Hi guys,
just thought I'd let you know about an event that happened on my install just a few minutes ago.
Not sure if they were successful but a url was entered to change the details of a new, prob bogus, account that had been created. The result in WHMCS was thus:
First Name Andri
Last Name Cyber4rt
Company Name DMASTERPIECE
Email Address [email]a@b.com[/email]
Address 1 AES_ENCRYPT(1,1), address1= (SELECT MIN(username) FROM tbladmins)
Address 2 AES_ENCRYPT(1,1), address2= (SELECT MIN(password) FROM tbladmins)
City dm
State/Region Arizona
Postcode dm
Country US - United States
Phone Number 086969696969
as you can see an attempt was made to get the 'admin' details out of the database.
Does anyone know if these attacks are known about and if so are they successful.
I have only 1 admin and have changed the password, but it's out there that people are trying!
Cheers,
Dave