Hacked by aLpTurkTegin, help patching this hole
- From: Mifa <mifa@xxxxxxxxxxxxxxx>
- Date: Tue, 20 May 2008 07:46:22 -0500
Our website was defaced by aLpTurkTegin. We are running apache, php ect. Does anyone know how this hacker is getting in and what I can do to prevent this?
Our main web directory had all but one file deleted and hackedIndex.php, a.asp(a 0 byte file) and trustscn_put_test2 were placed into the main directory. The fact that the webserver served hackedindex.php makes me think its a apache web server flaw.
Any comments, suggestions?
Thanks, -D
------------------------------------------------------------------------
This list is sponsored by: Cenzic
Top 5 Common Mistakes
in Securing Web Applications
Find out now! Get Webinar Recording and PPT Slides
www.cenzic.com/landing/securityfocus/hackinar
------------------------------------------------------------------------
- Follow-Ups:
- Re: Hacked by aLpTurkTegin, help patching this hole
- From: yummy
- Re: Hacked by aLpTurkTegin, help patching this hole
- From: Danux
- Re: Hacked by aLpTurkTegin, help patching this hole
- From: Morning Wood
- Re: Hacked by aLpTurkTegin, help patching this hole
- From: Utmost ***
- Re: Hacked by aLpTurkTegin, help patching this hole
- From: Jay D. Dyson
- Re: Hacked by aLpTurkTegin, help patching this hole
- Prev by Date: Re: dns ptr
- Next by Date: Wireless pen-test Cisco WPAv1 with PEAP and client side cert verification
- Previous by thread: CfP hack.lu 2008
- Next by thread: Re: Hacked by aLpTurkTegin, help patching this hole
- Index(es):