One of my client's websites was hacked over the weekend. Apparently there is/was an exploit in a Joomla add-in called JCE Editor. The hacker used this exploit to drop a couple of php files into my client's public_html directory. Those files then apparently generated gobs of spam that was routed through exim on the same server using the hacked account's credentials.
So let's say the account's DA login is something like "Acmecorp". Is there a way to configure exim (or better yet, is there a setting in the in the DA Control Panel) so that Acmecorp is blocked from sending email via exim on localhost?
So let's say the account's DA login is something like "Acmecorp". Is there a way to configure exim (or better yet, is there a setting in the in the DA Control Panel) so that Acmecorp is blocked from sending email via exim on localhost?