# Website compromise

**URL:** <https://cog.discourse.group/t/website-compromise/1012>\
**Category:** george\
**Created:** [June 26, 2015, 3:27am UTC](https://cog.discourse.group/t/website-compromise/1012 "2015-06-26T03:27:25Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![ClockWorkXon](https://sea1.discourse-cdn.com/flex001/user_avatar/cog.discourse.group/clockworkxon/32/593_2.png) [@ClockWorkXon](https://cog.discourse.group/u/ClockWorkXon)\
**Post date:** [June 26, 2015, 3:27am UTC](https://cog.discourse.group/t/website-compromise/1012/1 "2015-06-26T03:27:25Z")

</div>

So, Aaron Williams’ sites get compromised by an adware redirect embedded in the pages, which somehow slips past everyone’s adblocker.

Okay, so nothing new, right? I mean we all remember the travesty that was Keenspot, with all sort of surprises embedded into the ad banners.

But get this: they finally tracked it down to the captcha they were using to prevent spamming of the comments section. They replaced it with a different captcha and things seem to be working again.

I’m torn between wishing the idiot that hacked the captcha a horrible, lingering death, and applauding the sheer brilliance (and chutzpah). Who the hell is going to check the captcha code?

---

<div class="post-metadata">

**Author:** ![Ook](https://sea1.discourse-cdn.com/flex001/user_avatar/cog.discourse.group/ook/32/72_2.png) [@Ook](https://cog.discourse.group/u/Ook)\
**Post date:** [June 30, 2015, 10:21am UTC](https://cog.discourse.group/t/website-compromise/1012/2 "2015-06-30T10:21:15Z")

</div>

Gives new meaning to “think outside the box”…
