Update 0.4.2 Has Been Applied
-
@scottalanmiller said:
@Dashrender said:
@JaredBusch OK Good! I was sent to porn site last night after clicking on Scott's article - I thought my phone had an issue (infection) - glad to see it was more likely a problem with the blog.
Desktop or mobile device?
Mobile
-
Okay. That's a really common WP attack vector. I bet that I know what it is.
-
@Dashrender said:
@JaredBusch OK Good! I was sent to porn site last night after clicking on Scott's article - I thought my phone had an issue (infection) - glad to see it was more likely a problem with the blog.
Confirmed in my iPad. Could it be remnants of the compromise a couple months ago? I thought I purged out all the funky code.
-
@alexntg said:
@Dashrender said:
@JaredBusch OK Good! I was sent to porn site last night after clicking on Scott's article - I thought my phone had an issue (infection) - glad to see it was more likely a problem with the blog.
Confirmed in my iPad. Could it be remnants of the compromise a couple months ago? I thought I purged out all the funky code.
Possible but likely something new. .htaccess looks good. I see 301 redirects in the logs.
-
Sucuri lists the site as clean.
-
Noticed an uptick in log entries a few hours ago. Likely related.
-
Web Inspector says clean too. These mobile only attacks seem to hide well.
-
And Quttera. What a pain. Nothing is detecting anything wrong.
-
Okay. If you use www.smbitjournal.com you get the issue. But direct.smbitjournal.com does not when I test it.
Could the issue be in the CDN and not on the site?
-
Having a problem uploading a standard picture from my iPhone 5. I ended up using imgupr to send it to imgur instead of the direct upload.
It was this http://i.imgur.com/nN6hMWj.jpgYou see the upload twice because I wasn't prepared for the fail and did not take the screenshot in time the first time.
-
I love this view now..
-
It is very colorful now.
-
I love this new Update
-
Still having issues at one client when trying to access the site. Can see the home page, but cannot log in.he log in page is just a blank screen, though lastpass sees something.
-
@JaredBusch said:
Still having issues at one client when trying to access the site. Can see the home page, but cannot log in.he log in page is just a blank screen, though lastpass sees something.
I've seen bizarre results when used in conjunction with a content filter. Do they have one in place, or some type of proxy?
-
Hrm, i'm still picking up on a metric ton of purple
-
@Hubtech said:
Hrm, i'm still picking up on a metric ton of purple
Ugh, yes.
-
not wanting to derail someone elses thread any longer..
On the subject of the imgur uploads. @scottalanmiller claims it is imgur's limitation.
Imgur has no posted limitation on uploaded image size that I can find. They do have posted limits on how many images a site can send without having to request a whitelisting.
Source: https://api.imgur.com/Additionally the error code returned here is a webserver (nginx) error code, not an imgur error code.
Source: https://api.imgur.com/errorhandling -
I know on my web server I had to modify Apache/PHP to allow larger uploads to my WordPress site. I would assume that Nginx has some similar settings that may need modified.
-
Okay, that is very fishy that the message comes from nginx. Let's take a look.