[dokuwiki] Re: attempt to use possible vulnerability of dokuwiki

  • From: Jonathan Dill <jonathan@xxxxxxxxx>
  • To: dokuwiki@xxxxxxxxxxxxx
  • Date: Mon, 11 Feb 2008 13:54:03 -0500

Someone with whom I have been discussing this just_a_test set up a honeypot to find out what else happens with this infection:


http://web.dtbaker.com.au/post/catching_echo_md5_just_a_test_exploit_attempts.html

Seems to drop a file called namogofer.php in all of the directories in the web tree.

Jonathan
--
DokuWiki mailing list - more info at
http://wiki.splitbrain.org/wiki:mailinglist

Other related posts: