Page 36 of 36 FirstFirst ... 26343536
Results 526 to 529 of 529

Thread: WHMCS.com Hacked?

  1. #526

    Default

    Quote Originally Posted by vincent_g View Post
    SFTP requires Shell access

    To prevent a user from seeing others you need to have jail shell access set

    I don't allow shell access by any users and to prevent all from having access - even the at the data center
    nope not true... it all runs off the mod_sftp system built into proftpd... no need to give out shell access and definitely no need to use jail shell since we are not talking about the openssh sftp sub system.

  2. #527

    Default

    For those who were freaking out because their data was just leaked making claims of keys to kindom etc... honestly been doing some digging around on different underground sites and it seams that most of their scanners used google to find the WHMCS installs... didnt matter if you pay unbranded or not... the scanners find it with basic google search:

    inurl:submitticket.php

    then their scanner loops through result pages checking url to be a match and if it is exploitable


    see for yourself: https://www.google.com/#hl=en&sclien...bmitticket.php

  3. #528
    Join Date
    Aug 2009
    Posts
    66

    Default

    day before yesterday my card I had on file with whmcs was used all over GB. bank already reversed it.

    I'm not sure if it's related but it seems conicidental. A good idea to cancel any cards you may have had saved with whmcs.

    PS: one of the charges was Papa Johns in GB.
    Last edited by BarrySDCA; 06-06-12 at 04:12 PM.

  4. #529
    Join Date
    Jul 2008
    Location
    Northumberland, UK
    Posts
    2,774

    Default

    sorry your card was used

    Quote Originally Posted by BarrySDCA View Post
    A good idea to cancel any cards you may have had saved with whmcs.
    this was advice given by WHMCS once they started to regain control back, so is not new advice
    The Easyhost Media Group t/a Niceday Hosting
    FREE Browser Toolbar

Page 36 of 36 FirstFirst ... 26343536