Hacked via /tmp perl scripts

It’s called framework ARI. It has nothing to do with the module called “recordings”. Also I linked to the wrong thread. You are indeed vulnerable to an exploit in framework and probably ARI at the same time

Here is the thread I meant to link to: Security Vulnerability Notice