Compilation of resources for remediating / dealing with the Drupal 7.x SQL injection vulnerability
Note: I am not the one who came up with the name drupalgeddon and I don't intend to infringe on that namespace. I just needed to quickly come up with a good name that people would recognize. There is a project on drupal that came up with that name. My apologies to the maintainers and all the contributors. I am happy to create a new repo if they take issue with this name.
I will organize things better later. Here is a starting list of resources:
- Security advisory
- FAQ on Security advisory
- Public Service Announcement
- What the company who discovered the vulnerability has to say
- Pantheon's Observations
- Acquia's Response
- Your site got hacked
- Flowchart of steps to follow
- Modules unraveled video
- Zion Security Blog post
- Hacked module
- Diff module
- Drupalgeddon project
- Site Audit project
- Befused blog post
- 10 commands that could help you to survive Drupageddon