[CKAN-Security] https://ckan.org/ is redirected to a suspicious website(may be only in Japan)

Adrià Mercader adria.mercader at okfn.org
Fri Sep 28 12:12:54 UTC 2018


Hi Teppei,

Thank you very much for reporting this.
We are aware of this issue and unfortunately you are right, the wordpress
site hosting ckan.org has been compromised and the sysadmin team is trying
to remove the hack.
We'll try to get it repaired as soon as possible

Sorry about that.

Adrià

On Fri, 28 Sep 2018 at 14:10, ISAYAMA Teppei <tisayama at elf.coara.or.jp>
wrote:

> Hi, CKAN Security team
>
> * This report is a problem of CKAN's Website (ckan.org). And NOT related
> to the CKAN program.
>
> I am Teppei. I am using CKAN in a Japanese small municipality. I found a
> problem with CKAN’s Website.
>
> When opening https://ckan.org from Japan, it will be redirected to the
> following suspicious website:
>
> - http://www.clma520.co/
> - http://www.dokei333.org/brandcopy-l-10.html
>
> These are thought to be fraudulent sites or EC sites of illegal copy
> products. Unless you intentionally make these settings, I think that the
> CKAN website has been partially tampered with.
> It may be a problem with Wordpress, and there may be problems with
> Cloudflare. I do not know the details.
>
> Best regards,
>
> Teppei
> _______________________________________________
> CKAN security
> https://lists.okfn.org/mailman/listinfo/security
> https://lists.okfn.org/mailman/options/security/adria.mercader%40okfn.org
>
> Repo: https://github.com/ckan/ckan-security
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.okfn.org/mailman/private/security/attachments/20180928/285bade7/attachment-0001.html>


More information about the Security mailing list