Home
Home

Directory
Directory

Articles
Internet News
Security News
Ecommerce News
Domain News

Site Tools
Site Speed Test
Keyword Research
Resolve Hostname
DNS Tools
Register Domains
Affiliate Programs
Open Source

Shopping Carts
Cart Reviews
SSL Certificates

Enter your email address to subscribe to our updates:

Delivered by FeedBurner


Venue Charts
Channel Traffic Rankings
OAI Stock Quotes and Charts
eBay's Worst Feedback

Forum
Forum Home
TulipTools News
Advertising
Blogging
Computer Hardware
Domain Names
Ecommerce
Financing
Int'l Trading
Graphics and HTML
Internet Access
Legal Issues
Internet Business
Auction Sites
Classified Ad Sites
Fixed Price Venues
Operating Systems
Programming
Search Engines
Internet Security
Software
Web Hosting
Webmaster Issues
Reviews
Announcements
Off Topic Discussion

Web Hosting
TulipHosting

Domain Names
TulipDomains

Web Stats
TulipStats

Forum Rules
Forum Rules
Privacy Policy

Site Map
Forum Sitemap
Sitemap Topics




Directory| Forums| Internet News|Cart Reviews| DNS Tools| Keyword Research| Site Speed Test| Security| | Domain Marketplace| Domain Blog
TulipTools Internet Business Owners and Online Sellers Community
  • Home
  • Search
  • Member List
  • Calendar
Hello There, Guest! Login Register
TulipTools Internet Business Owners and Online Sellers Community › Security › Internet Security › General Internet Security Discussion v
« Previous 1 2 3 4 5 6 … 10 Next »

How Hackers Are Using Google To Pwn Your Site

  
Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Threaded Mode | Linear Mode
How Hackers Are Using Google To Pwn Your Site
12-27-2006, 04:09 PM,
Post: #1
BellisimaJ. Offline
Rabble-Rouser
*********
Posts: 6,609
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Apr 2006
Reputation: 0
How Hackers Are Using Google To Pwn Your Site

Quote:As most of you know a few months back my site was hacked. What many people dont know is that was actually the first of 2 times the box was hacked. The first time the box was hacked I had made the mistake of making the web files on the server writeable by the web server. Again being this server (that my blog sits on) is not used for hardly any commercial activity I was a lot less security focus then something I would call “production” ready. I implemented mod_security and some other logging tools aswell as offloaded the server logs to a different server (yea the logs were owned by the apache user also).

So basically when I got owned the person found a file on my server that was web accessible which then he could execute commands on behalf of the web user. Now because the files and log files were owned by this user he could write to them and even delete them. Lucky for me this guy just wanted to put up his Turkish political statement and try to infect his virus to people. So all he did was dosearch on the box for any index.* files and copied his index file to over write them. Then he also deleted all files matching *log. So it was pretty obvious how the person did it but I was not sure what file was the hole in my system. This is the point where you have to weigh catching the hacker vs running a box that has been compromised. Since I really only have blogs and a few low traffic forums running on this box I thought it would be a good chance to see what was vulnerable.

So I installed mod_security and ran it pretty hardcore. Over the next couple weeks.............



http://www.shoemoney.com/2006/12/26/how-...your-site/
Like Post Reply
[+]
12-27-2006, 06:23 PM,
Post: #2
thentavius Offline
Tulip Fanatic
*******
Posts: 1,309
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Aug 2005
Reputation: 0
Re: How Hackers Are Using Google To Pwn Your Site
What chmod should most regular viewable files be set at? 666?

Plastic Pumpkin Designs | Plastic Pumpkin on Etsy

"I believe I can see the future, 'cause I repeat the same routine..." --Trent Reznor
Website
Like Post Reply
[+]
12-27-2006, 08:39 PM,
Post: #3
rose Offline
Big Member
*****
Posts: 465
Likes Given: 0
Likes Received: 0 in 0 posts
Joined: Jul 2005
Reputation: 0
Re: How Hackers Are Using Google To Pwn Your Site
[quote author=thentavius link=topic=6456.msg38259#msg38259 date=1167243786]
What chmod should most regular viewable files be set at? 666?


[/quote]

644
http://www.gentoo.org/
Like Post Reply
[+]
« Next Oldest | Next Newest »




Possibly Related Threads…
Thread Author Replies Views Last Post
  Group of 11 Hackers Stole 40 Million Credit Card Numbers mandy 0 3,271 08-07-2008, 11:22 AM
Last Post: mandy
  Hackers Launch Attack on Oak Ridge and Los Alamos US Military Labs Kristijntje 0 2,293 12-08-2007, 03:12 PM
Last Post: Kristijntje
  Methods that can be used to attack the "reputation systems" used by hackers mandy 0 2,337 11-09-2007, 10:30 AM
Last Post: mandy
  Are Hackers Winning the War? mandy 0 2,276 02-05-2007, 08:37 AM
Last Post: mandy
  Hackers to Target Video Sharing, Mobile Devices in 2007 mandy 2 3,212 12-31-2006, 04:17 PM
Last Post: BellisimaJ.
  Hackers costing online brokerages millions of dollars mandy 0 2,366 10-26-2006, 09:12 AM
Last Post: mandy
  Chinese Hackers Hack US Commerce Department Kristijntje 0 2,168 10-08-2006, 10:14 AM
Last Post: Kristijntje
  Personal data of 19,000 AT&T web store shoppers breached by hackers mandy 1 2,879 09-02-2006, 11:08 AM
Last Post: Kristijntje
  Hackers Selling Credit Cards in Internet Chat Rooms: $3-$5 Credit Card w/CVV mandy 2 3,951 04-17-2006, 05:06 AM
Last Post: bargainbloodhound
  Hackers, Scammers Hide Malicious JavaScript On Web Sites mandy 0 2,167 10-21-2005, 10:44 AM
Last Post: mandy

  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread
Forum Jump:


Users browsing this thread: 1 Guest(s)
  • Contact Us
  • TulipTools Internet Business Owners and Online Sellers Community
  • Return to Top
  • Lite (Archive) Mode
  • RSS Syndication
  • Help
Current time: 07-12-2025, 04:40 AM Powered By MyBB, © 2002-2025 MyBB Group. Theme created by Justin S.
powered by Apache

powered by Linuxpowered by CentOS

Copyright 2000-2013 TulipTools.com. All rights reserved.