Sajha Blogs disabled for few days due to detection of hacking activity - Sajha Mobile
SAJHA MOBILE
Sajha Blogs disabled for few days due to detection of hacking activity
Posts 4 · Viewed 4261 · Go to Last Post
San
· Snapshot
Like · Likedby · 0
Would like to inform you that the sajha guild came down under a malicious attack. About a week back I got a notification from google saying that the pages of sajha guild has been compromised. In checking out the data, I found that there was a string containing reference to a javascript was appended to most of the data. In essense what this does is to force uses to run a javascript when they loaded any guild page which showed partially blank pages.

I hoped this would be a random thing so I took care of the database and remove all inserted codes and just waited to see what happens.

Today also same thing from the morning, it may have been before this but thats when i noticed it. So in doing a little research this is what is going on:

Click here to see info on this script injection hack

I need a little time to get to the bottom of this so I'm disabling sajha blogs for few days until the time I have figured out a good solution. Please do read up on the above to see if you are infected. If anyone has any good ideas, please feel free to share!

It is very interesting that the exerpt from the above link reads: "excluding all end-users with the following language preferences set in their browser—Russian (RU), Chinese (ZH-CN, ZH-TW, ZH), Korean (KO), Hindi (HI), Thai (TH), and Vietnamese (VI)—as the ngg.js script suggests."

It will be interesting to find out why only these language users are excluded from the effects of the exploit.
Dananah
· Snapshot
Like · Liked by · 0
darn the crackers!:@..hehe

anyways san bro seems like some extra work for u urghh..but have fun!:oD hehe

and yeah i actually had come to shower the blog with some of my usual gibberish blabber..but wat luck!:oS..actually  its lucky i didnt do it few days ago?..had been thinkn then...errr aint i lucky?someone say so..i cant decide!plus most prob i already have been infected long time back..due to visiting sites that are infested with wat not?;oP haha..ok ok just talkn with myself here..since cant log onto the blog :o(..

hope all is well San bro :oD...

good day!and good luck!:oD

ps thumbs up the "search" function that works..its def gettn better and better here :oD
Last edited: 07-Aug-08 01:27 AM
San
· Snapshot
Like · Liked by · 0
Sajha Blog is back up. It should be fine now. Any inconvenience is regretted.

Best wishes
whois
· Snapshot
Like · Liked by · 0
So you're using SQL.. I thought it was "MYSQL"???

Anyway thanks for letting us know.
Please log in to reply to this post

You can also log in using your Facebook
View in Desktop
What people are reading
You might like these other discussions...
· Posts 5 · Viewed 411
· Posts 6 · Viewed 1508
· Posts 1 · Viewed 84
· Posts 3 · Viewed 242 · Likes 1
· Posts 1 · Viewed 183
· Posts 2 · Viewed 340
· Posts 1 · Viewed 88
· Posts 1 · Viewed 117
· Posts 1 · Viewed 83
· Posts 1 · Viewed 155



Your Banner Here
Travel Partners
Travel House Nepal