Forum Moderators: open

Message Too Old, No Replies

Patch now! Joomla attacked in remote code execution blitzkrieg

         

tangor

12:33 pm on Dec 15, 2015 (gmt 0)

WebmasterWorld Senior Member 10+ Year Member Top Contributors Of The Month



Joomla has slung a patch to crush a critical eight-year-old remote code execution vulnerability under active exploitation by attackers.

Sucuri threat man Daniel Cid says hundreds of attacks are now taking place having ramped up from a mere handful Saturday.

[theregister.co.uk...]

ergophobe

4:29 pm on Dec 15, 2015 (gmt 0)

WebmasterWorld Senior Member 10+ Year Member Top Contributors Of The Month



Sounds like something on the order of the Drupageddon nightmare where most vulnerable sites in the world were attacked within hours.

This is not something you can do "later." This is a drop everything and get patched.

"The wave of attacks is even bigger, with basically every site and honeypot we have being attacked [which] means that probably every other Joomla site out there is being targeted as well."