Quantcast
Channel: Young Internet Master
Viewing all articles
Browse latest Browse all 334

Tahukah Anda Theme Worpdress Anda Vulnerability Jika Mempunyai Timthumb (mudah Di Hack)

$
0
0
wordpress theme mudah dihack



pada masa sekarang semakin ramai pengguna internet yang berniat jahat untuk mengodam laman web yang menggunakan wordpress kerana ia sungguh mudah untuk dihack jika anda menggunakan theme wordpress yang percuma. jika anda tidak mengambil berat tentang keselamatan wordpress anda, sudah semestinya anda akan menjadi mangsa seterusnya oleh hackers.


sebagai permulaan, saya akan terangkan sedikit bagaimana hacker melakukan.

hackers akan menyerang wordpress yang Vulnerability. jadi apakah vulnerability? ia adalah bermaksud mudah diserang ataupun terdedah kepada bahaya dari hackers. tiada dalam bahasa malaysia yang secara spesifiknya, tetapi itulah maksudnya jika hackers tahu bahawa laman web anda adalah vulnerability.

jadi, untuk pengetahuan anda semua, laman web wordpress yang percuma contohnya jika anda download dari wordpress itu sendiri, kebanyakannya theme percuma tersebut ada mempunyai Timthumb. 

apakah itu timthumb? timthumb adalah sejenis script yang berfungsi untuk membesarkan gambar di wordpress anda yang dicipta oleh developer untuk memudahkan pelawat anda melihat gambar di laman web anda.

jadi, jika anda menggunakan mana-mana themes wordpress yang percuma, sila periksa script tersebut jika ada Timthumb. saya akan senaraikan beberapa themes wordpress yang percuma yang mempunyai timthumb.

8q/scripts/timthumb.php
aerial/lib/timthumb.php
aesthete/timthumb.php
albizia/includes/timthumb.php
amphion-lite/script/timthumb.php
aqua-blue/includes/timthumb.php
aranovo/scripts/timthumb.php
arras/library/timthumb.php
arras-theme/library/timthumb.php
arthemix-bronze/scripts/timthumb.php
arthemix-green/scripts/timthumb.php
artisan/includes/timthumb.php
a-simple-business-theme/scripts/timthumb.php
a-supercms/timthumb.php
aureola/scripts/timthumb.php
aurorae/timthumb.php
autofashion/thumb.php
automotive-blog-theme/Quick Cash Auto/timthumb.php
automotive-blog-theme/timthumb.php
bikes/thumb.php
black_eve/timthumb.php
blex/scripts/timthumb.php
bloggnorge-a1/scripts/timthumb.php
blogified/timthumb.php
blue-corporate-hyve-theme/timthumb.php
bluemag/library/timthumb.php
blue-news/scripts/timthumb.php
bombax/includes/timthumb.php
breakingnewz/timthumb.php
brightsky/scripts/timthumb.php
brochure-melbourne/includes/timthumb.php
business-turnkey/assets/js/timthumb.php
calotropis/includes/timthumb.php
coffee-lite/thumb.php
comet/scripts/timthumb.php
conceditor-wp-strict/scripts/timthumb.php
constructor/layouts/thumb.php
constructor/libs/timthumb.php
constructor/timthumb.php
coverht-wp/scripts/timthumb.php
cover-wp/scripts/timthumb.php
dark-dream-media/timthumb.php
deep-blue/timthumb.php
delicate/thumb.php
diamond-ray/thumb.php
dieselclothings/thumb.php
digitalblue/thumb.php
dimenzion/timthumb.php
epione/script/timthumb.php
evr-green/scripts/timthumb.php
famous/megaframe/megapanel/inc/upload.php
famous/timthumb.php
fashion-style/thumb.php
featuring/timthumb.php
fliphoto/timthumb.php
flix/timthumb.php
fordreporter/scripts/thumb.php
freeside/thumb.php
fresh-blu/scripts/timthumb.php
go-green/modules/timthumb.php
granite-lite/scripts/timthumb.php
greydove/timthumb.php
greyzed/functions/efrog/lib/timthumb.php
gunungkidul/thumb.php
heartspotting-beta/thumb.php
heli-1-wordpress-theme/images/timthumb.php
ideatheme/timthumb.php
impressio/timthumb/timthumb.php
introvert/thumb.php
inuit-types/thumb.php
isotherm-news/thumb.php
iwana-v10/timthumb.php
jambo/thumb.php
jcblackone/thumb.php
kratalistic/thumb.php
life-style-free/thumb.php
likehacker/timthumb.php
litepress/scripts/timthumb.php
loganpress-premium-theme-1/thumb.php
magazine-basic/thumb.php
magup/timthumb.php
make-money-online-theme-1/scripts/timthumb.php
make-money-online-theme-2/scripts/timthumb.php
make-money-online-theme-3/scripts/timthumb.php
make-money-online-theme-4/scripts/timthumb.php
make-money-online-theme/scripts/timthumb.php
meintest/layouts/thumb.php
mobilephonecomparision/thumb.php
moi-magazine/timthumb.php
my-heli/images/timthumb.php
mymag/timthumb.php
mystique/extensions/auto-thumb/timthumb.php
nash/theme-assets/php/timthumb.php
neofresh/timthumb.php
neo_wdl/includes/extensions/thumb.php
new-green-natural-living-ngnl/scripts/timthumb.php
newspress/thumb.php
pearlie/scripts/timthumb.php
pico/scripts/timthumb.php
postage-sydney/includes/timthumb.php
premium-violet/thumb.php
probluezine/timthumb.php
pronto/cjl/pronto/uploadify/check.php
pronto/cjl/pronto/uploadify/uploadify.php
r755/thumb.php
regal/timthumb.php
shaan/timthumb.php
shadow-block/thumb.php
shadow/timthumb.php
simple-but-great/timthumb.php
simplenews_premium/scripts/timthumb.php
simple-red-theme/timthumb.php
simple-tabloid/thumb.php
simplewhite/timthumb.php
slidette/timThumb/timthumb.php
snowblind_colbert/thumb.php
snowblind/thumb.php
spotlight/timthumb.php
squeezepage/timthumb.php
standout/thumb.php
suffusion/timthumb.php
swift/includes/thumb.php
swift/includes/timthumb.php
swift/timthumb.php
techozoic-fluid/options/thumb.php
the_dark_os/tools/timthumb.php
themetiger-fashion/thumb.php
theory/thumb.php
the-theme/core/libs/thumbnails/thumb.php
thrillingtheme/thumb.php
tm-theme/js/timthumb.php
totallyred/scripts/timthumb.php
travelogue-theme/scripts/timthumb.php
true-blue-theme/timthumb.php
ttnews-theme/timthumb.php
twittplus/scripts/timthumb.php
typographywp/timthumb.php
ugly/timthumb.php
unity/timthumb.php
versitility/timthumb.php
vibefolio-teaser-10/scripts/timthumb.php
vina/thumb.php
whitemag/script/thumb.php
wpapi/thumb.php
wpbus-d4/includes/timthumb.php
wp-creativix/scripts/timthumb.php
wp-newsmagazine/scripts/timthumb.php
wp-perfect/js/timthumb.php
wp-premium-orange/timthumb.php
xiando-one/thumb.php
zcool-like/timthumb.php


Theme diatas adalah diambil dari wordpress sendiri yang menyediakan themes percuma kepada anda. jika anda merasa ada salah satu php diatas, sila bertindak segera dengan menukar ke themes yang lain kerana wordpress anda adalah vulnerability (mudah terdedah) dan pasti hackers yang dengan sedikit pengetahuan dapat menawan laman web anda dalam masa yang singkat.

senarai diatas belum cukup lagi kerana terdapat banyak lagi theme yang mempunyai timthumb tersebut. jika anda menggunakan wordpress yang premium, anda boleh tanya designer anda untuk pastikan yang script theme anda tidak mempunyai timthumb.

bagaimana cara untuk mengetahui theme wordpress anda ada timthumb?
anda boleh gunakan plugin wordpress ini untuk memeriksa themes anda dan pastinya percuma.
timthumb-vulnerability-scanner

Viewing all articles
Browse latest Browse all 334