Bitcoin Forum
December 12, 2024, 10:32:55 AM
Welcome,
Guest
. Please
login
or
register
.
News
: Latest Bitcoin Core release:
28.0
[
Torrent
]
Home
Help
Search
Login
Register
More
Bitcoin Forum
>
Other
>
Beginners & Help
>
NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL
Pages: [
1
]
« previous topic
next topic »
Print
Author
Topic: NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL (Read 1341 times)
1nject0r
(OP)
Newbie
Offline
Activity: 28
Merit: 0
NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL
September 03, 2012, 07:50:57 AM
#1
if u have just website i am not talking about server if u have just website u can secure it by following this method
1) use cloudflare to block hacker to ddos your site
2) use firewall for your site
3) buy ssl certificate
4) use secure password
5) move your admin panel to other place like yoursite.com/admin into yoursite.com/noaccess or whatever u want
6) protect your file by using passwords
if you are using joomla wordpress or any forum make sure to update and always hide your version number
your website can be hacked via this meth0d
1) SQL Injection
2) OS Command Injection
3) Unchecked Path Parameter / Directory Traversal
4) Improper Session Management
5) Cross-Site Scripting
6) CSRF (Cross-Site Request Forgery)
7) HTTP Header Injection
Mail Header Injection
9) Lack of Authentication and Authorization
If your website look like this php=id? or u have installed shopping cart make sure its not vuln to sql injection
if u have search box in ur site make sure ur site not vuln to xss
xss = cross site scripting if u need cheat google it and put on searchbox of ur site
SMF MYBB VBULLETIN >>> always make new admin panel directory for security reason
vbulletin.com/admincp to vbulletin.com/9929348440 or whatever u like
More coming soon
1nject0r
(OP)
Newbie
Offline
Activity: 28
Merit: 0
Re: NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL
September 03, 2012, 07:54:33 AM
#2
if u recently installed any software make sure there is not install.php or install folder
always secure ur config.php file by chmoding 777 or if yes always rename the file name
use secure ftp and remember to check no anonymous user allowed
secure your .htaccess file to prevent the hackers
dont use nulled or cracked software for ur website they hve always backdoored installed and they can hack ur website
1nject0r
(OP)
Newbie
Offline
Activity: 28
Merit: 0
Re: NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL
September 03, 2012, 07:57:22 AM
#3
If your site is based on php read this to secure
PHP has often been accused of being
security-lax as over the years many
exploitable bugs have been found within it.
However, it has matured steadily and most
of the bugs tend to be avoidable by either
configuring the installation correctly and/or
writing the code securely.
Here are some configuration tips (writing
secure code is covered in a later section)
that relate to the variables in the “php.ini”
file:
Ì Set ‘register_globals’ off
Ì Set ‘safe_mode’ on
Ì Set ‘open_basedir’ to the base
directory of the website
Ì Set ‘display_errors’ off
Ì Set ‘log_errors’ on
Ì Set ‘allow_url_fopen’ off
1nject0r
(OP)
Newbie
Offline
Activity: 28
Merit: 0
Re: NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL
September 03, 2012, 07:58:19 AM
#4
Popular server-side applications that have
had problems in the past with critical,
exploitable bugs include (but is certainly not
limited to!):
Ì Wordpress (blogging software)
Ì phpBB Mybb and SMF (forum software)
Ì CMS Made Simple (CMS Software)
Ì PHPNuke (CMS Software)
Ì bBlog (blogging software)
Ì JBoss (application server)
Ì Coppermine (image gallery software)
1nject0r
(OP)
Newbie
Offline
Activity: 28
Merit: 0
Re: NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL
September 03, 2012, 08:00:28 AM
#5
1. How to keep your Windows computer up-to-date,
http://support.microsoft.com/kb/311047
2. Apache Security Tips,
http://httpd.apache.org/docs/2.2/misc/security_tips.html
3. Securing Apache 2: Step-by-Step,
http://www.securityfocus.com/infocus/1786
4. 20 ways to Secure your Apache Configuration,
http://www.petefreitag.com/item/505.cfm
5. The CodeIgniter PHP Framework,
http://www.codeigniter.com
6. Ten Security Checks for PHP, Part 1,
http://www.onlamp.com/pub/a/php/2003/03/20/php_security.html
7. Creating a Secure PHP Login Script,
http://www.devshed.com/c/a/PHP/Creating-a-Secure-PHP-Login-Script/
8. Securing PHP: Step-by-Step,
http://www.securityfocus.com/infocus/1706
9. Securing MySQL: Step-By-Step,
http://www.securityfocus.com/infocus/1726
10. Apache Attack Samples,
http://www.ossec.net/wiki/index.php/Apache_attack_samples
Pages: [
1
]
Print
Bitcoin Forum
>
Other
>
Beginners & Help
>
NOOBS GUIDE TO SECURE YOUR SITE , SERVER AND EMAIL
« previous topic
next topic »
Jump to:
Please select a destination:
-----------------------------
Bitcoin
-----------------------------
=> Bitcoin Discussion
===> Legal
===> Press
===> Meetups
===> Important Announcements
=> Development & Technical Discussion
===> Wallet software
=====> Electrum
=====> Bitcoin Wallet for Android
=====> BitcoinJ
=====> Armory
=====> Mycelium
=====> Hardware wallets
=> Mining
===> Mining support
===> Pools
===> Mining software (miners)
===> Hardware
=====> Group buys
===> Mining speculation
=> Bitcoin Technical Support
=> Project Development
-----------------------------
Economy
-----------------------------
=> Economics
===> Speculation
=> Marketplace
===> Goods
=====> Computer hardware
=====> Digital goods
=======> Invites & Accounts
=====> Collectibles
===> Services
===> Currency exchange
===> Gambling
=====> Games and rounds
=====> Investor-based games
=====> Gambling discussion
===> Lending
=====> Long-term offers
===> Securities
===> Auctions
===> Service Announcements
=====> Micro Earnings
===> Service Discussion
=====> Web Wallets
=====> Exchanges
=> Trading Discussion
===> Scam Accusations
===> Reputation
-----------------------------
Other
-----------------------------
=> Meta
===> New forum software
===> Bitcoin Wiki
=> Politics & Society
=> Beginners & Help
=> Off-topic
=> Serious discussion
===> Ivory Tower
=> Archival
===> Корзина
===> CPU/GPU Bitcoin mining hardware
===> Chinese students
===> Obsolete (buying)
===> Obsolete (selling)
===> MultiBit
-----------------------------
Alternate cryptocurrencies
-----------------------------
=> Altcoin Discussion
=> Announcements (Altcoins)
===> Tokens (Altcoins)
=> Mining (Altcoins)
===> Pools (Altcoins)
=> Marketplace (Altcoins)
===> Service Announcements (Altcoins)
===> Service Discussion (Altcoins)
===> Bounties (Altcoins)
=> Speculation (Altcoins)
-----------------------------
Local
-----------------------------
=> العربية (Arabic)
===> العملات البديلة (Altcoins)
=====> النقاشات
===> إستفسارات و أسئلة المبتدئين
===> التعدين
===> النقاشات الأخرى
===> منصات التبادل
=> Bahasa Indonesia (Indonesian)
===> Marketplace (Bahasa Indonesia)
===> Mining (Bahasa Indonesia)
===> Altcoins (Bahasa Indonesia)
===> Trading dan Spekulasi
===> Ekonomi, Politik, dan Budaya
===> Topik Lainnya
=> Español (Spanish)
===> Mercado y Economía
=====> Servicios
=====> Trading y especulación
===> Hardware y Minería
===> Esquina Libre
===> Mercadillo
=====> Mexico
=====> Argentina
=====> España
=====> Centroamerica y Caribe
===> Primeros pasos y ayuda
===> Altcoins (criptomonedas alternativas)
=====> Minería de altcoins
=====> Servicios
=====> Tokens (Español)
=> 中文 (Chinese)
===> 跳蚤市场
===> 山寨币
===> 媒体
===> 挖矿
===> 离题万里
=> Hrvatski (Croatian)
===> Trgovina
===> Altcoins (Hrvatski)
=====> Announcements (Hrvatski)
===> Off-topic (Hrvatski)
=> Deutsch (German)
===> Anfänger und Hilfe
===> Mining (Deutsch)
===> Trading und Spekulation
===> Projektentwicklung
===> Off-Topic (Deutsch)
===> Treffen
===> Presse
===> Altcoins (Deutsch)
=====> Announcements (Deutsch)
===> Marktplatz
=====> Auktionen
=====> Suche
=====> Biete
=> Ελληνικά (Greek)
===> Αγορά
===> Mining Discussion (Ελληνικά)
===> Altcoins (Ελληνικά)
=====> Altcoin Announcements (Ελληνικά)
=====> Altcoin Mining (Ελληνικά)
=> עברית (Hebrew)
=> Français
===> Actualité et News
===> Débutants
===> Discussions générales et utilisation du Bitcoin
===> Mining et Hardware
===> Économie et spéculation
===> Place de marché
=====> Échanges
=====> Produits et services
=====> Petites annonces
===> Le Bitcoin et la loi
===> Wiki, documentation et traduction
===> Développement et technique
===> Vos sites et projets
===> Hors-sujet
===> Altcoins (Français)
=====> Annonces
=> India
===> Mining (India)
===> Marketplace (India)
===> Regional Languages (India)
===> Press & News from India
===> Alt Coins (India)
===> Buyer/ Seller Reputations (India)
===> Off-Topic (India)
=> Italiano (Italian)
===> Guide (Italiano)
===> Progetti
===> Discussioni avanzate e sviluppo
===> Trading, analisi e speculazione
===> Mercato
=====> Mercato valute
=====> Beni
=====> Servizi
=====> Esercizi commerciali
=====> Hardware/Mining (Italiano)
=====> Gambling (Italiano)
===> Accuse scam/truffe
===> Mining (Italiano)
===> Alt-Currencies (Italiano)
=====> Annunci
===> Raduni/Meeting (Italiano)
===> Crittografia e decentralizzazione
===> Off-Topic (Italiano)
=> 日本語 (Japanese)
===> アルトコイン
=> Nederlands (Dutch)
===> Markt
===> Gokken/lotterijen
===> Mining (Nederlands)
===> Beurzen
===> Alt Coins (Nederlands)
===> Off-topic (Nederlands)
===> Meetings (Nederlands)
=> Nigeria (Naija)
===> Politics and society (Naija)
===> Off-topic (Naija)
=> 한국어 (Korean)
===> 대체코인 Alt Coins (한국어)
=> Pilipinas
===> Altcoins (Pilipinas)
=====> Altcoin Announcements (Pilipinas)
===> Pamilihan
===> Others (Pilipinas)
=> Polski
===> Tablica ogłoszeń
===> Alternatywne kryptowaluty
=====> Nowe kryptowaluty i tokeny
=====> Tablica ogłoszeń (altcoiny)
=> Português (Portuguese)
===> Primeiros Passos (Iniciantes)
===> Economia & Mercado
===> Mineração em Geral
===> Desenvolvimento & Discussões Técnicas
===> Criptomoedas Alternativas
===> Brasil
===> Portugal
=> Русский (Russian)
===> Новички
===> Бизнес
=====> Барахолка
=====> Обменники
===> Идеи
===> Кодеры
===> Майнеры
===> Политика
===> Трейдеры
===> Альтернативные криптовалюты
=====> Токены
=====> Бayнти и aиpдpoпы
===> Хайпы
===> Работа
===> Разное
===> Oбcyждeниe Bitcoin
=====> Новости
=====> Юристы
=> Română (Romanian)
===> Anunturi importante
===> Offtopic
===> Market
=====> Discutii Servicii
===> Minerit
===> Tutoriale
===> Bine ai venit!
===> Presa
===> Altcoins (Monede Alternative)
=====> Anunturi Monede Alternative
=> Skandinavisk
=> Türkçe (Turkish)
===> Bitcoin Haberleri
===> Pazar Alanı
===> Madencilik
===> Ekonomi
===> Servisler
=====> Fonlar
===> Proje Geliştirme
===> Alternatif Kripto-Paralar
=====> Madencilik (Alternatif Kripto-Paralar)
=====> Duyurular (Alternatif Kripto-Paralar)
===> Konu Dışı
===> Yeni Başlayanlar & Yardım
===> Buluşmalar
=> Other languages/locations
Loading...