The other day the owner of one of the websites I designed, Love and Scandal Tea Company, sent me an email that almost made me have a heart attack!
Looks like my beautiful website has been hacked. Any advice about how to fix that?
She sounded calm enough but I was freaking out. That has never happened to any website I have designed before. I went to her website and this is what I saw:
My heart stopped. I was envisioning a hostage rescue mission to recover the missing files very similar to Mission Impossible. Fixing the situation wasn’t as bad as I thought it was going to be. A few calls to the web host and a few moves of files that thankfully I had backed up, fixed the situation. In a day or two, Love & Scandal Tea Company’s website was back to normal.
It turns out the website is created in WordPress. The version of WordPress and a few plug ins hadn’t been updated. The hackers got access to the site thru one of the plug ins.
Moral of the story: update all your plug ins and WordPress versions often. Whenever a new version is released, the latest security updates are installed and nightmares like this are less likely to happen.