I've been hacked - Joomla! Forum - community, help and support


last week i've suffered severe attack on site. consequences terrible. site used fraudulent activites (phishing). cancelled inmediatly suspicious files host closed site few days. site online. i've read treads hacking , security updates i'm little confused on do.
my joomla version is  1.0.11 stable , have php settings:
php register_globals setting `on` instead of `off`
joomla! rg_emulation setting `on` instead of `off` in file globals.php

can me best can now?
i've have changed superadmin password. think can change php settings due hosting. it's better upgrade? please me guys.

thanks!

hi:

you should use latest version of joomla (1.0.13 in 1.0.x branch).  also, must turn register globals off asap. also, security provisions os use. if linux, tools rkhunter, apf , bfd recommended.

check thread too:
http://forum.joomla.org/index.php/topic,219784.0.html
later

8)





Comments

Popular posts from this blog

Help needed for choosing soldering station

Sketch upload fails with Java error (___REMOVE___/bin/avrdude)!

sd card Could not find FAT16/FAT32 partition [solved]