♦ REFRESH to rotate MAAMAW'S CLICKY NOTES thru this space..... Timely Tips, Best of the Boards & More ♦ |
Be sure to visit the Current Message Board when you're finished here. We're very friendly, so don't be shy... just jump right in and post your question. Scams outnumber legitimate biz ops about a bzillion to one, so it's well worth your time. |
| View Thread | Return to Index | Read Prev Msg | Read Next Msg | |
---|
FIB - Scams 101 - Ye Olde Archives
Posted By: Tom Brownsword In Response To: Did it look like this? (Mr Bluto ^_^)
Thursday, 3 August 2006, at 3:12 p.m.
Based on what I've seen in the Real World (that's where we live), here are some of the more prominent reasons that a website can get hacked:
1. Website software vulnerabilities that are not patched.
2. Properly patched website software that is not properly configured.
3. Software running on the website that is not patched. A recent example is an individual that was running an old version of WordPress with known vulnerabilities. The hacker didn't deface the site -- they simply installed an IFRAME on each page which attempted to do all sorts of nasty things.
4. SQL injection. That's just a fancy term for allowing people to put whatever they like into a form on your website and your website doesn't check to ensure that it's valid input for that field.
5. Permissions. "777" is not a good thing for your scripts.
And that's just off the top of my head.
Also keep in mind that some hacks are done by trolling for web servers, then launching a huge package of exploit attempts against that web server just to see if one of them sticks. And your really bad problems are the ones you don't know about -- the ones where people don't deface your website; they take it over and use it for their own purposes (like sending spam or inserting spyware on your website visitors' computers).
Security is everybody's responsibility. And having said that, your web host should be your partner in solving security issues -- not your finger pointer. You made a good move when they pointed the finger at you (over a password, no less!).
Thanks for listening,
Tom
What's Hot On ClickBank? Click Here And Find Out!
| View Thread | Return to Index | Read Prev Msg | Read Next Msg | |
---|
FIB - Scams 101 - Ye Olde Archives is maintained with WebBBS 3.11.
|
PLEASE READ THIS LEGAL NOTICE CAREFULLY BEFORE YOU FILE A LAWSUIT OR EVEN WASTE TIME THINKING ABOUT IT. It has been done before, but never successfully. In fact, the last dodobird who tried it ended up being ordered to pay more than $77,000 in attorney fees ($65,000+ to my attorneys and $12,000+ to my co-defendant's legal advisor).
If your attorney is worth his salt, he's going to tell you that the expense of filing a lawsuit you can't win is a whole lot worse than any "damages" resulting from messages posted on this insignificant little chunk of cyberspace. NEWS FLASH: I didn't just climb down off that ol' turnip truck yesterday. I'm well aware that expressing a negative opinion, relating one's personal experience, and restating provable facts are all legal in this country and do not constitute libel, slander, or defamation -- so you don't want to play games with me, and you sure don't want to start something you aren't prepared to finish. I don't take threats lightly, and I don't accept bribes (or did you call it a "mutually-beneficial arrangement"?). I'll turn you in faster than you can yell, "ARREST ME, I'M SCUM!!" Do yourself a favor and turn your legal team loose in greener pastures. Although we may, from time to time, monitor or review discussions, postings and the like on the Friends In Business (Scams 101) Message Board, we are under no obligation to do so. We are not responsible or liable for any claim arising from the content of any such discussions or postings or for any error, defamation, libel, slander, omission, falsehood, obscenity, pornography, profanity, danger, or inaccuracy contained in any information contained within such locations on the Site. You are prohibited from posting or transmitting any unlawful, threatening, libelous, defamatory, obscene, scandalous, inflammatory, pornographic, or profane materials or any material that could constitute or encourage conduct that would be considered a criminal offense, give rise to civil liability, or otherwise violate any law. You are likewise prohibited from posting any false claims against any company or individual. We will fully cooperate with any law enforcement authorities or court order requesting or directing us to disclose the identity of anyone posting any such information or materials. By posting messages and/or content on the Friends In Business (Scams 101) Message Board, you give permission for Lesley Fountain/Friends In Business/Shoestring Success Publications to display, distribute and use the posting and content for publication, advertising, promotion, excerption or example. You grant Lesley Fountain/Friends In Business/Shoestring Success Publications complete, perpetual, but non-exclusive rights to use, archive, reproduce, adapt, modify, distribute, sub-license, repurpose, rework, compile, or offer for sale or resale the messages, postings or content appearing on this site in whole or in part, throughout the world and universe, on a royalty-free basis without remuneration. If you cannot accept or agree with the terms of service for this website and discussion board, you are advised not to post on this board. In closing, I would like to remind you once again that it is still legal, in this great country of ours, to express a PERSONAL OPINION, as long as it is presented as opinion and not as fact. And finally, all you scammers out there will do well to remember that TRUTH IS AN ABSOLUTE DEFENSE against charges of libel, defamation, and slander... so if you're operating just a hop, skip, and jump ahead of the law, you might want to think twice before doing anything stupid... (AND SHAME ON YOU!!). |