Hi Guys and UNACMS Team
I hope you’re all doing well and thank you for the recent Security Advisory - Critical Vulnerability update. I truly appreciate the transparency and quick response from the UNA team in keeping the community secure.
While reviewing server activity, I noticed suspicious behavior consistent with webshell probing — specifically attempts targeting various PHP scripts that align with the structure of a known backdoor: https://github.com/Caesarovich/rome-webshell. The attacker appeared to test several likely file paths, many resulting in 404s.
This left me wondering:
- Was the recent advisory in any way related to or exploited using this tool (or similar webshells)?
- Would it be helpful for the UNA team if I reported the related GitHub repository as potentially harmful (given its distribution of an obfuscated, uploadable PHP webshell)?
I only ask to help in any way I can — both as a concerned site operator and supporter of your open-source mission. If there's a preferred process for threat reporting or sharing logs, I'm happy to follow it.
Thanks again for your tireless work. Looking forward to your insights!
Kind egards,
Chris
Forgive me, guys, for spelling it out this way...
Long story short, I purchased the Clubs modules from @Jerome Mingo and just shortly thereafter, WhatsApp him because the module is outdated, and so to speak, I should have known better.
This issue with him and his well-being coming to a point of salvation leads to nowhere or nothing, while we are always tempted by what his products offer to our niche or business model.
I know unacms management has no business ties to vendors and customer/client issues, but please...
What are the options...
@Jerome Mingo is online and I am trying hard to get his attentions. Why?
- 313
Hi everyone...
I am considering the School module product from @Jerome Mingo and saddens me to ask openly but once again has no choice, since he does not answer private messages.
I am also concerned about him and before I spill the beans, maybe someone can let me know what the hell has happened to him and has he recovered from the natural disaster.
Does anyone make use of the school module and would you recommend it to me
Regards
- 384
Hey everyone,
I just want to reach out to all of you who I’ve been connecting with on the forum. Over time, many of you have become close to me, and we’ve shared some meaningful exchanges and ideas.
Lately, I’ve been caught up with a lot and haven’t been able to keep up the way I usually do. I know some of you are still waiting on replies or follow-ups—and I’m sorry for going quiet without notice.
Please know it’s not intentional, and I appreciate your patience. I’ll be back soon to pick things up where we left off. Thanks for understanding.
14.0.0 - RC5 Upgrade Problems - Tip
Myself and a very dear friends of mine, just so happen to fall back on a backup for it was our only hope after a catastrophe .
Should you find find yourself in a production environment, you better act quick before to much new data becomes captured.
The solution....
- Announce to your users that urgent maintenance need to be done
- Try and make a backup yourself for both database and public_html/ file structure (For your own safety)
- Contact your hosting company and submit a request to restore the previous version backup
- Change from automatic updates to manual, you know the drill
This will save you all the hassles, pain and stress.
On the other hand, continue 14-RC5 on a development server so that we can give feedback to our guys to begin their patches and fixes... for it is very important as the final stage of 14-RC5
Hey Guys,
Please reconfirm that reactions for multiple emojis on the like icon only works on vps or dedicated server, not on share hosting.
See last entry on below thread.
- 1282
We might love UNACMS with all our hearts and often condemn Facebook, but React was developed by Facebook and release in 2013.
React Native was created by Meta in 2015, also known as Facebook.
UNACMS in my view changed my perspective in the world of metaverse and the way how I perceive or versioned CMS on a whole new level, but we got to give credit to those who deserve it, but also how we should collaborate efforts for the greater benefit instead of competing.