Jump to content
  • 0

Fresh installation spamming email everywere...


Marco Lungo

Question

I'm fighting with Wikimedia installation. Months ago, my provider alert me that one of my sites, the one that use Wikimedia, had spammed a lot of porn email everywhere. In the db, I've found a lot of users and the table (prefix)text was overload of records. My provider had blocked my site and I've not checked the situation anymore, that's why the site was not in production. Now, I've ported the site from the provider to my server and, after porting, the tables I've told before was full again of spam, just after cleaning all the garbage. Today, I've decided to install a fresh new one of Wikimedia, ver. 1.34.1, starting from scratch. After few minutes from installing Wikimedia, the tables (prefix)text and (prefix)user and others was totally full of garbage again and the mail server has spammed a lot of emails. 
I've no idea what could be the problem. I've other three sites on that hardware and there was no problem. 
In which way they can do that? 
My VM is a Ubuntu 18 upgraded, with ClamAv (obviously, there was noting on his log), Phpmyadmin 4.9.1, PHP 7.2 running on fpm mode, ISPConfig and Roundcube, with Apache and MySql.
I've changed the users from the first installation, everytime I did another installation.
Any ideas?

Link to comment
Share on other sites

1 answer to this question

Recommended Posts

  • 0

You'll want to install some anti-spam extensions. I recommend ConfirmEdit (adds a CAPTCHA) and AbuseFilter (lets you manually define filters that can block edits) at a minimum. This will prevent spambots from being able to easily sign up and create spam pages on your wiki.

For the email issue, I can't really say what may be going on there. It could just be confirmation emails, because I'm not aware of any active security vulnerabilities that allow users to send email to arbitrary other addresses via the wiki.

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Answer this question...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.