Last Friday my blog was hacked by a hacker named “Cn_angel”. But luckily there wasn’t any serious damages to my blog. My blog is using the Bo-blog system. Last week a serious bug of this program was found, after a while a lot of Bo-blog users were hacked.
I updated my blog with debug files from the official website right after I found it was hacked. And wrote an entry about my blog was hacked in Chinese. However no long after, that hacker came again and changed that entry to a sentence "I am so sorry". Maybe she realised it’s not very appropriate to hack a person with NO technical knowledge like me. But I was confused with how can she still hack into my blog after I updated the latest debug programs. Finally I found out she had already save some Trojan programs in some roots.
I think this Cn_angel didn’t mean to attack my blog seriously, otherwise all my data would have been deleted. Also, she left her QQ number wanted make friend with me. I don’t think my blog will be seriously attacked by her again. But those left Trojan programs really make me uncomfortable to continue writing. Just like one day when you come back to your house, and you saw a note on the wall say "I just visited your house, nice!" Then of cause you are worried about that, so you add more securities. However the next day when you come back home, there is another note "Don’t worry, I won’t steal your stuff!"
I don’t have any PHP knowledge, I don’t know how to find out where those Trojan programs are located. So I backuped both my Chinese and English blogs, deleted all of them from the server, installed the latest version bo-blog and then recovered all the data. Now I think it would be safer to continue blogging.
Well, thanks to Cn_angel! I got a chance to exercise how to reinstall the whole system. But only for once, no more hacking please!