OMG OMG OMG my theme was hacked!

For fun I was checking out my statistics and discovered that my theme got hacked: the footer and header were replaced, inserting spammy URLs into the outputted page, together with some Google Adsense code.

Yay.

As a result I am now delisted from Google’s index. :P

Apparently, this has been going on for a couple of months, but I was too busy with actual work so I never read any articles about it on the security-sites I normally occasionally visit.

Oh well, shit happens, and stuff has quickly been cleaned up (thank you, backups!) … and for safety have upgraded to the latest WordPress version. Not having upgraded a while ago, I was really just waiting for this to happen (yeh, lazy sysadmins et cetera :P )…

Seeing that basically the attacker could run any PHP code of his/her choice, which could include calling system binaries to retrieve information about user accounts or passwords. As I can not be a 100% sure about that at this moment, all the passwords have been reset to protect the innocent.

I am curious how long it’ll take before I get listed on Google again (as I still see Googlebot regularly visit the site)…

- Navaho Gunleg
rss 1 comment
  1. June 11th, 2008 | 07:13 | #1

    This morning I noticed that this site is now again “findable” with Google.

    Yay!

comment on this article

Notice: All comments are moderated. Your comment will appear once approved.

© 2005-2010. All remarks and opinions on this site are the intellectual property of Navaho Gunleg, unless specified otherwise. If you find anything offensive or otherwise insulting, just close the damn window; there are far more serious issues in this world to get upset about.