg
  • Slashdot
  • del.icio.us
  • StumbleUpon
  • Twitter
  • Facebook
  • MySpace
  • Technorati
  • Mixx
  • ThisNext
  • Google Bookmarks
  • Live
  • Current
  • FriendFeed
  • PDF
  • email
  • Print
  • Tumblr
  • LinkedIn
  • Suggest to Techmeme via Twitter
  • Reddit
  • Ping.fm
Related posts:

Tags: , , , , , , , ,



Leave a Comment

CommentLuv Enabled

Anti-Spam Protection by WP-SpamFree