So that was called a malware iframe insertion attack
Posted by Johnna | July 31, 2009 | 4 Comments
If you visiting our site during certain hours this week, you may have been warned by your browser that our site was not safe to visit.
When you get a warning like that, I’d advise you to believe it.
Don’t override a malware warning and visit the site anyway. Even those of you on a Mac.
Yup, we were hacked. The third party was able to do an iframe insertion, was basically opening an one-pixel size window on our site (therefore invisible to you) which ran some code from their site in the tiny window. No, I don’t know what the code did.
So on Tuesday and Wednesday, I’d delete their code frame, and they’d break in again later and put it back, but only once or twice a day. I tightened up my file permissions, changed FTP passwords, and finally managed to close their access.
We’re all clean now. Google verified our site last night and took us off their suspicious sites list.
So, that was our adventure. Hope it wasn’t yours.
Related posts:
Comments
4 Responses to “So that was called a malware iframe insertion attack”









August 1st, 2009 @ 1:31 pm
As usual, you’re completely on top of things, Johnna.
August 1st, 2009 @ 11:24 pm
Johnna, what would we do without you, you magnificent thing!
August 2nd, 2009 @ 7:13 am
Yes, I DID have that experience. Now I’m 3 days behind on this blog. I’m SO glad you fixed it.
August 4th, 2009 @ 11:24 am
Anyone want to throw in a word for their hosting provider? Mine doesn’t have SFTP and I no longer think I can do without it.
I’m webmaster AT segullah DOT org.