• Resolved davewardlerules

    (@davewardlerules)


    Hello,

    Over the weekend, a client’s website was attacked. After cleaning it up, the injected code re-appeared. I eventually noticed a backdoor had been left behind but this file was not appearing in the list of added core files (so I didn’t notice it immediately). The file was named wp-rss.php. I suspect that since this was a file in older versions of WordPress, the scanner accepted it as legitimate?

    Thanks

    Dave

Viewing 5 replies - 1 through 5 (of 5 total)
Viewing 5 replies - 1 through 5 (of 5 total)
  • The topic ‘Missed additional file in core integrity check’ is closed to new replies.