Really odd thing happened today, and I can't work out how.
One of my database tables was selectively hacked so the 15th+ character of a CMS body field was replaced with a crude javascript hack to a domain - yl18.net. Nasty.
There is no way on earth that this could have got into the database via my code (I trap everything!), so it's almost a back-door direct injection into the SQL database. Anyone else come across this?
One of my database tables was selectively hacked so the 15th+ character of a CMS body field was replaced with a crude javascript hack to a domain - yl18.net. Nasty.
There is no way on earth that this could have got into the database via my code (I trap everything!), so it's almost a back-door direct injection into the SQL database. Anyone else come across this?