ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Drupalgeddon2 Kicks Off

    News
    drupal security content management system cms drupalgeddon ars technica
    4
    8
    1.4k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • mlnewsM
      mlnews
      last edited by

      CVE-2018-7600 or Drupalgeddon2 is a significant vulnerability in the Drupal Content Management System currently being attacked on a mass scale.

      Drupalgeddon2 "is under active attack, and every Drupal site behind our network is being probed constantly from multiple IP addresses," Daniel Cid, CTO and founder of security firm Sucuri, told Ars. "Anyone that has not patched is hacked already at this point. Since the first public exploit was released, we are seeing this arms race between the criminals as they all try to hack as many sites as they can."

      dafyreD 1 Reply Last reply Reply Quote 2
      • dafyreD
        dafyre @mlnews
        last edited by

        @mlnews said in Drupalgeddon2 Kicks Off:

        CVE-2018-7600 or Drupalgeddon2 is a significant vulnerability in the Drupal Content Management System currently being attacked on a mass scale.

        Drupalgeddon2 "is under active attack, and every Drupal site behind our network is being probed constantly from multiple IP addresses," Daniel Cid, CTO and founder of security firm Sucuri, told Ars. "Anyone that has not patched is hacked already at this point. Since the first public exploit was released, we are seeing this arms race between the criminals as they all try to hack as many sites as they can."

        Somebody here on ML posted a link about that, I think. We got a head of the curve on that one (and we have several Drupal servers here!).

        dbeatoD 1 Reply Last reply Reply Quote 2
        • dbeatoD
          dbeato @dafyre
          last edited by

          @dafyre said in Drupalgeddon2 Kicks Off:

          @mlnews said in Drupalgeddon2 Kicks Off:

          CVE-2018-7600 or Drupalgeddon2 is a significant vulnerability in the Drupal Content Management System currently being attacked on a mass scale.

          Drupalgeddon2 "is under active attack, and every Drupal site behind our network is being probed constantly from multiple IP addresses," Daniel Cid, CTO and founder of security firm Sucuri, told Ars. "Anyone that has not patched is hacked already at this point. Since the first public exploit was released, we are seeing this arms race between the criminals as they all try to hack as many sites as they can."

          Somebody here on ML posted a link about that, I think. We got a head of the curve on that one (and we have several Drupal servers here!).

          That was me 🙂

          1 Reply Last reply Reply Quote 2
          • dafyreD
            dafyre
            last edited by

            Has everybody else already patched their Drupal setups?

            stacksofplatesS dbeatoD 2 Replies Last reply Reply Quote 0
            • stacksofplatesS
              stacksofplates @dafyre
              last edited by

              @dafyre said in Drupalgeddon2 Kicks Off:

              Has everybody else already patched their Drupal setups?

              I auto patch mine with drush.

              1 Reply Last reply Reply Quote 2
              • dbeatoD
                dbeato @dafyre
                last edited by

                @dafyre said in Drupalgeddon2 Kicks Off:

                Has everybody else already patched their Drupal setups?

                Well, a new customer we needed to patch it 😞

                dafyreD 1 Reply Last reply Reply Quote 1
                • dafyreD
                  dafyre @dbeato
                  last edited by

                  @dbeato said in Drupalgeddon2 Kicks Off:

                  @dafyre said in Drupalgeddon2 Kicks Off:

                  Has everybody else already patched their Drupal setups?

                  Well, a new customer we needed to patch it 😞

                  Hopefully it has been patched before they got pwned.

                  dbeatoD 1 Reply Last reply Reply Quote 0
                  • dbeatoD
                    dbeato @dafyre
                    last edited by

                    @dafyre said in Drupalgeddon2 Kicks Off:

                    @dbeato said in Drupalgeddon2 Kicks Off:

                    @dafyre said in Drupalgeddon2 Kicks Off:

                    Has everybody else already patched their Drupal setups?

                    Well, a new customer we needed to patch it 😞

                    Hopefully it has been patched before they got pwned.

                    Yeah hopefully .

                    1 Reply Last reply Reply Quote 0
                    • 1 / 1
                    • First post
                      Last post