WordPress Hacked yesterday : All folders with apache permission deleted
-
Yesterday I had a shock of my life when I got mails from users and also from Google Webmaster that many of my pages are giving 404 error.
When I checked all folders with apache permission were deleted. The whole of WordPress, my log folder and few other files and folders which I had mistakenly given apache permission.
I suspect a plugin that I installed recently had a vulnerability which the hacker exploited.
Fortunately, the database was untouched else I would have to give up my business.
A script from a particular IP address kept executing random requests till it figured out the flaw in WordPress and got in.
I have those logs captured. If anyone is interested in helping out how exactly the hacker deleted those folders I will be able to send the link.
- The topic ‘WordPress Hacked yesterday : All folders with apache permission deleted’ is closed to new replies.