<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Gomez Blog &#187; hacking</title>
	<atom:link href="http://markandchas.com/blog/archives/tag/hacking/feed" rel="self" type="application/rss+xml" />
	<link>http://markandchas.com/blog</link>
	<description>Keeping up with theology, technology, and 4 crazy kids.</description>
	<lastBuildDate>Sun, 31 Jan 2010 04:04:22 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>A Cautionary Tale</title>
		<link>http://markandchas.com/blog/archives/164</link>
		<comments>http://markandchas.com/blog/archives/164#comments</comments>
		<pubDate>Sat, 15 Nov 2008 21:58:12 +0000</pubDate>
		<dc:creator>Mark</dc:creator>
				<category><![CDATA[Tech]]></category>
		<category><![CDATA[Websites]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[Joomla]]></category>

		<guid isPermaLink="false">http://markandchas.com/blog/?p=164</guid>
		<description><![CDATA[So Wednesday I got a decent night&#8217;s sleep and I showed up to work ready to be productive and knock out an item or two on my task list.  As I opened up my computer and checked my email to start the day, I found a message from a school parent saying there was a [...]]]></description>
			<content:encoded><![CDATA[<p><span class="drop">S</span>o Wednesday I got a decent night&#8217;s sleep and I showed up to work ready to be productive and knock out an item or two on my task list.  As I opened up my computer and checked my email to start the day, I found a message from a school parent saying there was a problem with the school&#8217;s website.  Apparently it was redirecting them somewhere other than the school site.  Same with the church site.  I opened a new tab and entered sspatriots.org and sure enough, there, in big bold letters, were the words &#8220;Owned by R&#8212;- and L&#8212;&#8211;&#8221; (I don&#8217;t want to put their names up and give them the satisfaction).  After a couple seconds, the site redirected the visitor to a Turkish rap site.  I wish I was joking.</p>
<p><span id="more-164"></span></p>
<p>So I logged into the backend, assessed the damage, contacted our host, and removed the offending files.  I got the site back up and it got hacked again.  As a matter of fact, it was the church site that got hacked, but they&#8217;re both on the same server so it affected both sites.  Well, I finally fixed it and found the problem and corrected it.</p>
<p>It turns out, when I built the church site, I used the then-current 1.5.4 version of Joomla.  They are now up to 1.5.8.  Apparently, there were some security issues with 1.5.4 that the hacker exploited.  So now the church and school sites have been upgraded to the latest versions and I&#8217;m keeping an eye on security updates.   And my task list is now longer than ever.</p>
<p>What?  Wordpress is at 2.6.3?  What am I running?  Oops, gotta go make some updates.</p>
]]></content:encoded>
			<wfw:commentRss>http://markandchas.com/blog/archives/164/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
