Dec 01 2009

Deliver Your Web Site From Evil (Part 1)

1. Backup your website on the server.

If you have more than one web site is important, putting them on a different web host. Do not rely on your web host for backups.

Found two different hosts that allow SSH access. Get an account with each. FTP backup from one site to another server directly, and vice versa. Download a copy to a computer at home, too.

2. Place the file ‘index.html’ in every major or important directories in your website, if you do not already have one.

This stops people trying to peek into other files in the same directory.

3. Do not use the old version of FormMail. Do not use the new script is released, unless you know how to check the security hole.

They have to filter the input such as \ # or>. Searching on the term ‘Script Name bug’ or ’script name of security’.

4. Change the name of the script email you download before installing them.

Why are spammers give clues about what your script, and what can be done?

5. Do not give a file or directory name is clear, such as ‘pass’, ‘email’, ‘order’ and so on.

Once again, why make it easier snoopers?

Comments are closed.

Alibi3col theme by Themocracy