| ||||||||||||
![]() |
![]() |
| | LinkBack | Thread Tools | Search this Thread | Display Modes |
(#1)
|
| New Member Posts: 7 Join Date: Oct 2004 | Kayako being used as spam relay; how to stop? -
18-06-2007, 01:48 PM
Hi -- I think my v3.00.32 installation of eSupport has some form of open hole (in Kayako, I presume) that has put my server into service a relay server in a spam relay network. (A bad thing, obviously.) I was looking into why email had stopped (unrelated to Kayako) on my server, and found a message in the outbound mailqueue that appears as follows (note: I've modified the target email addresses to use "DestDomain" instead of @, and our host as "OurDomain", so the respective addresses don't get picked up by crawlers reading this forum.) Quote:
Background notes: - I have turned _off_ accepting inbound mail requests to create tickets, but have the autoresponder (in Kayako) sending back an advisory to that effect; - I will work on updating Kayako to 3.10.02 shortly, but I have no knowledge that would indicate that this problem will be addressed by 3.10.02. Anybody have any ideas what path that bad-botnets have found into my Kayako server that is permitting them to use Kayako as a relay host? | |
| | |
(#2)
|
| Operations Manager Posts: 5,119 Join Date: Jan 2006 Location: United Kingdom |
18-06-2007, 02:47 PM
Hi Chripy, You are running a very outdated version of SupportSuite which is susceptible to cross-site scripting exploits. It is likely an attack has included code that is used to spam e-mails from your server, using the sendmail() functions. I am sorry you have succumb to this. I strongly advise you keep your installation updated with the latest stable releases of SupportSuite. -------------------------------------------------------------------
|
| | |
(#3)
|
(#4)
|
| New Member Posts: 7 Join Date: Oct 2004 | UPDATE FAILED; site in trouble -
19-06-2007, 03:58 AM
Jamie -- I performed the update, but it failed. I'm experiencing the same error reported in this forum post here: ERROR: Could not insert all templates I have opened a support ticket since my system is functionally "down." Note: I'm using ionCube. |
| | |