Another company has copied my website (design, some photos and content, just changing names and activity to personalise). Although I realise the template is of public distribution, I had modified a few issues, so am absolutely sure that this site has not been started from scratch.
Where can the vulnerability be?, can a page be copied straight from another page?
I called my hosting company and it seems some perms had been changed on cpanel (under the www section).
My current situation is:
Joomla! 1.5.14 Stable
Initial release of Affinity.
I welcome any suggestions to avoid this happening again in the future.
This happen sometime when user do not bother to stay up to date with joomla and there extensions. If they were able to log to download your template your lucky they did not had any malicious code to your index.php.
Why this happen often users use IE to edit there web site and open new tab to others web site if that new web site as malicious code it will grab your admin information.
Also may user do not use secure password to protect there administrator folder.
User are sometime lazy use same password for ftp Use port 21 for ftp
use bad database creation
like
user name for the db name
user password same as user name or root password.
using jos_ extension kiddy script are lazy so many script work with jos_ db
instead of #_
Pierre
Please be kind no PM without asking,Pm without asking will result in fow list
help also on freenode irc #joomla,hosting solution for a great value 20 users only per server.
Pierre.