My web site running by PHP hacked by Turk

Discussion in 'PHP' started by smallpilecom, Oct 29, 2008.

  1. #1
    I have no idea how this turk could hack my website ,

    My site was developed using PHP and MySQL

    However i already restored few websites, any sharing could prevent this from happening in near future

    Really appreciate it
     
    smallpilecom, Oct 29, 2008 IP
  2. DiscussNow

    DiscussNow Peon

    Messages:
    474
    Likes Received:
    6
    Best Answers:
    0
    Trophy Points:
    0
    #2
    There's no way to determine that without seeing your website.
     
    DiscussNow, Oct 29, 2008 IP
  3. keyaa

    keyaa Peon

    Messages:
    137
    Likes Received:
    9
    Best Answers:
    0
    Trophy Points:
    0
    #3
    Most likely some (remote) file inclusion vulnerability or SQL injection vulnerability.
     
    keyaa, Oct 29, 2008 IP
  4. ads2help

    ads2help Peon

    Messages:
    2,142
    Likes Received:
    67
    Best Answers:
    1
    Trophy Points:
    0
    #4
    search for wiki of the topics mentioned by keyaa and search through your code for these vulnerabilities
     
    ads2help, Oct 30, 2008 IP
  5. smallpilecom

    smallpilecom Peon

    Messages:
    126
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #5
    Thanks for info
     
    smallpilecom, Oct 30, 2008 IP
  6. ahayiroglu

    ahayiroglu Peon

    Messages:
    503
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #6
    mostly sql injection vulnerability if your scripts are not ready made script like wordpress, drupal, or some other widely used script.
     
    ahayiroglu, Oct 31, 2008 IP
  7. X-master

    X-master Peon

    Messages:
    7
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #7
    Look at Apache logs for a day your site have been hacked. If it was some code in URL like remote file include or SQL injection you'll determine it easily
     
    X-master, Oct 31, 2008 IP
  8. WorldMenace

    WorldMenace Peon

    Messages:
    63
    Likes Received:
    0
    Best Answers:
    0
    Trophy Points:
    0
    #8
    I had a site hacked a few times by him. He belongs to a turkish website that treats hacking as a game and they gets points for the hack and how skilled it was. Hes pretty benign though, just changes .htaccess to point to his index.html file, but you should check your folders, he does drop 1 or 2 files somewhere on your site. I don't know what the files do, but nothing to your benefit i'm sure.
     
    WorldMenace, Nov 3, 2008 IP
  9. maestria

    maestria Well-Known Member

    Messages:
    705
    Likes Received:
    8
    Best Answers:
    0
    Trophy Points:
    110
    #9
    validate all your input type text areas and other inputs.
    Do not allow any special characters to be input where not required
     
    maestria, Nov 4, 2008 IP