{"id":2161,"date":"2014-09-25T16:03:00","date_gmt":"2014-09-25T22:03:00","guid":{"rendered":"http:\/\/www.whitefirdesign.com\/blog\/?p=2161"},"modified":"2017-01-03T15:19:47","modified_gmt":"2017-01-03T22:19:47","slug":"sitelock-doesnt-do-basic-part-of-proper-hack-cleanup","status":"publish","type":"post","link":"https:\/\/www.whitefirdesign.com\/blog\/2014\/09\/25\/sitelock-doesnt-do-basic-part-of-proper-hack-cleanup\/","title":{"rendered":"SiteLock Doesn&#8217;t Do Basic Part of Proper Hack Cleanup"},"content":{"rendered":"<p>A few weeks ago we wrote about the web security company SiteLock failing to do a basic security check,\u00a0<a title=\"SiteLock Fails To Do Basic Security Check\" href=\"http:\/\/www.whitefirdesign.com\/blog\/2014\/09\/03\/sitelock-fails-to-do-basic-security-check\/\">checking to\u00a0make sure software running on a website was\u00a0up to date when labeling before labeling the website as secure<\/a>. Based on that we weren&#8217;t surprised at our next interaction with their work.<\/p>\n<p>A couple of days ago\u00a0we were contacted by someone who looking for\u00a0help after their website had been hacked and SiteLock had been hired to clean it up. After SiteLock had said that they had removed all the malware the owner of the website had requested their web host to bring the website back online. The web host told them that they couldn&#8217;t do that since they detected files for outdated software, Joomla 1.5.25, on the website (despite the website using Joomla 2.5). At that point we were contacted about finding and removing\u00a0those files and in reply we told them they should go back to SiteLock since that should be something SiteLock\u00a0should do for them. In response they let us know that SiteLock told them they &#8220;don&#8217;t have the capability to remove or update outdated CMS content&#8221;. That is rather troubling\u00a0since getting the software running on a hacked website up to date is a basic part of a hack cleanup, as it is a <a href=\"http:\/\/www.whitefirdesign.com\/resources\/secure-your-website-from-hackers.html\">basic part of making a website secure<\/a>. In this type of situation, where a proper hack cleanup hasn&#8217;t been done we would only get involved if we are going to do a full cleanup, since we don&#8217;t want to be involved in leaving a website insecure, so we suggested that since they were only interested in having\u00a0the Joomla 1.5.25 files removed they could probably find someone else to do it for less than having a full cleanup done.<\/p>\n<p>The idea that a company\u00a0is cleaning up hacked websites without doing such basic part of the work is pretty troubling, so we wanted to double check that it wasn&#8217;t just that they were refusing to remove some out of date files and instead that they don&#8217;t actually update the software running on the website when doing a cleanup. Since the website is running Joomla it is easy to check if the website is up to date with our <a href=\"https:\/\/chrome.google.com\/webstore\/detail\/joomla-version-check\/nfbncfldblphagigkamkhnjnhjkdlnii\">Joomla Version Check extension for Chrome.<\/a> After the website came back online we checked and found that\u00a0website was running an outdated version:<\/p>\n<p><a href=\"https:\/\/chrome.google.com\/webstore\/detail\/joomla-version-check\/nfbncfldblphagigkamkhnjnhjkdlnii\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-2162\" src=\"https:\/\/www.whitefirdesign.com\/blog\/wp-content\/uploads\/2014\/09\/joomla-version-check.png\" alt=\"Joomla version 2.5.22\" width=\"500\" height=\"150\" srcset=\"https:\/\/www.whitefirdesign.com\/blog\/wp-content\/uploads\/2014\/09\/joomla-version-check.png 500w, https:\/\/www.whitefirdesign.com\/blog\/wp-content\/uploads\/2014\/09\/joomla-version-check-300x90.png 300w\" sizes=\"auto, (max-width: 500px) 85vw, 500px\" \/><\/a><\/p>\n<p>That confirms that SiteLock isn&#8217;t doing some of the basic work of the hack cleanup, which is pretty good reason to not to use them for that or any other service they provide since they don&#8217;t appear to actually be interested in properly securing websites.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A few weeks ago we wrote about the web security company SiteLock failing to do a basic security check,\u00a0checking to\u00a0make sure software running on a website was\u00a0up to date when labeling before labeling the website as secure. Based on that we weren&#8217;t surprised at our next interaction with their work. A couple of days ago\u00a0we &hellip; <a href=\"https:\/\/www.whitefirdesign.com\/blog\/2014\/09\/25\/sitelock-doesnt-do-basic-part-of-proper-hack-cleanup\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;SiteLock Doesn&#8217;t Do Basic Part of Proper Hack Cleanup&#8221;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[25,35],"tags":[39],"class_list":["post-2161","post","type-post","status-publish","format-standard","hentry","category-bad-security","category-outdated-web-software","tag-sitelock"],"_links":{"self":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts\/2161","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/comments?post=2161"}],"version-history":[{"count":2,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts\/2161\/revisions"}],"predecessor-version":[{"id":2164,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/posts\/2161\/revisions\/2164"}],"wp:attachment":[{"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/media?parent=2161"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/categories?post=2161"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.whitefirdesign.com\/blog\/wp-json\/wp\/v2\/tags?post=2161"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}