Recent activity
Subscribe to this feed
Jon replied on November 04, 2009 21:38 to the question "FTP pipe not working" in Pixelpipe:
Hi,
I had no problem setting this up, but big problems after I did!
I have an ftp server that I only use for sending large images to other companies, like our printer. I don't have any web production on that server, thank god. I made a new ftp account and directory for pixel pipe to test out this service.
I posted a couple, and pixel pipe did a great job as usual updating my social networks and even sent the file to the ftp server. YAY!!! At this point I was thinking I would actually put in my product server's ftp user/pass and give pixelpipe access to my website ftp. DON'T DO THIS!!!
A couple days later I went to look at the pictures on the server and my pc's virus software stopped me, finding a JS/Obfuscated virus on the page. All of my files had been edited, with the first line of the file having a php eval line called, with a huge nasty string as the argument. So my server got all screwed up, I lost the images that were up there, and I possibly infected some printing companies if they were still using the server to get my files. I had a backup folder, so I reloaded the original stuff, and got it working. A couple days later, same problem. I again reloaded the original stuff because I needed the printers to pick up the files, but this time I deleted the ftp account. And now my server is fine, for a couple of weeks.
In conclusion, giving out the ftp login info to pixel pipe resulted in me getting hacked on that server, a problem that persisted until I deleted that ftp account. I doubt that pixel pipe did this maliciously, but they have a security problem that ended up compromising my data.
If you do plan to use pixelpipe ftp, do it in a safe place that won't affect your site and use a new ftp account that you can delete when things start getting screwed up.
I really love pixelpipe, great service! Hopefully they hear about this and fix the issue, but until they do I won't be using the ftp feature, and am becoming worried about my other logins.
Loading Profile...
