+88 01617 222 444

WordPress Sites Under Attack Globally


Wordpress LogoThere is an on going and highly distributed global attack on wordpress installations to crack open admin accounts and inject various malicious scripts.

To give you a little history, we recently heard from a major law enforcement agency about a massive attack on US financial institutions originating from our servers.

We did a detailed analysis of the attack pattern and found out that most of the attack was originating from CMSs (mostly wordpress). Further analysis revealed that the admin accounts had been compromised (in one form or the other) and malicious scripts were uploaded into the directories.

Today, this attack is happening at a global level and wordpress instances across hosting providers are being targeted. Since the attack is highly distributed in nature (most of the IP’s used are spoofed), it is making it difficult for us to block all malicious data.

To ensure that your customers’ websites are secure and safeguarded from this attack, we recommend the following steps:

  1. Update and upgrade your wordpress installation and all installed plugins
  2. Install the security plugin listed here
  3. Ensure that your admin password is secure and preferably randomly generated
  4. Other ways of Hardening a WordPress installation are shared at http://codex.wordpress.org/Hardening_WordPress

These additional steps can be taken to further secure wordpress websites:

Also, we recommend using Cloudflare, which is available free with all our cPanel accounts, to
prevent the attack from affecting the functionality of your site.




Address

DOTSILICON LIMITED
Bangladesh Office:
House: 111, 9th Floor, Apartment: 8F,
AI Nannu Tower, Pallabi, Mirpur, Dhaka-1216.

[Our Firmgate Support Centre is no longer available since Aug 2019]

Australia Office:
12 Campbell Street, Punchbowl, Australia.
ACN: 671 828 247

Contact

Email: info@dotsilicon.com
Bangladesh Sales: +88 01617 222 444
Australia Hotline: +61 045 775 7756
Abuse Report: report@dotsilicon.com

DOTSILICON.COM DMCA compliant Logo

Support

Need Help or Support?
Send email at support@dotsilicon.com
Click here to send your message
Domain Control Panel

DMCA.com Protection Status