Security issue - help needed
Posted: Sun May 02, 2010 11:04 am
Hi,
We have a client that have had some content changed on their cms ms site. Here is what happend.
On a version 1.6.6 of cms ms content on some pages were modified. As far as we can see no cms files were destroyed or modified and we could find no signs of a hacking incident.
We then upgraded it to 1.7.0 told the client to change passwords on their users and we did the same. However, two days went by and it happend again. This time a single page was modified and we could again not find any signs of hacking.
It should be noted that the site is not yet publicly known and cannot be found trough a search engine.
Do any of you know of such incidents and how do we find out how it happend? Sadly the admin log does not contain IPs of those logging on. Any help would we highly appreciated as we really enjoy using cms ms and don't want to scare of the client because he thinks the software is unsafe.
We currently host a number of cms ms sites that have had no problems at all.
We have a client that have had some content changed on their cms ms site. Here is what happend.
On a version 1.6.6 of cms ms content on some pages were modified. As far as we can see no cms files were destroyed or modified and we could find no signs of a hacking incident.
We then upgraded it to 1.7.0 told the client to change passwords on their users and we did the same. However, two days went by and it happend again. This time a single page was modified and we could again not find any signs of hacking.
It should be noted that the site is not yet publicly known and cannot be found trough a search engine.
Do any of you know of such incidents and how do we find out how it happend? Sadly the admin log does not contain IPs of those logging on. Any help would we highly appreciated as we really enjoy using cms ms and don't want to scare of the client because he thinks the software is unsafe.
We currently host a number of cms ms sites that have had no problems at all.