Malware Open Door Through Sp Page Builder - Question | JoomShaper

is live, now with multi-currency selling.

Malware Open Door Through Sp Page Builder

GL

Gregory Loucks

SP Page Builder 4 days ago

I was attaxked and lost all my stuff last year thsnkfully I jad a backup. Now I run a dedicated server I was attacked and lost my sires. My dedicatrd server has claude code buikt in he detected the door was sp page builder he quarantined got attacked again tonight and my sites were deleted. again claude backed them up and saw the door was sp page builder. what kind of a program are you selling? yiu lost a cistomer I want my money back and claude code also built me a verson of a page buikder and an easy store you guys sell. will never do business with you again. warning to others using sp page builder. and get your act right. will nlt be renewing my membership

Greg

0
4 Answers
Ziaul Kabir
Ziaul Kabir
Accepted Answer
Support Agent 4 days ago #233768

Hi Gregory,

We’re really sorry to hear about what happened to your websites. We completely understand how frustrating and concerning it must be to have your sites compromised and then experience another attack. We’re glad you had backups available to recover your sites.

We’d like to strongly recommend making sure you’re running the latest versions of our products:

  • We have addressed the security issues identified in previous versions, with fixes included in 6.6.2, 6.8.0, and 6.9.1. Please update to the latest version, SP Page Builder Pro 6.9.1, as soon as possible.
  • If you’re using a Helix Ultimate-based template, please also update the Helix Ultimate plugin to 2.2.10.

One important point: if a Joomla site has already been compromised, simply updating SP Page Builder may not be enough to secure the site. An attacker may have already placed a malicious file, backdoor, or other persistent code somewhere on the server. Updating the extensions will not automatically remove those files.

For an already compromised site, we recommend following our cleanup guide carefully:

How to clean an infected Joomla 4.x/5.x/6.x site

We genuinely appreciate you bringing this to our attention. We take security concerns very seriously, and we understand that protecting your websites and data is critical.

If you’re willing, please let us know the exact SP Page Builder version and Joomla version that were installed when the latest incident occurred.

We’d be happy to look into the situation further with you.

Best regards,

0
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 4 days ago #233777

Hi Gregory,

I guess you don't know, but almost all extensions developers (Joomla and WorPress) have hard time in last months / weeks. And most of them had to make security updates (that list is long). Also Joomla and Wordpress core was updated if we talk about security issues, so telling us "I never do business with you again" it means that you have to back to HTML sites to feel safe!

Alternatively, keep everything updated regularly and install a reliable firewall extension for peace of mind. Many of our users manage 50+ sites while relying on our tools and other extensions—so as you can see, it all comes down to proper preparation. I wrote honestly and didn't pull any punches, as we say, no offense.

-1
Goran
Goran
Accepted Answer
4 days ago #233788

I need to apologize for butting in this post like this but...

Paul, you also had exploitable codes all these years, so it is not that much helpfull and reasuring saying "Hey tools at detecting and exploting are getting better it is not our fault..." as those tools are available to you also.

Be better from the start and these situations will be less frequent, I have been patching my websites using yours and other products all the time per my needs and discoveries and it is normal, do not get me wrong. This is not even worse case I have seen. Luckly for me all those endpoints were shut down dead by me long time ago so no issues were enqountered.

"Firewalls" ....are just one piece of puzzle Paul not a complete solution.

Not pulling punches is good aproach and naturally no offense here Paul.

@Gregory Absolute security online does not exist, you also need to do better.

Cheers.

1
Paul Frankowski
Paul Frankowski
Accepted Answer
Senior Staff 4 days ago #233791

That's why, for example, also yesteday we published SPPB Security Update. Having Firewall is no good to have option, but MUST HAVE in those days. I know, but it's like extra guard. For example, some of my sites have two of them.

Absolute security online does not exist, you also need to do better.

I agree; government sites are also under attack. But nobody talks about laundry.

-1