Wednesday, September 26, 2012
PHPMyAdmin Distributed By One Mirror Site With A Backdoor Installed
To any web developer who recently set up a new server or upgraded phpMyAdmin on an existing server:
If you downloaded phpMyAdmin-220.127.116.11-all-languages.zip from SourceForge between Sept 22, 2012 and Sept 25, 2012 you should disable it on any serrver running it and re-download it. One official mirror site based in Korea served a copy of this file that had been tampered with and had a backdoor installed.
Read more here: http://sourceforge.net/blog/phpmyadmin-back-door