Title: Hacking opprtunity
Last modified: September 2, 2016

---

# Hacking opprtunity

 *  [Vuk Stanković](https://wordpress.org/support/users/vuks89/)
 * (@vuks89)
 * [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/)
 * My wordpress site was hacked through this plugin.
    I have multiple backdoors 
   inserted in gallery. Otherwise, plugin works as expected

Viewing 6 replies - 1 through 6 (of 6 total)

 *  [esmi](https://wordpress.org/support/users/esmi/)
 * (@esmi)
 * [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/#post-7766942)
 * What concrete evidence do you have that this plugin was the vector for the hack?(
   And if you do have evidence, please don’t post details here).
 *  Thread Starter [Vuk Stanković](https://wordpress.org/support/users/vuks89/)
 * (@vuks89)
 * [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/#post-7766943)
 * I have scanned it with wp-scan tool and it told me that there is a security risk
   linked with plugin.
    After that I have downloaded everything connected with plugin
   to my computer and scanned it with antivirus. Result was 2 backdoor files inside
   gallery folders that I removed
 *  [esmi](https://wordpress.org/support/users/esmi/)
 * (@esmi)
 * [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/#post-7766944)
 * If this was whilst the plugin was on your site, then all it proves is that your
   site was hacked. It doesn’t prove that the plugin was the vector. Hackers can,
   and often do, change files all over the place – including plugin files – and 
   will usually leave backdoors in unobtrusive places like uploads folder or plugin
   sub-folders.
 * Based on what you have reported thus far, I would say that the plugin is innocent
   and that its files simply happened to be targeted by the hacker who had already
   gained access to your site.
 *  Plugin Contributor [photocrati](https://wordpress.org/support/users/photocrati/)
 * (@photocrati)
 * [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/#post-7766948)
 * [@esmi](https://wordpress.org/support/users/esmi/) – Thank you for your reply.
 * [@vuk](https://wordpress.org/support/users/vuk/) Stanković – Any details you 
   can provide to us from your scan, I can forward to our developers to look into.
   Please don’t post them here, please submit as a bug report here: [http://www.nextgen-gallery.com/report-bug/](http://www.nextgen-gallery.com/report-bug/).
   Your bug report will go directly to our developers. If there is anything we can
   do to help tighten up the plugin, we’re always looking for ways to improve the
   plugin where possible. Regarding security measures for your site to help prevent
   hacks in the future, I’d suggest looking into these plugins:
 * – [Bulletproof Security](http://wordpress.org/plugins/bulletproof-security/)
   –
   [WordPress Firewall 2](http://wordpress.org/plugins/wordpress-firewall-2/)
 * For more tips and suggestions, check out our article here on how to help secure
   your site: [http://www.photocrati.com/help-prevent-wordpress-site-breaking-hacked/](http://www.photocrati.com/help-prevent-wordpress-site-breaking-hacked/)
 * We don’t claim to be experts and can’t guarantee our suggested plugins will prevent
   all attacks and protect 100%. I personally have used them on my site and they
   do appear to work well in my experience. Hope this helps!
 * Best,
    –Becky
 *  Thread Starter [Vuk Stanković](https://wordpress.org/support/users/vuks89/)
 * (@vuks89)
 * [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/#post-7766949)
 * I didn’t save wp-scan output, but I did save backdoor file I have found in gallery
   folder.
    I’m not sure if it is of any help.
 *  Plugin Contributor [photocrati](https://wordpress.org/support/users/photocrati/)
 * (@photocrati)
 * [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/#post-7766950)
 * [@vuk](https://wordpress.org/support/users/vuk/) Stanković – Sure, send us the
   information (not the bad file 🙂 ) as a bug report (here: [http://www.nextgen-gallery.com/report-bug/](http://www.nextgen-gallery.com/report-bug/))
   and we’ll take a look. Any information you can recall from the scan will help
   us investigate. Thanks!

Viewing 6 replies - 1 through 6 (of 6 total)

The topic ‘Hacking opprtunity’ is closed to new replies.

 * ![](https://ps.w.org/nextgen-gallery/assets/icon-256x256.png?rev=2083961)
 * [Photo Gallery, Sliders, Proofing and Themes - NextGEN Gallery](https://wordpress.org/plugins/nextgen-gallery/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/nextgen-gallery/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/nextgen-gallery/)
 * [Active Topics](https://wordpress.org/support/plugin/nextgen-gallery/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/nextgen-gallery/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/nextgen-gallery/reviews/)

 * 6 replies
 * 3 participants
 * Last reply from: [photocrati](https://wordpress.org/support/users/photocrati/)
 * Last activity: [13 years ago](https://wordpress.org/support/topic/hacking-opprtunity/#post-7766950)