Book Mark

Ike.ninja

Linux Fun
  • Home
  • How to
  • Reference Links
  • Categories
    • Releases
    • Plesk
    • Community
    • CMS
    • security
    • MYSQL
    • cPanel
  • Tools
    • IP Checker
    • Byte Converter
RSS

OMG How did I get hacked?

Apr10
by Ike on April 10, 2012 at 10:10 pm
Posted In: Backups, CMS, Joomla, security, System, Wordpress

I see a lot of sites get hacked a ton of different ways. This is a topic, that could go on for days.  There are 3 major ways, that sites get hacked bad passwords, insecure permissions, out of date software.  Hackers can use these 3 advantages to over come your system. There are a lot of different motives when it comes to hacking. Some people hack to steal, some people hack to deface and get revenge, Some do it to use your server to spam, some people just do it to see if they can.

The first is, People use poor passwords. This is the most common I see, when they get hacked. Using passwords with words and obvious numbers can be very easy to crack. The better you password the less of a chance their auto generating software will be able to figure it out. When your site is coolestdomainever.com and your password is coolest678, you are gonna get hacked. Ty adding numbers and symbols and capitol letters.. i.e. 12cooC@lest! would be a lot better password. Try to avoid using things that have to do with you personal life. Believe it or not, a hacker will go through great lengths to hack your site. They will do back ground checks, and other things to find as much information about you as they can. Even looking at your face book can give them clues as to what your passwords are. Have longer passwords can help to keep people out. Also make sure that you don’t have any spy ware on your computer as that is another way for them to obtain your password and other information.

Another trick to avoid hacks is, not to use common user names. Using admin or administrator can be easy to guess and more than likely the first tried. Doing something like Ikeisadmin or ike1985 is a lot less obvious.

Another big thing I see is 777 permissions. A lot of people have problems with security programs and CMS’s and think that they need to have 777 permissions on a folder or file. If you file the file or folder 777 permissions mean that you have given the entire world, Read Write and execute privileges. Now that I can modify this file I can put malicious code into the file and then execute it.  Using 755 or 644 is usually a much wiser option. There are very few things that need to be 777 on any system. Good rule of thumb is if you don’t know what the permissions should be then you should not change them. Most hosting companies or or system administrator can help you figure out what they should be.

The last and another on of the biggies, is out of date software. We have good hacker in the world that work to find vulnerabilities before the bad hackers do. When good hackers find these vulnerabilities, they report them to the developer to make a patch and fix the software. Once the patch is out now everyone knows about the vulnerability. The hackers can look at the patch and see what it does. Now they know, that version before the patch has that vulnerability and can exploit it to their advantage. If you didn’t apply that patch, then you are vulnerable. Keeping your CMS and other software up to date, can be a pain due to things not being compatible. But you really don’t have any other choice. Hackers will continue to learn and advance and to keep safe, you need to, too.

Major software on a server like PHP, Apache, MYSQL, and linux are a bit harder to keep up to date. PHP and MYSQL are the ones that you have to be careful when updating. Some of the code in PHP that you have used may be depreciated. You can still upgrade PHP but you will first need to make sure that your code will work with the newer version. MYSQL has changes that can be very damaging if your not sure that you will be compatible. It is a good idea to look at the change logs and make sure you understand what affects your site and/or your server. As long as there is still support for your version of whatever it should be OK. If the software has reached its end of life, then nothing is being patched. After a while the hackers are going to find ways in. Now that the developers are not supporting the software that leaves you with a big security hole. The developers have moved and and so should you.

Well maintained backups are the only way you can really keep ahead of the game. Although it doesn’t stop them, at least you will, have something to fall back to. Backups are extremely easy to take, test and restore. Also being redundant with your backups helps. Get a USB stick and keep a copy of your needed files on it and put it in a safe place. Don’t forget t update them or you may still lose a few months worth of work. Most hosting companies offer off site backups. If you have the only backups on the server it is possible that they will get hacked as well.


Thats my best advise when it comes to your blog getting hacked. If you think that something may cause security issues then it is probably best to do a little research to make sure that it will not cause issues. Google is a wonderful tool :) .

└ Tags: MYSQL, password, PHP, site
1 Comment

MySQL_Jp (@mysql_jp) on Twitter

Apr10
by Ike on April 10, 2012 at 9:50 pm
Posted In: Community, MYSQL, Releases

Sign up for Twitter to follow MySQL_Jp (@mysql_jp). 世界でもっとも普及しているオープンソースデータベース MySQL に関するリリース、イベント、資料、その他関

 Comment 

Oracle’s MySQL Blog

Apr10
by Ike on April 10, 2012 at 8:22 pm
Posted In: Community, MYSQL, Releases

Blogs.Oracle.Com – Oracle’s MySQL Blog

 Comment 

MySQL Librarian

Apr07
by Ike on April 7, 2012 at 6:35 am
Posted In: Community, MYSQL, Releases

http://http://dev.mysql.com/librarian/ RSS Feed of additions to the MySQL Librarian

 Comment 

J and Beyond, an International Joomla! Conference

Apr06
by Ike on April 6, 2012 at 4:02 pm
Posted In: CMS, Community, General News, Joomla, Releases

jab12-logoJ and Beyond, an International Joomla! Conference, is back for the third year.

For 3 days in May (18th -20th) Joomla! developers and site builders from over 30 countries will gather in Bad Nauheim, near Frankfurt, right in the heart of Europe.

The programme for J and Beyond is created by the participants through a public “Call for Papers” and this year for the first time we will be integrating the Joomla! Project Roadmap sessions.

J and Beyond is your opportunity to:

  • Learn from others
  • Present your ideas
  • Plan for the future
  • Meet the people behind the avatar
  • AND most importantly – to have fun!

You can find out more by visiting http://jandbeyond.org.

Joomla Roadmap Meetings

The second Joomla Roadmap meeting will be taking place during J and Beyond 2012.

The purpose of this meeting is to get more people more intensely involved with the development of Joomla itself. While there will be room for on-the-fly topics, the main topics or features have been selected ahead of time based on suggestions from the community. You can find our more by clicking here.

Location

Bad Nauheim is right in the centre of Europe not far from Frankfurt (approx 35km). This historic spa town has become a world leading centre for medical care and recovery but is perhaps more famous for being the place where Elvis Presley was stationed during his time in the US Army. You can find our more by clicking here.

J and Beyond News in More Languages

  • Italian
  • French
  • Hebrew
  • Spanish
  • Dutch
  • Polish


└ Tags: General News
 Comment 
  • Page 2,892 of 2,976
  • « First
  • «
  • 2,890
  • 2,891
  • 2,892
  • 2,893
  • 2,894
  • »
  • Last »

What’s New?

  • Fedora 43: Firefox Update 2025-f20b9f321d – Aarch64 Crashes Fixed
  • Chromium Medium Problems in Password Manager and Toolbar for Fedora 42
  • Debian: vlc Critical Denial of Service and Code Execution DSA-6082-1
  • Debian: Thunderbird Critical Arbitrary Code Exec DSA-6081-1 CVE-2025-14321
  • Fedora 41: Apptainer CVE-2025-65105 Security Fix Advisory
  • Fedora 43: Apptainer 1.4.5 Important Fix CVE-2025-65105
  • Ubuntu 18.04: USN-7907-5 Linux Kernel Important Security Flaws
  • Debian: Chromium Important DSA-6080-1 Code Exec DoS Issues
  • Fedora 42: SingularityCE Important Upgrade 4.3.5 – FEDORA-2025-54d78b9fed
  • Fedora 43: perl-Alien-Brotli Critical Security DoS Fix 2025-d93200cf16
  • Fedora 42: Wireshark 4.6.1 Critical Issue Advisory – FEDORA-2025-f810869906
  • Fedora 42: yarnpkg Command Injection Fix CVE-2025-64756 Advisory
  • Ubuntu 25.10: Linux Kernel Critical Flaws Security Patch USN-7906-3
  • Ubuntu 22.04: USN-7889-6 Linux Kernel Important Security Patch
  • Ubuntu 22.04 LTS: Linux Kernel Critical Security Issues USN-7928-3
  • Ubuntu 22.04: 7928-2 Linux Kernel FIPS Security Updates
  • Ubuntu 22.04 LTS: USN-7928-1 Linux Kernel Critical Security Issues
  • Significant Vulnerabilities in OpenStack Keystone on Ubuntu 22.04 LTS
  • Ubuntu 24.04 LTS: urllib3 Important DoS Vulnerabilities USN-7927-1
  • Debian: Important DoS Vulnerabilities in FFmpeg DSA-6080-1 Advisory
  • Ubuntu 20.04 LTS: USN-7922-1 Linux Kernel Important Security Issues
  • Ubuntu 24.04 LTS: Kernel Important Security Fixes USN-7921-1 CVE-2025-39946
  • Debian: firefox-esr Critical Privilege Escalation DSA-6078-1 CVE-2025-14321
  • 2026 Global Partner Program Announcement
  • Debian: pdns-recursor Critical Denial of Service Vulnerability DSA-6077-1

Search

Translator

Tags

Business and industry code Community cPanel CVE Debian Debian Linux Distribution - Security Advisories Development Events Fedora Fedora Linux Distribution - Security Advisories General Hosting Important Advisory Linux Moderate Advisory Month in WordPress news Parallels Plesk Parallels Plesk Panel Performance PHP Plesk news and announcements Plesk Panel Podcast ProdDevSec Product and technology Products Project Release News Red Hat Red Hat Linux Distribution - Security Advisories Releases security Security Centre sensitive site Ubuntu Ubuntu Linux Distribution - Security Advisories update updates Various vulnerability Web Server Survey Wordpress wp-briefing

Posts

Helpful Links

  • Liquidweb.com
  • MYSQL Dev Documentation
  • Plugins
  • Source forge SED command
  • Themes
  • WordPress Documentation
  • You Tube
December 2025
M T W T F S S
« Nov    
1234567
891011121314
15161718192021
22232425262728
293031  
  • Google
  • Yahoo
  • Liquid Web
  • Storm
  • YouTube

©1999-2025 Ike.ninja | Powered by WordPress with Easel | Subscribe: RSS | Back to Top ↑

52 queries. 8.75 mb Memory usage. 0.258 seconds.