|
|
|
![]() |
|
|||||||
|
||||||||
![]() |
|
|
Thread Tools | Rate Thread | Display Modes |
|
|
|
#1
|
|||||
|
|||||
|
Website Hacking Problems
Our team (1726) has had a website for some time now, and just recently (sunday) I woke up, checked the website, and it had been hacked. At first it looked like just the index file had been hacked, but after looking around, I realized that several other files had been added or changed in different directories. I've tried deleting all the files I could find that were changed, but every time I reload our index file, it is only several hours before it is changed back. You can see what the hacked page looks like here:
http://www.project1726.org But PLEASE don't click on any links that may be on there. I wanted to know if anyone had experience in isolating and removing problems like this? We have continually contacted our hosting service, http://www.globat.com, but even though they delete the changed folders and files, the problem persists. Any help right now would be extremely appreciated! Thanks! -1726 webmaster Last edited by TheOtherGuy : 13-06-2007 at 23:48. |
|
#2
|
|||||
|
|||||
|
Re: Website Hacking Problems
Change your password?
EDIT: Appears like its just some guy looking to throw his name here and there. Nothing serious really, just some e-graffiti. Change your password and he'll take the path of least resistance (some other site). |
|
#3
|
|||
|
|||
|
Re: Website Hacking Problems
Changing the password was the first thing we did. We are also going to look into another hosting site.
|
|
#4
|
|||
|
|||
|
Re: Website Hacking Problems
Check your raw access logs to see if a scripted page is being exploited.
|
|
#5
|
|||||
|
|||||
|
Re: Website Hacking Problems
Quote:
![]() OP: Are there any scripts that use ftp? The host should also have a log of who logged into the ftp server and at what time. |
|
#6
|
|||
|
|||
|
Re: Website Hacking Problems
did you change ALL the paswords related to the account? Are you running any sort of a script or CMS or forum or something with a sercurity hole? But yeah, most likely this would be your host's problem. And if they can't prevent it, you should change hosts.
|
|
#7
|
|||
|
|||
|
Re: Website Hacking Problems
For now we are disabling all forums, blogs, picture uploading capacity, etc. We hope that this will clear up the problem (for now).
|
|
#8
|
|||
|
|||
|
Re: Website Hacking Problems
Oh well there you go. I bet you it was one of those scripts that had a security hole. Were they all current/updated?
|
|
#9
|
|||
|
|||
|
Re: Website Hacking Problems
Quote:
![]() |
|
#10
|
|||||
|
|||||
|
Re: Website Hacking Problems
Quote:
Check your access logs, and see if you can find anything there. Check the file/folder permissions of the root directory. If it's are listed as 777, this is a security problem. Change (chmod) them to 770 or 755. You can create subfolders with a chmod setting of 777, but only do so where your scripts actually need file creation/deletion/alteration permissions. If all you have in a directory is static HTML files that you alter via FTP, lock down the file permissions for that directory. If users can upload files through a script, make sure the script is doing proper checks of the file to verify the contents. Check PHPbb or your photo gallery websites for any plug-ins that provide extra security in this department. Check to make sure there aren't any additional user accounts with administrator privileges. If the hacker found his way into your website, he could have also gained access to your Control Panel, where he could have created a back-door FTP user account with a separate username and password. I'd suspect that there is some sort of backdoor entrance somewhere (perhaps one exploited by a security loophole in your scripts), especially since you said changing passwords didn't solve the problem. Check everything. FTP. Forums. etc. And last, but not least, make sure your passwords are secure. Don't pick obvious things. Use lots of 'weird' things like l0w3rcaS3 & uPpeRca5e letters, along with 5pEC!aL cHaR|\CT3r5. Make long passwords. Don't ever store your password anywhere except your head. |
|
#11
|
|||
|
|||
|
Re: Website Hacking Problems
Or in an encrypted file.
Since I make such long and random passwords as you are recomending myself, I can't ever remember all of them. I just remember the one password to an encrypted file where I store all my other passwords, and then copy and paste the other passwords from the file. If you go this route, make sure that you are using a good pasphrase for the encrypted file, and you trust the software that is encrypting your data. If anyone gets ahold of the file, your passwords would only be as secure as the password to the file and the encryption scheme. In case anyone is interested, I use gpg to encrypt my stuff. |
|
#12
|
|||||
|
|||||
|
Re: Website Hacking Problems
Quote:
![]() |
|
#13
|
||||
|
||||
|
Re: Website Hacking Problems
Quote:
[/offtopic] |
|
#14
|
|||||
|
|||||
|
Re: Website Hacking Problems
Quote:
![]() |
|
#15
|
|||||
|
|||||
|
Re: Website Hacking Problems
[Offtopic]Jimi Hendrix said "If a six truned into nine, I won't mind", but it appears the nine turned into a six. Wonder what he's say about that...
Anyway, the PI-O-Neers just love it...[/Offtopic] I just uploaded a white paper on Password Security, this will help people create (and remember!) very strong passwords for multiple sites. Enjoy. Don |
![]() |
| Thread Tools | |
| Display Modes | Rate This Thread |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| HELP! Website hosting problems. | Tottanka | Website Design/Showcase | 27 | 04-02-2007 22:28 |
| 263's Computer Hacking Competition | SeanCassidy | Chit-Chat | 31 | 29-09-2005 15:11 |
| Using non joystick controls with Operator Interface (Hacking Various Controllers) | Astronouth7303 | Control System | 58 | 02-02-2005 15:56 |
| Talk about the 'hacking' here. | Brandon Martus | Chit-Chat | 12 | 08-07-2003 15:53 |
| Hacking The Segway | MattK | Dean Kamen's Inventions | 16 | 31-07-2002 20:51 |