![]() |
| ||||||||
|
|||||||
![]() |
|
|
LinkBack | Thread Tools |
|
|
#1 |
|
Senior Warrior Member
War Room Member
Join Date: Jan 2006
Location: Lahore, Pakistan.
Posts: 2,944
Thanks: 204
Thanked 133 Times in 49 Posts
|
Hi,
If you have Cpanel at your hosting..you are lucky ![]() I mean how easy it is to just do few clicks and Wordpress is installed, same case is with, Joomla, PhpBB, OSticket, Zen Cart and so much stuff... As this is so easy to install... Myself included , I have seen many people do many test installs on the server like Joomla 1.5 in a sub-folder of test purpose, and phpbb forum at another sub-folder and simpleMachineForum forum at another.... Objective was just to test the things, to pick and choose b/w different scripts... It was great until this week...a BIG danger-hole was discovered.... You know the scripts we installed, and never used are not going to upgrade automatically...so they are there unattended! Big target for hacking...this is what happened with a server of our client, they were hacked through the old Zen cart install at their server which he did years ago just to test !!! So this is a reminder that you please make sure their is no unattended install of any script at your server which is not updated to current version which can give a backdoor to hackers to hack your website. It is very simple to check what you have installed at your server thought Cpanel so far.. and from the list check what is outdated and not needed anymore...simply uninstall that.. to check the list of current Cpanel fantastico installs list: Go to your Cpanel > Fantastico > in the right-sidebar-bottom is a link : " Installations overview" . Click that and you will be presented with a whole list of installations... Now please set aside some time today or tomorrow and delete all the unused stuff, yeah clear the old unused digital junk from your server for another step forward regarding better security. Best Regards, Mohsin PS. Also do not forget to take your Files and Databases backup on daily/weekly basis depending the nature of the website. Really It was not great to know that whole site has been damaged screwing the all marketing and SEO efforts ... Do you care your business? Then please take some time and set a schedule for backup and follow that religiously. |
|
Free Instant Traffic Made Easy - FiT Report coming soon! http://www.FreeInstantTraffic.com
My Personal Blog http://www.MohsinRasool.com |
|
|
|
|
| The Following 8 Users Say Thank You to Mohsin Rasool For This Useful Post: |
|
|
#2 |
|
Warrior Member
Join Date: Oct 2009
Posts: 12
Thanks: 0
Thanked 1 Time in 1 Post
|
Really useful..that's why i don't like to use for every little need plugins or any other tools that might be hacked easily because of forgetting upgrading
Thank you for sharing. |
|
|
|
|
|
|
| The Following User Says Thank You to LoraGi For This Useful Post: |
|
|
#3 |
|
PhpMembersScript.com
War Room Member
Join Date: Aug 2008
Location: South Carolina, USA
Posts: 4,907
Blog Entries: 2
Thanks: 505
Thanked 832 Times in 539 Posts
|
Upgrading does not stop hacking, it's open source code and since it is given to everybody that wants to download (including hackers) no open source code is safe. No matter what version you are running. Only way to make sure it is secure is to do it yourself my modifying the coding.
James |
|
Article Directory/Auto Syndication Coming | Upto 1800+ Authority Bookmarks WSO - Starts $8.77
Christmas PLR Pack - Articles, Templates, Graphics, Resources and More $8.97 MRR/RR Block SideWiki | Membership Script | WordPress Security | Facebook App Coming Soon |
|
|
|
|
|
|
#4 | |
|
Active Warrior
Join Date: Oct 2009
Posts: 30
Thanks: 1
Thanked 2 Times in 2 Posts
|
Quote:
| |
|
|
|
|
|
#5 |
|
Senior Warrior Member
War Room Member
Join Date: Sep 2004
Location: Gulf Coast, USA.
Posts: 11,314
Thanks: 296
Thanked 737 Times in 451 Posts
|
Good reminder - I guess I have a good habit for a change as I uninstall any tests before installing a new one.
If I've been playing around in cpanel trying out some things I delete the public_html folder and make a new one. kay |
|
|
|
|
|
|
| The Following User Says Thank You to Kay King For This Useful Post: |
|
|
#6 | |
|
PhpMembersScript.com
War Room Member
Join Date: Aug 2008
Location: South Carolina, USA
Posts: 4,907
Blog Entries: 2
Thanks: 505
Thanked 832 Times in 539 Posts
|
Quote:
James | |
|
Article Directory/Auto Syndication Coming | Upto 1800+ Authority Bookmarks WSO - Starts $8.77
Christmas PLR Pack - Articles, Templates, Graphics, Resources and More $8.97 MRR/RR Block SideWiki | Membership Script | WordPress Security | Facebook App Coming Soon |
||
|
|
|
|
|
#7 |
|
Jill Carpenter
War Room Member
Join Date: Feb 2008
Location: USA, typically hovering around the North East Coast
Posts: 1,661
Blog Entries: 18
Thanks: 281
Thanked 345 Times in 212 Posts
|
Yes, I'm in the process of hauling out a lot of tests, etc. Unlimited plans have a limit. I recently discovered I can have 200,000 files, but at 50,000 they will start to keep an eye on you and I am past that. A lot of it is themes, joomla and wp installs, and some other tests which really are just wasting space.
Even with the cpanel it can all start to look a bit cluttered. |
|
|
|
|
|
|
|
|
#8 |
|
Glad I Got Canned
Join Date: Sep 2008
Location: NY
Posts: 508
Thanks: 260
Thanked 53 Times in 39 Posts
|
This is great advice. Thanks for the reminder. What was the nature of the damage to your client's sites? Just cosmetic or were their revenues being stolen?
|
|
|
|
|
|
|
|
|
#9 | |
|
Glad I Got Canned
Join Date: Sep 2008
Location: NY
Posts: 508
Thanks: 260
Thanked 53 Times in 39 Posts
|
Quote:
| |
|
|
||
|
|
|
|
|
#10 | |
|
PhpMembersScript.com
War Room Member
Join Date: Aug 2008
Location: South Carolina, USA
Posts: 4,907
Blog Entries: 2
Thanks: 505
Thanked 832 Times in 539 Posts
|
Quote:
Why do you think so many people go and get custom built sites, because they do not want others knowing how their scripts work thats why... Nothing is 100% secure but I rather have a lock on my door vs having my door wide open for all to enter. James | |
|
Article Directory/Auto Syndication Coming | Upto 1800+ Authority Bookmarks WSO - Starts $8.77
Christmas PLR Pack - Articles, Templates, Graphics, Resources and More $8.97 MRR/RR Block SideWiki | Membership Script | WordPress Security | Facebook App Coming Soon |
||
|
|
|
|
|
#11 | |
|
Senior Warrior Member
War Room Member
Join Date: Jan 2006
Location: Lahore, Pakistan.
Posts: 2,944
Thanks: 204
Thanked 133 Times in 49 Posts
|
Quote:
No, no direct financial fraud...but financial were affected due to affected SEO... As every page was linked to bad neighborhood..a wide spread network of linking victim sites ultimately directing traffic and SEO ranks to their spam sites... Any site like this is badly affected in SERPs and it hurts SEO, traffic, and ultimately sales. Mohsin | |
|
Free Instant Traffic Made Easy - FiT Report coming soon! http://www.FreeInstantTraffic.com
My Personal Blog http://www.MohsinRasool.com |
||
|
|
|
|
|
#12 |
|
Advanced Warrior
War Room Member
Join Date: Aug 2006
Location: K'town, Germany
Posts: 856
Thanks: 39
Thanked 40 Times in 33 Posts
|
That's a good reminder to look at my servers and simply delete all the scripts that aren't needed anymore. There's just too much old stuff...
![]() Thanks Ralf |
|
GET BACKLINKS at Ralf Skirr's Internet Business Blog HINT: it's no-follow free for quality comments.
|
|
|
|
|
| The Following User Says Thank You to Ralf Skirr For This Useful Post: |
|
|
#13 | |
|
Senior Warrior Member
War Room Member
Join Date: Jan 2006
Location: Lahore, Pakistan.
Posts: 2,944
Thanks: 204
Thanked 133 Times in 49 Posts
|
Quote:
Why you want to start the debate on Open-Source vs Closed-Source, on every thread talking about any Open Source package. It is fact that thousands of Warriors use them daily for their businesses and It is necessary for them to know what they can do in this regard which helps their business in anyway. This thread was not meant to discuss the Merits and De-Merits of Open source Vs proprietary code... Everything has its own pros and cons. If you really want to educate the Warriors about the pros and cons of both, i suggest you start a thread with the title: Dis Advantages of Open Source and How one can Fix them... and let all the community members discuss there... No one can deny the reality that Open Source scripts are the most used by most of the IMers (the members of this community), so we just cannot stop them using open source and compel them to opt for some paid programmer! Instead we should help and encourage them to benefit from open source, save money and time and use the best of the best code! Yes you can help them secure their open source by giving the tips and code hacks you suggest but do not ask everyone to go for some programmer for a fee.. Peace, Mohsin | |
|
Free Instant Traffic Made Easy - FiT Report coming soon! http://www.FreeInstantTraffic.com
My Personal Blog http://www.MohsinRasool.com |
||
|
|
|
| The Following User Says Thank You to Mohsin Rasool For This Useful Post: |
|
|
#14 |
|
PhpMembersScript.com
War Room Member
Join Date: Aug 2008
Location: South Carolina, USA
Posts: 4,907
Blog Entries: 2
Thanks: 505
Thanked 832 Times in 539 Posts
|
I started no debate, I made a factual statement - Upgrading to the latest version of something does not make you secured.
As one warior told me before "Let them be hacked and when they are then maybe they will realize they should have paid for a real solution instead of being cheap". James |
|
Article Directory/Auto Syndication Coming | Upto 1800+ Authority Bookmarks WSO - Starts $8.77
Christmas PLR Pack - Articles, Templates, Graphics, Resources and More $8.97 MRR/RR Block SideWiki | Membership Script | WordPress Security | Facebook App Coming Soon |
|
|
|
|
![]() |
|
| Tags |
| care, cpanel, digital, junk, users |
| Thread Tools | |
|
|
![]() |