When logged into my Media Temple Word Press today, I was greeted with the following code sitting in my Admin :
Incase your curious, this indicates that the site has been hacked. The code in the image above loads malicious Javascript to redirect users from your site to somewhere else. This type of attack is pretty common place, with only the URL changing.
I very quickly learned from the WordPress forum that this is a wide spread issue for many Media Temple subscribers. Note that I didn’t refer to them as “users”, instead as a “subscriber” these people are paying money to Media Temple for the hosting facilities.
Further information from Media Temple confirms that several of their servers have been hacked, through no fault of the people who have their sites hosted on Media Temple’s Systems. People affected by this can find out information here : http://weblog.mediatemple.net/weblog/category/system-incidents/1404-wordpress-redirect-exploit/
But that is not enough to solve things, Media Temple. If it’s your servers that got hacked and many accounts have been affected through no fault those customers, it shouldn’t be fall to those paying customers to clean up YOUR mess. If a car company sells a car contain a defect which allows someone to easily get into and drive away, would it make sense for the car manufacturer to tell it’s consumer to pay to get it fixed on their own dime? Or to grap a toolbox and work on their car’s electronics themselves? Of course not.
Add onto this the fact that there is no guarantee that the hackers haven’t altered other files in our websites, other than WordPress, and this becomes a very worrisome issue.
I’ve been with Media Temple for a lot time, and I’ve even met some of their staff at the OFFF festival – I like their service and their good attitude, especially toward design-centric sites. Unfortunately the exposure to security risks and lack of a proper solution on their part has really damaged their credibility to me as a customer. I’m hoping they are working on a better fix in the next day or two, otherwise you may be seeing this blog served from a new host.
You should follow me on twitter
here.
Share this article :