The little buggers used the hole to install a shell script and an IRC relay service; they then went through my web directory and replaced all my index files with "you've been hacked" files. It took me a few hours to get everything off the server; but then they struck again via a security flaw in SiteBuilder - fortunately I caught that one live and stopped them before they could do anything.
You are only as secure as your weakest script; if you are like me and like to offer your users a variety of add-ons to your websites, then it makes sense you would want to keep up on any updates to those pieces. I was a version or two behind on FlashChat (update a mere few months ago).
|