Security flaw in version 3
-
I just had a hacker successfully hack my wordpress. Luckily I was sitting at my desk when my phone alerted me to a new email that said someone changed my password.
Title of the email was:
“(your blog name) Password Lost/Changed”
with body message:
Password Lost and Changed for user: yourusernameThey’re using the wp-login script somehow judging by their path through my site. The IP (93.91.197.18) belongs to someone in the United Arab Emirates and they used an email that was [email protected].
I suggest everyone password protect their wp-admin folder and rename the wp-login file to something else.
Viewing 3 replies - 1 through 3 (of 3 total)
Viewing 3 replies - 1 through 3 (of 3 total)
- The topic ‘Security flaw in version 3’ is closed to new replies.