• SickSquirrel

    (@sicksquirrel)


    My 404 logs show one IP doing about one hundred searches. All are either /upload.php or mention uploadify. I’m wondering if they just want to upload something, and if so, how do I ensure I’m protected. Or, is there an exploit dealing with uploadify.

    This person hit lots of directories and was determined to do something

Viewing 2 replies - 1 through 2 (of 2 total)
  • David Sword

    (@davidsword)

    There’s an always-growing wave of bots constantly attacking every website, I get hundreds of hits to /wp-login.php all day. Among other things, you can take the extra step and harden your wordpress installation:

    https://codex.www.ads-software.com/Hardening_WordPress

    Thread Starter SickSquirrel

    (@sicksquirrel)

    But is there a possible new exploit or way to exploit, and if so, how to protect. I get hundreds of wp-login attempts on each site but they’re protected against this and the usual attempts. Access is limited to me, but this uploadify is specifically geared toward something. I won’t post a list of plugins or themes they searched for in case it is a real exploit. That’s handing out front door keys to a burglar!

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘Exploit or just curious?’ is closed to new replies.