vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vB3 General Discussions (https://vborg.vbsupport.ru/forumdisplay.php?f=111)
-   -   How can i stop or trace hackers? (https://vborg.vbsupport.ru/showthread.php?t=45470)

Mosser 11-06-2002 11:52 PM

How can i stop or trace hackers?
 
I know this is the wrong sort of hack for the forum, but i wondered if anyone knows how i can stop or at least trace (ip address) hackers that get into our forum with admin permissions or more recently access our web host using FTP and modify our php scripts sometimes deleting critical lines of code, we have just lost our members online stats on the front page and i have found the lines that were deleted and restored them but it is very time consuming to check everything and find the damaged script files

If anyone knows of any relevant hacks that would make our BB more secure or alert me to unauthorised access (especially FTP access to our web space!) then can you please let me know

Cheers

PS if i have posted this in the wrong forum please move it to the appropriate forum

Erwin 11-07-2002 09:14 AM

Change the passwords! :)

.htaccess password-protect your /admin subdirectory.

.htaccess password-protect phpMyAdmin.

How do these guys get admin access??? Make it so that only you can access the admin cp - install an admin security hack that you can find in Full Releases.

Mosser 11-07-2002 09:44 AM

Thanks for the help, all i have to do is find out how to do them!! (shouldnt be too difficult though),

I'm not at all sure how its being done, but i think the scripts are being modified directly rather than using the control panel, the logs are only accessible by me and i'm the only one that can change them and i am seeing wuite a few IP's that i dont recognise but nothing malicious is being done through the CPanel according to the logs

Its very strange!!

Erwin 11-07-2002 09:46 AM

Ban those IPs if you are certain they are malicious.

Get your host to check the server logs, or do it yourself if it's your server.

Change your FTP username and password!!! And your site Admin CP username and password!!! Tell your host!!! :)

Mosser 11-07-2002 09:55 AM

Problem with changing the FTP user name and PW is that a lot of parts of the site are run by helpers that need access to do their bit to help (i dont have enough time to do it all) so the security can never be 100%, I know this is a security flaw, bit there's not much i can think of that can be dont to trace ftp access into the site?

IP banning doesnt seem to work because most technical people know how to change their ip address with in a couple of minutes if they need to

Its on a shared server, not sure if we have access to any access logs, i will check into that

cheers

NTLDR 11-07-2002 10:34 AM

Remember you have an Admin Log in the ACP too, which records everything that happens in there and logs the IP too :D

Erwin 11-07-2002 06:40 PM

Shared servers are intrinsically insecure, for various reasons.

That is very dangerous, sharing your FTP access with others. :) I keep mine top secret, with only me with access.

If you share your FTP access, and if you insist in not changing your password, then no one can help you stop your site from being hacked again and again, since someone out there knows the password obviously.

KaiN6993 11-08-2002 01:20 AM

Quote:

Originally posted by Erwin
Shared servers are intrinsically insecure, for various reasons.

That is very dangerous, sharing your FTP access with others. :) I keep mine top secret, with only me with access.

If you share your FTP access, and if you insist in not changing your password, then no one can help you stop your site from being hacked again and again, since someone out there knows the password obviously.

Could'nt have said it better myself, if you want your site protected, Noone but you should have access to any admin or ftp info :smoke:


All times are GMT. The time now is 01:23 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01161 seconds
  • Memory Usage 1,725KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (8)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete