View Single Post
Old 10-04-2009, 01:44 PM  
beta-tester
Rock 'n Roll Baby!
 
Join Date: Sep 2004
Location: USA, temporarly
Posts: 22,562
Quote:
Originally Posted by boneless View Post
from what i gathered, menu.php in the admin dir gets attacked. Since i run 100s of installations it would be mad work to get them all switched in a short time span, so i worked around it:

- Delete menu.php from the admin dir
- htpasswd protected the admin dir

i noticed lots of peeps not affected they all had their admin dir htpasswd protected.

regards,

Ed
I've had my admin dir protected for 2 years now. I realized from looking at audit logs (mod_security) that a lot of admin files get hit by bots, trying to execute sql injection. Then I protected it with htaccess, and those problems gone. Menu.php might be on the hit because it contains iframe of comus' website, and attacker can, by exploiting something on comus' site, affect the comus installation.
__________________

Sig for sale. Affordable prices. Contact me and get a great deal ;)

My contact:
ICQ: 944-320-46
e-mail: manca {AT} HotFreeSex4All.com
beta-tester is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote