- Job title
- Social media manager
- Sector
- E-commerce
- Organization type
- 120-person company
- Joined
- Feb 2022
- Message
- 14
Doki · Log management setup · 2025
Client said site speed dropped, so I started checking. Right-clicking in browser, inspecting element — there's some weird JavaScript at the bottom of the page. I delete it, refresh, it comes back. I go directly to the file, open via FTP — it's not there. So it's being injected dynamically.
I open PHP files in a text editor and look for the scripts I'm searching for, I see an orange line in some — starts with @ sign, isn't that an obfuscation technique? I delete it, it comes back again. Doesn't feel fair, I'm losing control to my computer.
Did they get in via SQL injection into the database? Or some other way? I want to understand what's going on here before complaining to the hosting company.