Zombiephiles Hacked – By Zombies

Perhaps recent visitors to the Zombiephiles have noticed something different. Instead of our infectious zombie humor, news and entertainment, visitors were instead greeted by an outbreak of the more everyday variety – a javascript downloader virus in the header.php file of our WordPress installation.

Now, this Zombiephile will tell you that when it comes to Blogging, his specialty is zombie defense, not hacker defense, but as soon as he learned of the infection he sprung into action, quickly eliminating the script reference in the site’s installation files and changing login information – but not before some loyal zombiephytes were exposed to the infection.

Long and the short of it? got hacked, and although we can easily undo the damage, we’re not entirely sure how hackers gained access in the first place. Updating the site’s WordPress installation seemed like a good idea, as did changing our administrator login and boarding up the living room windows. Some of our more paranoid zombiephytes are concerned that this may be an informational attack by the government in the days leading up to a potential zombie outbreak – and this zombiephile isn’t discounting the possibility.

For the short term, however, we’re declaring the to be a Green Zone – no zombies here.


  Wookiejuice

    I can know breathe a sigh of relief! Thanks so much for your attentivness to this matter, and the promptness to which you used. I can know safely go back to the forums, and post away! I feel safer already…. wait! What was that noise outside the window??

  railfun

    thanks guys. I’m glad I came back to see what was going on here. Sorry about badmouthing you but I thought it was the admins. Hope you’ll forgive me.

  3. Hey, no worries, Railfun – if it wasn’t for your comments, it would have taken me a lot longer to find the problem – I always use Firefox to surf the web, which wasn’t affected by the virus – so the whole time I was unaware of any problems until I heard about it from the users.

    It was some kind of scripting vulnerability – not sure if it was specific to WordPress or what, but it inserted a script reference into the header of the website that affected every page that loaded up. Since upgrading our WordPress installation (and changing our passwords, of course) things seem to be clean…but be always vigilant! If it’s not viruses, it’s zombies.

