Current hack on 4.3.1
-
A new admin user appeared earlier in my wordpress, luckily I was at my PC when it happened, and received an email alert.
The user was: Obuser
Email was [email protected]I then noticed that I could not delete any spam from the admin side, as one of the spam comments was injected with some code to infect the site, thereby creating an admin account.
What I did:
1) Instead of deleting the user, I changed their permission from ‘Admin’ to ‘subscriber’, so if the bot tries to join again, it will be met with an account that is already there, but with ‘subscriber’ permissions.
2) I then went to mysql and deleted all the spam from there, which once the offending message was removed, I was able to delete spam normally from the admin panel.
- The topic ‘Current hack on 4.3.1’ is closed to new replies.