Why hack my block ?
This morning, i woke up with an email from a friend who tells me that my blog is hacked !?!
My blog, yep this blog which has its latest entry in September 2009, roughly two years ago.
I was initially ashamed for losing access to my blog; but seriously; who is loser enough to hack an in-active blog ?
They also put a homepage saying me that my security is 0% and they can handle it for me. Basically, they ask for money because they know how to use a public script and someone else’s code to hack my old blog. serious? ![._[+] ThE NeXt ArmY TeAm [+]_.](http://birbit.files.wordpress.com/2011/07/the-next-army-team-_.jpg?w=300&h=182)
As I was not adding blog entries, i was not updating my wordpress version too. I thought they found my ssh pasword etc. But no i was able to login, they just replaced index files. while checking file system, i found a file called wp.php . trying to open it using ‘vi’ crashed shell so i downloaded it to my computer and opened with textmate. It was a one line php script for file browsing
After a quick google session, i found out that they used an exploit in phpthumb function to upload a file browser script to my server.
So i said ok, maybe this is a sign for me to start blogging again
. moved my blog to wordpress hosted service (at least they will keep it updated
)
and my hacker friends; you are so lame but thanks for giving me a reason to go back to blogging
my multilingual posts are broken, have to fix it now :/