Help - Search - Members - Calendar
Full Version: Oh my gosh my website has been hacked!!!!
OpenSourcePhoto > World Wide Web > Website Stuff
Scarlett Lillian
Whoa, has anyone ever had this happen? I noticed my email stopped working, so I went to see if my website was working..

At first it was just down and blank..

Now it has some scary medieval guy slamming my site with horror music saying that my website has been hacked!!!!

What the heck is going on here?? Matt Antonino, any advice??

I did contact my webhost and they said they are working on the emergency. Crazyness!!!
Jillian Kay
oh that's terrible!!!
Scarlett Lillian
QUOTE(Jillian Kay @ February 15 2007, 06:36 PM) [snapback]79088[/snapback]
oh that's terrible!!!


Yeah... I don't get mean people.
BillCawley
That's super bizarre... I would highly advise any windows users to NOT check it out... It was loading from all sorts of weird URLs when I clicked on it...

Good luck getting it straightened out.
andrew@lacour
QUOTE(Jillian Kay @ February 15 2007, 06:36 PM) [snapback]79088[/snapback]
oh that's terrible!!!


This happened to Mark once. If your webhosting company is worth its salt, they'll have a backup. smile.gif

The music might be worth keeping! smile.gif
Scarlett Lillian
QUOTE(andrew@lacour @ February 15 2007, 06:39 PM) [snapback]79095[/snapback]
This happened to Mark once. If your webhosting company is worth its salt, they'll have a backup. smile.gif


Yeah, luckily all my files are still there in my FTP. And my pictures reloaded back on my blog. Just now waiting for the actual site to be back up.

This is nuts.

Thanks guys for sympathizing with me!
JenLeePhotography
Hey girl, that totally sucks! I hope it gets corrected soon!!

nicole green
yeah i just noticed that a little while ago when i wanted to check out your site, for the 50th time (it's inspiration!). laughing.gif i hope everything is fixed asap!
ewphoto
That's sucks.. Hope the hosting company will fix this soon..
Scarlett Lillian
QUOTE(JenLeePhotography @ February 15 2007, 06:43 PM) [snapback]79100[/snapback]
Hey girl, that totally sucks! I hope it gets corrected soon!!



Thanks!!!

QUOTE(nicole g. @ February 15 2007, 06:43 PM) [snapback]79101[/snapback]
yeah i just noticed that a little while ago when i wanted to check out your site, for the 50th time (it's inspiration!). laughing.gif i hope everything is fixed asap!



Awwww... thanks girl. You are so cool. I just looked at yours again too. Love it. Those babie's eyes make you melt.

QUOTE(ewphoto @ February 15 2007, 06:46 PM) [snapback]79102[/snapback]
That's sucks.. Hope the hosting company will fix this soon..


Thanks!
the real Carrie V
Oh, that burns me. Why are some people so mean spirited??
Scarlett Lillian
QUOTE(Mrs. V @ February 15 2007, 06:51 PM) [snapback]79107[/snapback]
Oh, that burns me. Why are some people so mean spirited??


My thoughts exactly!
Chris Humphreys

So sorry to hear that Scarlett! bigbighug.gif

I hope they get it back up and running soon for you! In the meantime, enjoy OSP! biggrin.gif
Scarlett Lillian
QUOTE(Chris Humphreys @ February 15 2007, 07:09 PM) [snapback]79124[/snapback]
So sorry to hear that Scarlett! bigbighug.gif

I hope they get it back up and running soon for you! In the meantime, enjoy OSP! biggrin.gif


Ha ha.. yeah I'm trying to use it as an excuse to get other non-email, non-website work stuff done. So far OSP has won my attention. :-)
4HisGlory Photography
QUOTE(Scarlett @ February 15 2007, 06:56 PM) [snapback]79113[/snapback]
My thoughts exactly!

Scarlett,
Look at it this way... you are famous enough to get the attention of the hackers! You go GIRL! That said I would inquire of your hosting company why your server wasn't patched and/or was vulnerable? Do you use any stats/counter? Would be interesting who was on your site (from the logs) when you got hacked. The hosting company should be able to do forensics if they know what they are doing. Let me know if I can help.

-Mike
Scarlett Lillian
QUOTE(4HisGlory Photography @ February 15 2007, 07:17 PM) [snapback]79132[/snapback]
Scarlett,
Look at it this way... you are famous enough to get the attention of the hackers! You go GIRL! That said I would inquire of your hosting company why your server wasn't patched and/or was vulnerable? Do you use any stats/counter? Would be interesting who was on your site (from the logs) when you got hacked. The hosting company should be able to do forensics if they know what they are doing. Let me know if I can help.

-Mike


Ha. I don't know about the famous part.. butttt thanks for the info to keep in mind about my webhost. Yeah, I'll be curious to hear the results of it all from them. I've definitely been studying my stat counter too.
colinmichael
QUOTE(Scarlett @ February 15 2007, 04:47 PM) [snapback]79160[/snapback]
Ha. I don't know about the famous part.. butttt thanks for the info to keep in mind about my webhost. Yeah, I'll be curious to hear the results of it all from them. I've definitely been studying my stat counter too.

You know you've made it when...
1. You get requests for a 3 hour package for $5k from some guy in the UK
2. The yellow pages person won't stop calling/emailing
3. Your website gets hacked

See, don't you feel better now! thumbsup.gif

Sorry this happened, that's a bummer. Hope it works out quickly.
Bumatay
QUOTE(Scarlett @ February 15 2007, 03:34 PM) [snapback]79084[/snapback]
Now it has some scary medieval guy slamming my site with horror music saying that my website has been hacked!!!!

Ouch! Sorry to see this Scarlett. The blame goes to your webhost - they should be responsible for keeping it secured. Found this interesting article about the hacker

** Warning **
although clicking on Scarlett's link will show you the hacked page and the song is somewhat intriguing, steer away from it! If your computer is not protected, after the song is done it throws some sort of script on your browser! mad.gif
Kenneth Soong
Welcome to the club. smile.gif

We've had this sort of thing happen to us once before and although there wasn't any serious damage done it was quite a pain at the time.

Since then we've been monitoring our site regularly, keeping track of who's visiting and have even caught a few malicious visitors a few of which had ripped our old site completely.

The best thing you can do is to have a good webhost that keeps daily backups that you can fall back on.

Hope it all gets worked out for you.

Cheers,

Kenneth + Elaine
Scarlett Lillian
QUOTE(Bumatay @ February 15 2007, 08:05 PM) [snapback]79178[/snapback]
Ouch! Sorry to see this Scarlett. The blame goes to your webhost - they should be responsible for keeping it secured. Found this interesting article about the hacker

** Warning **
although clicking on Scarlett's link will show you the hacked page and the song is somewhat intriguing, steer away from it! If your computer is not protected, after the song is done it throws some sort of script on your browser! mad.gif



Oh my gosh, I'm so sorry then that I have been drawing you to my site!!! Ahhhhh.

QUOTE(Kenneth Soong @ February 15 2007, 08:41 PM) [snapback]79198[/snapback]
Welcome to the club. smile.gif

We've had this sort of thing happen to us once before and although there wasn't any serious damage done it was quite a pain at the time.

Since then we've been monitoring our site regularly, keeping track of who's visiting and have even caught a few malicious visitors a few of which had ripped our old site completely.

The best thing you can do is to have a good webhost that keeps daily backups that you can fall back on.

Hope it all gets worked out for you.

Cheers,

Kenneth + Elaine



Well I just heard back from them and they said it is back up working now and they're security will be watching it closely the next few days to make sure everything is still cool.

Now if I can get my email working again....

Oh yeah, thanks for making think to ask if they back up everything. I'm looking into that now.
CL Park
Thats very scary, I bet you freaked!!! I dont get it. People are so ignorant!!
I wish the best for an unscathed return. You might want to scan the crap out of your computer, make sure nothing transferred. smashpc.gif
jasongroupp
Scarlett - that sucks! But what do you need email for? Think about all that free time you will have....

Welcome to the big time.
Scarlett Lillian
QUOTE(jasongroupp @ February 15 2007, 09:39 PM) [snapback]79233[/snapback]
Scarlett - that sucks! But what do you need email for? Think about all that free time you will have....

Welcome to the big time.


HA. smashpc.gif

QUOTE(Kenneth Soong @ February 15 2007, 08:41 PM) [snapback]79198[/snapback]
The best thing you can do is to have a good webhost that keeps daily backups that you can fall back on.


Ok another update, they said they way they were able to get it back up and running from their daily back ups they do do and the back up they did yesterday....

whewwww
kaitlin
This totally happened to be a while ago. I can't remember what it was, but something I was running had a security hole or something like that. They only replaced my index, but it was annoying. My webhost had backups and everything, but yeah.....it's funny - I took a screenshot at the time, and just deleted it this morning....
Scarlett Lillian
QUOTE(kaitlin @ February 15 2007, 10:05 PM) [snapback]79252[/snapback]
This totally happened to be a while ago. I can't remember what it was, but something I was running had a security hole or something like that. They only replaced my index, but it was annoying. My webhost had backups and everything, but yeah.....it's funny - I took a screenshot at the time, and just deleted it this morning....


Glad to hear I'm not the only one. Some people have too much time on their hands. I swear.
MikeWarren
Mean people suck. Internet pirates, theives, and nintendo hackers who have ruined industry after industry.
AKS
How scary is that. Glad your webhost had backup and could get you back online in short amount of time.
I would not be a happy camper if this happened to me too!
J*I*L*L HIGGINS
Scarlett - that is crazy. How weird!
rowena
I'm happy for you that it's taken care of and quite quickly too!
-Tammy-
So sorry this happened! I can imagine how freaked you were when you found out. I know I would have been! Glad you have everything back up and running again. Did your web host say why this happened? Was it something on your end or theirs? I'm just curious if there are things we can do to help prevent this stuff?
Chris L
QUOTE(-Tammy- @ February 16 2007, 12:30 PM) [snapback]79655[/snapback]
Did your web host say why this happened? Was it something on your end or theirs? I'm just curious if there are things we can do to help prevent this stuff?


Things that *you* can do?

If you are using blogging software (wordpress, ect.) make sure that it is up to date to the latest version. Most of these software providers are good about giving security updates -- the upside is, if you don't update, that leaves you vulnerable to attacks!

If you are using a "major" tool (like Wordpress) I would venture to say they are probably more security minded than some other new ones (blanket generalization, not always true) so it might be worth subscribing to their email list to get updates when security vulnerabilities are released.

There's a lot of other things that are possible as well, but if you are running it hosted by someone else, they have to take care of a lot of it for you so its important to be hosted by someone who is on top of their game.

I could go into more details like if you have your own custom site, make sure no XSS, or SQL Injection vulnerabilities exist on any forms / comment sections, but I don't want to start that ramble!

My 3 cents.
Scarlett Lillian
QUOTE(-Tammy- @ February 16 2007, 12:30 PM) [snapback]79655[/snapback]
So sorry this happened! I can imagine how freaked you were when you found out. I know I would have been! Glad you have everything back up and running again. Did your web host say why this happened? Was it something on your end or theirs? I'm just curious if there are things we can do to help prevent this stuff?



No they didn't. I tried to ask but they didn't go into it. I did find out later that a friend of mine who I designed her website for her and she was on the same webhost, she got hacked too.. so apparently it was something to do with my webhost, not so much a personal attack on me like I originally thought.



QUOTE(Chris L @ February 16 2007, 12:40 PM) [snapback]79661[/snapback]
Things that *you* can do?

If you are using blogging software (wordpress, ect.) make sure that it is up to date to the latest version. Most of these software providers are good about giving security updates -- the upside is, if you don't update, that leaves you vulnerable to attacks!

If you are using a "major" tool (like Wordpress) I would venture to say they are probably more security minded than some other new ones (blanket generalization, not always true) so it might be worth subscribing to their email list to get updates when security vulnerabilities are released.

There's a lot of other things that are possible as well, but if you are running it hosted by someone else, they have to take care of a lot of it for you so its important to be hosted by someone who is on top of their game.

I could go into more details like if you have your own custom site, make sure no XSS, or SQL Injection vulnerabilities exist on any forms / comment sections, but I don't want to start that ramble!

My 3 cents.



Cool thanks for your insight knowledge! I know this will help others too!
-Tammy-
Thanks, Chris, for taking the time to post on this and let us know things we can do.

Wow, Scarlett, that is scary that it was something to do on their end. I'm wondering if that is why they are not wanting to talk about it. It would be nice to know if they got it fixed, though, so it doesn't happen again.

I am always amazed at the people who would do stuff like this. Why you would even THINK about doing something like that to someone is beyond me.
Scarlett Lillian
QUOTE(-Tammy- @ February 16 2007, 01:02 PM) [snapback]79681[/snapback]
I am always amazed at the people who would do stuff like this. Why you would even THINK about doing something like that to someone is beyond me.


My thoughts exactly. thumbsup.gif
davidjay
sad.gif ...sorry you're dealing with that. Hackers suck.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.