Watch Out for Recent WordPress Gumblar PHP Exploit

May 12, 2009 · 80 comments

Kristi wrote a guest blog post at TechJaws about the attack last weekend on her well known Kikolani Blog by the PHP Script Injection Exploit in WordPress 2.7.1.  Kristi explains how she restored her blog and dealt with the issue. The UnMask Parasites blog provides additional details on what is known about this particular malware which has been dubbed the Gumblar .cn Exploit.

Gumblar exploit does NOT affect only WordPress. It can target any site using .php including Drupal, PhotoPost and even the Bangalore Telecom Web site.

The resources below will assist you in assessing your risk, increasing security for your WordPress blog and removing this exploit if you are already affected.

WordPress Security Resources:

Security Monitoring Tools for WordPress:

WordPress Security Audit Services:

WordPress Security Plugins:

Read the Best of GrowMap or Stay In The Loop!

Subscribe to the GrowMap feed via RSS or Email to receive notifications when new posts are published. Follow GrowMap on Twitter too!

{ 1 trackback }

Watch Out for Recent WordPress Gumblar PHP Exploit | GROWMAP.COM
May 13, 2009 at 2:02 am

{ 79 comments… read them below or add one }

John G February 25, 2010 at 6:50 pm

Twitter: @SEOWorks

A few major companies actually hire these hackers, because they were so talented as to break into their system. Maybe that’s the answer, feed the poor and renegades of society, offer them work. Yes, let’s hack the hackers!

Reply

m65 March 1, 2010 at 9:52 am

Twitter: @m65jacket

very nice article thanks for the share
m65´s last blog ..Alpha M65 Field Jacket My ComLuv Profile

Reply

crocwireless from cheap tmobile phones March 4, 2010 at 8:49 am

Twitter: @muqtada123

I m happy to hear about the new update from wordpress blog, now it is really hard to get your blog attacked by stupid spammers by installing some great wordpress created some strong anti-spam plug in which helps in saving your blogs from spammers. Thumbs up!!!

Reply

Leave a Comment

CommentLuv Enabled

This site uses KeywordLuv. Enter YourName@YourKeywords in the Name field to take advantage.

*
To prove you're a person (not a spam script), type the answer to the math equation shown in the picture. Click on the picture to hear an audio file of the equation.
Click to hear an audio file of the anti-spam equation

Previous post: How to Create a Successful Blog Based Business

Next post: Intelligent Bloggers to Consider Reading