How to test if your site is safe from hacker.

Discussion in 'Security' started by miexl, Aug 10, 2009.

  1. j4k3yyy

    j4k3yyy Peon

    Messages:
    35
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #21
    It takes some skill to root a properly configured web server. Most "hacks" i've seen are public exploits and the attacker only manages to attain the same privs as apache.
     
    j4k3yyy, Aug 19, 2009 IP
  2. awesometbn

    awesometbn Peon

    Messages:
    268
    Likes Received:
    8
    Best Answers:
    0
    Trophy Points:
    0
    #22
    A larger issue here is the web server, not just your website. It would help if you owned your own server, or paid for a dedicated box that you control, instead of using a shared server. That way you can turn off processes and services that you don't need, you can install more strict security measures, and in general, you'll be able to respond quicker to an emerging threat. Some examples include mod_security for Apache, reviewing access logs on a daily basis, keeping software patches updated, and actively researching the latest vulnerability threats to increase your security posture.
     
    awesometbn, Aug 19, 2009 IP
  3. bulkemailpp

    bulkemailpp Peon

    Messages:
    26
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #23
    Visit some white/grayhat hacker board and let them check your site. Some individual pentester (not a certificated company - too expensive) is a good choice as well.
     
    bulkemailpp, Aug 24, 2009 IP