Hosted WP Blog Subject to Spam Hacks like non-hosted
-
I have a self hosted WP install. I have had a slew of user registrations for subscribers since the 20th (over 2,000 and counting). I had almost 400 pending posts that were created as spam. I deleted WPTouch, but do not have any of the other plugins that were compromised in the previous hit last month to non-self hosted WP blogs. After deactivating and deleting WPTouch, the registrations for the site as subscribers are still happening and new spam posts are still being created.
My install is at https://www.tinytimmy.org
Any ideas of how to proceed? I deleted the posts that were pending and continue to try to stay on top of them. I unchecked the “require user to register to leave comment” setting and am in the process of deleteing over 2,000 users. Sadly, it means I also don’t have time to review all of the users for legitimacy and am also deleting most of the legit subscribers as well.
- The topic ‘Hosted WP Blog Subject to Spam Hacks like non-hosted’ is closed to new replies.