it appears there is a <script src="http://xinthesidersdown.com"> being injected into a clients server and I’ve checked the logs to see where and how it has been injected. Unfortunately when i search for xinthesidersdown to see if it was injected, I don’t see it showing any results. Does anyone have any suggestions to find out how the invader is getting in and injecting this code into the database? Thank you.
it appears there is a <script src=http://xinthesidersdown.com> being injected into a clients server and
Share
Look for the word “CAST” in your log entries…