Sunday, January 13, 2019

New comment by joecool1029 in "GoDaddy injecting JavaScript into websites and how to stop it"

It's honestly a smart thing for shared hosting providers to offer. Some years ago my co took over a bunch of legacy sites from another developer that were not tightly maintained Wordpress. We hosted the sites at the time at Rackspace Cloud Sites. The main reason we chose their antiquated hosting tier was that Rackspace support would handle infection cleanup when it happened.

It would take us time to assess everything and do up contracts for bring-up with these sites. Everything from old revslider and timthumb to more exotic infections. Once you got a file injection or reverse shell on a host, it would spread fast to everything on the server. Only way reliably back was catching when it came in and rolling it back to before then upgrading the vulnerable components.



from Hacker News - New Comments: "WordPress" http://bit.ly/2SQzN7p
via IFTTT

No comments:

Post a Comment

Curran takes hat-trick as England win first T20

Sam Curran takes England's second ever hat-trick in T20 internationals as they beat Sri Lanka by 11 runs (DLS) in Pallekele. from BBC ...