Skip to main content

Joomla servers hacked

posted onMay 23, 2019
by l33tdawg
iAfrikan
Credit: iAfrikan

Joomla has issued a statement revealing that its servers were hacked and subsequent to the breach, a cryptocurrencies mining script was installed on some of them. Joomla added that, after investigation, it believes the breach could have been prevented.

Joomla is one of the world's top three most used Content Management Systems, with the most popular one being WordPress, that have become popular by making it easier for non software developers to build and manage websites. Given their popularity, they also tend to become a target for hackers and security researchers alike looking for security vulnerabilities.

"At approximately 09:30 UTC on 15 May 2019, a security researcher notified the Joomla Security Strike Team (JSST) that they had discovered an internal Jenkins CI server used by the JED to deploy updates to their live and staging websites and were able to exploit CVE-2018-1000861 on the server, providing a screenshot of a sensitive file as proof of the exploit. Upon notification, JSST members worked with JED team members to bring the affected Jenkins system offline and conduct an analysis of whether this server had been compromised in other ways."

Source

Tags

Security

You May Also Like

Recent News

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th