As far as I can tell, the break-in was confined to a single author account. Thanks to David Fitzgerald for alerting Neil and me.
We seem to be back to normal. Let us know if you see anything odd!
widowfield [at] gmail [dot] com
The following two tabs change content below.
Tim Widowfield
Tim is a retired vagabond who lives with his wife and multiple cats in a 20-year-old motor home. To read more about Tim, see our About page.
Latest posts by Tim Widowfield (see all)
- How Did We Get Here? Part 1 - 2024-11-21 01:22:29 GMT+0000
- What Did Marx Say Was the Cause of the American Civil War? (Part 1) - 2024-05-12 19:09:26 GMT+0000
- How Did Scholars View the Gospels During the “First Quest”? (Part 1) - 2024-01-04 00:17:10 GMT+0000
If you enjoyed this post, please consider donating to Vridar. Thanks!
That said, if anyone DOES need to know about Eastern European mail-order Brides, I did take screen shot pictures…
-DF
Perhaps a password guessing attack (there are a LOT of these going on, I get thousands of guesses per day across the sites I administer). You must not have any weak or potentially guessable passwords, this is how all the clients and friends I know who were hacked got in trouble. Install (e.g.) Wordfence and scan for malware in case anything nasty has been installed. Check for new users with admin access. Archive your recent backups.
I was given a site to fix which redirected users to an ad platform only in certain circumstances, like when using an iphone, but then only sometimes, making it very hard to pin down.
Hopefully the user compromised was not an admin, and then you are probably fine. If an admin user, then assume the worst.
I’m seriously looking at two-factor authentication, despite the hassle. WordPress sites are under constant attack by botnets.