16
Teknas
5y

One of my clients got hacked.
FML. It was fucking bad passwords by a team member.

Google has now blacklisted the domain.

Removed the shady code, requested for review. Hope it recovers soon.

Any idea how long it takes for Google to remove the red warning page before you even enter the page ?

Comments
  • 4
    What's the shady code about?
  • 5
    @asgs found a phishing page which intended to extract apple ids.

    Also found a reverse shell hidden somewhere in /Vendors just because the email it sent on successful installation got bounced and in my box trapper.

    I think it was a script kiddy who just used an off the shelf exploit. The giveaway is the hacker used Gmail addresses.

    Can't take any chances tho
Add Comment