Hack of GoDaddy bixiyaha, taas oo horseeday tanaasulka 1.2 milyan macaamiisha martigelinta WordPress

Macluumaad ku saabsan jabsiga GoDaddy, mid ka mid ah diiwangeliyayaasha domain ee ugu weyn iyo bixiyeyaasha martigelinta, ayaa la shaaciyay. Noofambar 17, raadadka gelitaanka aan la oggolayn ee adeegayaasha mas'uulka ka ah bixinta martigelinta ee ku saleysan madal WordPress (deegaan diyaarsan oo WordPress uu hayo bixiyaha) ayaa la helay. Falanqaynta dhacdada ayaa muujisay in dadka dibadda ahi ay heleen nidaamka maaraynta martigelinta WordPress iyada oo loo marayo lambarka sirta ah ee mid ka mid ah shaqaalaha, oo ay isticmaaleen nuglaanta aan la daboolin ee nidaamka duugoobay si ay u helaan macluumaadka qarsoodiga ah ee ku saabsan 1.2 milyan isticmaalayaasha WordPress ee firfircoon iyo kuwa aan firfircoonayn.

Weeraryahanadu waxay heleen xogta magacyada akoonnada iyo ereyada sirta ah ee ay isticmaaleen macaamiishu DBMS iyo SFTP; furaha sirta ah ee maamulaha tusaale kasta oo WordPress ah, oo la dejiyay inta lagu guda jiro abuuritaanka bilowga ah ee jawiga martigelinta; furayaasha SSL ee gaarka ah ee isticmaalayaasha firfircoon qaarkood; ciwaanada iimaylka iyo nambarada macmiilka ee loo isticmaali karo in lagu sameeyo phishing. Waxaa la xusay in kooxda weerarka geysatay ay fursad u heleen kaabayaasha laga bilaabo 6-dii Sebtembar.

Source: opennet.ru

Add a comment