Blog-Blog Wordpress Sedang Banjir Serangan

Discussion in 'General Internet' started by semutkecil, Apr 12, 2013.

  1. semutkecil

    semutkecil Member

    Joined:
    Apr 11, 2013
    Messages:
    119
    Likes Received:
    1
    Trophy Points:
    18
    Ini saya baca-baca dari beberapa blog Luar, kayak Cloudflare, Incapsula, HostGator, dsb.

    Jadi saya copas pendek-pendek agar nggak kepanjangan juga yach. *halo*

    ---Pertama---
    Protecting Against WordPress Brute-Force Attacks
    April 11, 2013 by Tony Perez
    It was not long ago that I was sitting on a call with other members of the WordPress community in which we were talking abou brute-force.

    ---Kedua---
    April 11, 2013
    There is currently a significant attack being launched at a large number of WordPress blogs across the Internet. The attacker is brute force attacking the WordPress administrative portals, using the username "admin" and trying thousands of passwords. It appears a botnet is being used to launch the attack and more than tens of thousands of unique IP addresses have been recorded attempting to hack WordPress installs.

    ---Ketiga---
    April 10, 2013
    Over the past day or so I’ve seen close to 1,000 brute force login attempts at my own WordPress sites originating from botnets. Other sites are being hit even harder.

    ---Keempat---
    Global WordPress Brute Force Flood
    April 11th, 2013

    As I type these words, there is an on-going and highly-distributed, global attack on WordPress installations across virtually every web host in existence. This attack is well organized and again very, very distributed; we have seen over 90,000 IP addresses involved in this attack.

    At this moment, we highly recommend you log into any WordPress installation you have and change the password to something that meets the security requirements specified on the WordPress website. These requirements are fairly typical of a secure password: upper and lowercase letters, at least eight characters long, and including “special” characters (^%$#&@*).

    You have now changed your WordPress password, correct? Good.

    The main force of this attack began last week, then slightly died off, before picking back up again yesterday morning. No one knows when it will end. The symptoms of this attack are a very slow backend on your WordPress site, or an inability to log in. In some instances your site could even intermittently go down for short periods.
    Selengkapnya: http://blog.hostgator.com/2013/04/11/global-wordpress-brute-force-flood/
     
  2. sakaji

    sakaji Member

    Joined:
    Mar 13, 2013
    Messages:
    165
    Likes Received:
    2
    Trophy Points:
    18
    wordpress.org or wordpress

    wordpress.org or wordpress.com?
     
  3. semutkecil

    semutkecil Member

    Joined:
    Apr 11, 2013
    Messages:
    119
    Likes Received:
    1
    Trophy Points:
    18
    Yg jadi target serangan

    Yg jadi target serangan adalah blog2 dng basis wordpress.org yg self hosting. *tinju*
     
  4. Dan

    Dan Forum Bot

    Joined:
    Dec 4, 2012
    Messages:
    1,316
    Likes Received:
    257
    Trophy Points:
    83
    Google+:
    Untung ngga pakai WP, kalau

    Untung ngga pakai WP, kalau saya biasanya pakai Drupal, Blogger dan Tumblr.
     
  5. samuel

    samuel Member

    Joined:
    Feb 5, 2013
    Messages:
    478
    Likes Received:
    15
    Trophy Points:
    18
    Google+:
    blog saya yang menggunakan WP

    blog saya yang menggunakan WP masih aman" saja *bergaya*
     
  6. Andre

    Andre Member

    Joined:
    Apr 12, 2013
    Messages:
    483
    Likes Received:
    22
    Trophy Points:
    18
    saya baru menggunakan Blogger

    saya baru menggunakan Blogger , untung saja tidak pakai WP *akhirnya*
     
  7. Ardilas

    Ardilas Super Level

    Joined:
    Feb 18, 2013
    Messages:
    4,243
    Likes Received:
    317
    Trophy Points:
    83
    Google+:
    Oh, kirain blog gratisnya

    Oh, kirain blog gratisnya Wordpress.com. Saya hampir ketakutan karena kan saya pengguna Blogspot.
    *mati*
     
  8. OAXER

    OAXER Member

    Joined:
    Dec 6, 2012
    Messages:
    250
    Likes Received:
    9
    Trophy Points:
    18
    Konon Kabarnya yang terserang

    Konon Kabarnya yang terserang itu website yang Administrator-nya pake username Admin
    tapi 'ga tau juga ya .. saya bukan pengguna wp
     
  9. semutkecil

    semutkecil Member

    Joined:
    Apr 11, 2013
    Messages:
    119
    Likes Received:
    1
    Trophy Points:
    18
    OAXER wrote:

    Betul sekali, yang diserang adalah Administrator yang pake username admin
     
  10. semutkecil

    semutkecil Member

    Joined:
    Apr 11, 2013
    Messages:
    119
    Likes Received:
    1
    Trophy Points:
    18
    Btw, kok rasanya cuma saya ya

    Btw, kok rasanya cuma saya ya yang pake Wordpress nih. *kesepian*
     
  11. maxmanroe

    maxmanroe Member

    Joined:
    Feb 18, 2013
    Messages:
    353
    Likes Received:
    29
    Trophy Points:
    28
    Google+:
    Saya pake WordPress kog bang.

    Saya pake WordPress kog bang. Yang pake username "admin" emang paling mudah diserang, makanya saya ga pernah pake username "admin".

     
  12. ayahnyanadia

    ayahnyanadia Well-Known Member

    Joined:
    Apr 4, 2013
    Messages:
    1,369
    Likes Received:
    153
    Trophy Points:
    63
    Google+:
    ane jg dapet email ttn info

    ane jg dapet email ttn info banjir serangan brute force terhadap web-web berbasis CMS. Ayo segera bersiap diri. Kalo beneran neh..
     
  13. hamidi

    hamidi Member

    Joined:
    Mar 20, 2013
    Messages:
    106
    Likes Received:
    7
    Trophy Points:
    18
    untung saya pakai blogger,

    untung saya pakai blogger, aman nyaman dan tentram *jail*
     
  14. semutkecil

    semutkecil Member

    Joined:
    Apr 11, 2013
    Messages:
    119
    Likes Received:
    1
    Trophy Points:
    18
    ayahnyanadia wrote:

    Mau nitip laporan aja Mas. :)
    Saya mau komen di Blog Masbadar pas di submit malah keluar error:
    500 Internal Server Error
    nginx

    Laporan selesai! *peace*
     
  15. semutkecil

    semutkecil Member

    Joined:
    Apr 11, 2013
    Messages:
    119
    Likes Received:
    1
    Trophy Points:
    18
    maxmanroe wrote:

    Betul sekali. *bagus*
    Lalu biar nggak sering disatroni, pasang juga plugin Limit Login Attempts, minimal membatasi jumlah login. *pendekar*
     
  16. semutkecil

    semutkecil Member

    Joined:
    Apr 11, 2013
    Messages:
    119
    Likes Received:
    1
    Trophy Points:
    18
    Ternyata kalau dipasangin CDN

    Ternyata kalau dipasangin CDN kayak Incapsula atau Cloudflare juga sudah dibantu menahan serangan oleh mereka.
    *pendekar*
    Wah ternyata biarpun gratisan tetapi CDN kayak Incapsula atau Cloudflare mantap banget manfaatnya.
    *pahlawan*
     
  17. nawi667

    nawi667 Member

    Joined:
    Jul 5, 2013
    Messages:
    113
    Likes Received:
    6
    Trophy Points:
    18
    Google+:
    Klo aku udah terlanjur "Jatuh

    Klo aku udah terlanjur "Jatuh Cinta" ama platform Blogger sih ...... *ketawa3* jadi gak terlalu ngerti masalah serangan pada platform wordpress ....
     
Loading...

Share This Page