Security breach recap; Important notice about your user account

Hello, everyone. An apparent security breach occurred on Shot by Shot this morning. The hack led to some spam on the site, and appears to have been made via an old Wordpress exploit from Version 1.5, on which the site was previously running.

This known exploit would not have made it possible for your password or other private information to have been compromised. The only password that could have been compromised (though it remains unlikely that it was), is my encoded admin password, which has since been changed, and which at no time could have allowed access to the user database. (That operates under a different domain, username and password combination.)

The site was promptly taken down while I investigated, learned of the exploit, and worked to upgrade the site to the latest version of WordPress. (I had planned this upgrade for some time, but until now it had been a low priority.)

The site is now back up and running (along with a few improvements), and the migration to the upgraded version of WordPress went very smoothly, with the exception of migrating user accounts.


IMPORTANT NOTICE ABOUT USER ACCOUNTS

Unfortunately, some accounts migrated automatically, and others didn’t. If you are on this month’s scoreboard, I went ahead and migrated your account manually if necessary. Below, you’ll see what you need to do to login or maintain your user account.

If you are on this month’s scoreboard, your user account was migrated, and I have sent you an email with your newly issued, temporary password.

If you are not on this month’s scoreboard, but you are Alexis, Chad, or vistavision, your user account was migrated, and I have sent you an email with your newly issued, temporary password.

Otherwise, unfortunately, you will have to re-register to play the game. Please sign up for a new, free user account.

I apologize for any inconvenience this has caused, and if you have any questions, please e-mail me directly at zack_mcghee AT yahoo DOT com.

Leave a Comment

You must be logged in to post a comment.