Coppermine 1.4.10 has been Hijacked Coppermine 1.4.10 has been Hijacked
 

News:

CPG Release 1.6.28
added submissions from {406man}
cleaned up a few PHP (8.4) deprecations
fixed PHP deprecation in calendar
removed security vulnerability
(please upgrade when possible)

Main Menu

Coppermine 1.4.10 has been Hijacked

Started by yushan, January 06, 2008, 02:27:29 AM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

yushan

Dear Support,
I just found out that my coppermine has been hijacked, everytime I receive an email notification of new user registration, it sends the notification to two emails, one is the admin email (my email ***@***.com) and the other one is the hijacker's email which is kevin082312@gmail.com
I checked the "Gallery administrator email" under config, it has only admin email listed.

Fyi, This is Coppermine Version: 1.4.10

Please help, how do I go about fixing this?

Thanks,
Jason

Nibbler

Check in the user list for the extra admin account and delete it. Update your gallery - current version is 1.4.14.

yushan

Thank you I appreciate it!!! it's fixed now, Phew..I am glad they did not mess up with anything else, they could have deleted pictures, tables etc...that could be really bad. It reminds me I need to make regular backups

Joachim Müller

Keep you gallery (and all other scripts you use) up-to-date. I suggest scanning the site for potential backdoors as well.