Results 1 to 3 of 3

Thread: cpanel hacked ??
      
   

  1. #1
    kyle04 is offline Private
    Join Date
    Aug 2006
    Posts
    3

    Exclamation cpanel hacked ??

    I operate a website that uses an offline credit card payment facility, hosted by Vodahost, with the site operating via Soholaunch software.
    A key module in my shopping cart programme has been repeatedly hacked with an email sub programme - despite changing my cPanel password several times. The hacker could only have done this by gaining access to my FTP (I have Bluevoda and cPanel - same UN and PW).
    I have scanned my PC for malware - all clean.
    How is my passward being hacked on such a regular basis. I select my passwords with random letters, numbers and other non-alphanumeric characters.
    Is sql injection at play here ?
    Would appreciate comments from an official source as I am beginning to doubt the security of Vodahosts FTP system.
    Regards
    AndyP

  2. #2
    Karen Mac's Avatar
    Karen Mac is offline General
    Join Date
    Apr 2006
    Location
    X marks the spot
    Posts
    8,353

    Default Re: cpanel hacked ??

    SQL Injection has been going on all over.. first.. disable all email a friend, etc etc in soho. Change the password, then take it out of soho and only put it in the ftp area when you need to update.

    Put in a support ticket.

    Karen

    VodaHost

    Your Website People!
    1-302-283-3777 North America / International
    07031847328 / United Kingdom

    ------------------------

    Top 3 Best Sellers

    Web Hosting - Unlimited disk space & bandwidth.

    Reseller Hosting - Start your own web hosting business.

    Search Engine & Directory Submission - 300 directories + (Google,Yahoo,Bing)



  3. #3
    kyle04 is offline Private
    Join Date
    Aug 2006
    Posts
    3

    Default Re: cpanel hacked ??

    Thank you for the reply Karen.
    1) My FTP password is not stored in the soho admin programme (an old one was logged there but since deleted.)
    2)email_friend/write review features long since disabled in my shopping pages.
    3) I'm very concerned, as to alter the code on a module itself, you need access to it via BlueVoda or cPanel, and hence the password for these areas. My password is changed quite regularly, and I thought even a brute attack on it would result in a lockout so to speak.
    I'll submit a ticket and see what response I get.
    Regards
    AndyP

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

     

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49