Redirect hack
-
Hello.
I use WordPress only as an admin (I have the Rest Api assembled). I was recently hacked and when I call rest I get a redirect script which spoils Json
window.location.replace (‘[redacted]’); window.location.href = ‘[redacted]’;
I restored the entire server backup twice. However, after 1 day, the same thing happens again.
I do not have a separate WordPress database and I found some weird records there and deleted them.Site: [redacted]
WP.com: Unknown
Jetpack: Unknown
Correct account: Unknown -
Hey there, I’d recommend restoring again, then you’ll want to take steps to secure your installation. Make sure everything is up to date, check for insecure scripts, etc.
Going forward, you’ll want to use the correct forum for self-managed WordPress installations:
https://wordpress.org/support/forums/If you suspect it’s something with the API, there’s a developer forum as well:
https://wordpress.org/support/forum/wp-advanced/Here’s the difference between that and our managed WordPress services:
https://get.wp.comHoping this helps!
- The topic ‘Redirect hack’ is closed to new replies.