JoomDonation Hacked Email

More
9 years 4 months ago #53236 by Halil Kahveci
Replied by Halil Kahveci on topic JoomDonation Hacked Email
everybody has to be in same topic.
joomdonation.com/forum/events-booking-ge...s-to-joomdonati.html
please go and check

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53254 by Annabelle
Replied by Annabelle on topic JoomDonation Hacked Email
Hi

I'M new to this forum, please advice how I get a ticket - i also received this email and I'm very worried as I'm unsure which of the joomla pluggings I used would have been effected. Thank you

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53262 by Anna Chase
Replied by Anna Chase on topic JoomDonation Hacked Email
I also received this email regarding JoomDonation. Currently I'm using it on one site I designed for a client. Do you recommend I disable it until this is resolved?

Also worried about payment info since they have my full name and email address. Please advise asap on how to handle this.

Anna

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53292 by Marc F
Replied by Marc F on topic JoomDonation Hacked Email
Tuan,

Please give us an update on this. It's been several hours of worry for many on this thread. Thanks.

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53293 by KurtB
The following user(s) said Thank You: Marc F

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53306 by brilliant
Replied by brilliant on topic JoomDonation Hacked Email
Me too.
I think you guys should send an email to all your users, this got me pretty scared,

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53307 by Elliot Nicholls
Replied by Elliot Nicholls on topic JoomDonation Hacked Email
I also got the email and I think we all want assurance that all Joomdonation software is safe and secure.

I also think this thread should be made sticky at the top of the forum explaining was has happened and what steps you have taken to remedy it.

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53319 by Nico van der Gryp
Replied by Nico van der Gryp on topic JoomDonation Hacked Email
My site was hacked and i almost lost my hosting account! Is this sorted? This guy says we have 5 days to delete the component......

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53336 by Mtspinto
Replied by Mtspinto on topic JoomDonation Hacked Email
Also got the email. Funny thing though that I got it on an email address I used for presale questions - and not on the one I used when I purchased booking system.

I downloaded my site and did a full local scan with Eset NOD32. I downloaded Malwarebytes and did a scan of the site and nothing came up.

Also... why notify and not give an alternative. It's all hot air just to bring down a system that actually works because they can't compete. :angry:

I have used it for 2 years and even had extra development done for the South African payfast gateway and it's been seamless. A bit of a coding workaround initially with branding on tickets emailed to users but once done, it worked.

I'm not afraid of the Payment details, as they could NEVER be an issue as that is done on the ACTUAL payment gateway itself (ie outside of bookings system on PayPal or in my case PayFast aswell)

Please Log in or Create an account to join the conversation.

More
9 years 4 months ago #53354 by Sander de Wijs
Replied by Sander de Wijs on topic JoomDonation Hacked Email
Recieved the same email.

I just scanned my site using RSFirewall component. It scans for every known hack inside the code, including php scripts embedded in image files, but found no real threats.

It found two suspicious pieces of code inside 'administrator/components/com_jdonation/view/fields/tmpl/default.php' on lines 76 and 78:
Code:
$published = JHtml::_('grid.published', $row, $i, 'tick.png', 'publish_x.png'); $img = $row->required ? 'tick.png' : 'publish_x.png';
This seems pretty straight forward Joomla list sorting code, but maybe there's something else in there.

Please Log in or Create an account to join the conversation.

Moderators: Mr. DamDũng Nguyễn Việt