whmcs was hacked recently

This is used for general discussion that is not necessarily server-related.
Post Reply
User avatar
hiimcody1
Former staff
Former staff
Posts: 1616
https://www.youtube.com/channel/UC40BgXanDqOYoVCYFDSTfHA
Joined: Wed Dec 28, 2011 4:59 pm

whmcs was hacked recently

Post by hiimcody1 »

http://blog.whmcs.com/
What we know for sure

1. Our server was compromised by a malicious user that proceeded to delete all files
2. We have lost new orders placed within the previous 17 hours
3. We have lost any tickets or replies submitted within the previous 17 hours

What may be at risk

1. The database appears to have been accessed
2. WHMCS.com client area passwords are stored in a hash format (as with all WHMCS installations by default) and so are safe
3. Credit card information although encrypted in the database may be at risk
4. Any support ticket content may be at risk - so if you've recently submitted any login details in tickets to us, and have not yet changed them again following resolution of the ticket, we recommend changing them now.

At this time there is still no evidence to suggest that this compromise actually originated through the WHMCS software itself. This was not merely a WHMCS system access, and since we do not provide hosting ourselves, our WHMCS is not hooked up in any way to our server.
LucasG
A semi-regular
A semi-regular
Posts: 27
Joined: Tue Aug 02, 2011 7:36 pm

Re: whmcs was hacked recently

Post by LucasG »

Someone apparently managed to impersonate the owner of WHMCS through his webhosting company's support and ended up getting the information of his account and deleting everything. But they said everything is back to normal.
Post Reply