General ⇒ $this->Website ⇒ Huge Fonts (security exploit) ⇒ Community Forums ⇒ CPG Dragonfly™ CMS
Forum Index$this->Website

Huge Fonts (security exploit) Reply to topic


Gulp! What happened to the fonts?

Pro_News CM™ - Content Management for Dragonfly CMS™

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Linux / 1.3.39 - 2.4.9 / 5.5.42 - 5.6.16 / 5.4.37 - 5.5.11 / 9.4


That's nothing - when I visit with Chrome I got this:

Warning: Visiting this site may harm your computer!
The website at dragonflycms.org contains elements from the site 83.69.226.221, which appears to host malware – software that can hurt your computer or otherwise operate without your consent. Just visiting a site that contains malware can infect your computer.
For detailed information about the problems with these elements, visit the Google Safe Browsing diagnostic page for 83.69.226.221.
Learn more about how to protect yourself from harmful software online.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):


Someone modified our includes/config.php
The file is fixed and i'm investigating the issue.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Fedora 25 / Apache 2.4.27 / MariaDB 10.1.26 / PHP 7.1.10 / Mercurial


Let me know what is happening, I'm online.

.:: I met php the 03 December 2003 :: Unforgettable day! ::.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
CloudLinux / Apache 2.4 LSAPI / MySQLi 5.6 / PHP 5.6 / DCVS


Nano and Me found the problem. It was there since 2006!
Nano: is crawling through the logs
Maze: is browsing through the code

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
Fedora 25 / Apache 2.4.27 / MariaDB 10.1.26 / PHP 7.1.10 / Mercurial


hi maze & nano,


Someone modified our includes/config.php


What is the current state of this issue?

thanks

.: USE THE FORCE :.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):


An announcement will be made shortly.

.:: I met php the 03 December 2003 :: Unforgettable day! ::.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
CloudLinux / Apache 2.4 LSAPI / MySQLi 5.6 / PHP 5.6 / DCVS


Nano - any further news on this? (Don't mean to push you, just a little concerned).

Note: WWW Private Listing - Staff Only

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
linux/Apache 2.4.27/MySQL 10.1.26-MariaDB/PHP 5.2.17/Dragonfly 9.2.1


As DJ say, it was there from the 2006 and a component of internal factors were also responsible.

As far we can tell there is nothing to worry about this is why we have made no announcement yet.

On the mean time, while working on DF10, I'm revising many parts of the code and yet nothing come up as expected.

.:: I met php the 03 December 2003 :: Unforgettable day! ::.

Server specs (Server OS / Apache / MySQL / PHP / DragonflyCMS):
CloudLinux / Apache 2.4 LSAPI / MySQLi 5.6 / PHP 5.6 / DCVS

All times are UTC


Jump to: