donators

n@work Internet Informationssysteme GmbH
Your ad here

supported by

 TYPO3 Hamburg
 TYPO3 Anbieter

Advertising

Webserver under attack [UPDATE]

By: Thomas

06.07.07 09:09 Age: 1 yrs

The security has written a security alert about a huge wave of attacks against content management systems. Also TYPO3 is one of the affected systems beside Joomla and other ones.

The team didn't found any security vulnerability in the TYPO3 core itself but they have information about problems with third party extensions. So please make sure, that you have always the most recent versions installed!

The attacks introduce iframes on the sites which loads external content from other pages. They don't do any harm now but that can change very fast.

If you understand german, you can read the security team blog. An english version is promised for later today.

 

[UPDATE]

Ekki has now released an official entry about this: Massive Web Server Hacks (”iFrame Attacks”) - Now Extended To TYPO3

[/UPDATE]

 

Greets,

Thomas

2 Responses to “Webserver under attack [UPDATE]”

#1: cecio commented on Friday, 06-07-07 18:33

Gravatar: cecio

any clue on the english version or updates?

i found most of my typo3 websites (4.1.1 latest updates) to be infected by the iframe attack!!!!

and never intalled sqldumper anywhere :(


#2: cecio commented on Friday, 06-07-07 19:00

Gravatar: cecio

i found more informations (with a very well done 26 pages PDF explaining the attacker):
http://arstechnica.com/news.ars/post/20070618-security-researchers-uncover-massive-attack-on-italian-web-sites.html


Leave a Reply

You have to activate JavaScript to post comments!

Calendar

July 2007
M T W T F S S
« Jun   Aug »
 1
02340506708
09101112131415
16171819202122
23242526272829
3031  

Latest comments

  • Robert

    Well, one can live only so long by basically exploiting oneself, so I think it's very understood in...

  • neochung

    As you mentioned above, " it is much faster to copy and paste the needed stuff from other files." ...

  • reto

    Thanks for your great work and good luck!

  • Anoop

    ++ Michael Cannon! Thanks Thomas for all your work, don't disappear! I read your blog regularly ...

  • Simon

    At the first glance it seems to be a pity, that you've stopped working at the installer ( I really ...

Advertising