Results 1 to 6 of 6
  1. #1
    Join Date
    Apr 2005
    Location
    Singapore
    Posts
    306

    best method to prevent local hack?

    I try to enhance my server security and prevent local hack but it seem useless.
    I tried to chmod home/user/public_html to 711; disable functions; enable php open_basedir.
    I can stop some popular shell such as c99shell.php but server can be hacked local.
    Anyway to prevent it completely?
    Appriciate all replies
    VN-SG Hosting | Shared Hosting | Reseller at very affordable price |
    http://vn-sg.com

  2. #2
    c99shell.php can access other sites files when you have open_base_dir enabled ? I don't think it will able to do that.

  3. #3
    Join Date
    Apr 2005
    Location
    Singapore
    Posts
    306
    Quote Originally Posted by flashwebhost View Post
    c99shell.php can access other sites files when you have open_base_dir enabled ? I don't think it will able to do that.
    I mean i can stop it but by some way server can be hacked local
    VN-SG Hosting | Shared Hosting | Reseller at very affordable price |
    http://vn-sg.com

  4. #4
    Your server got hacked or only just one site ?

    All sites on the server have open_base_dir enabled ? What control panel you have on server ?

  5. #5
    Join Date
    Apr 2005
    Location
    Singapore
    Posts
    306
    sites is accessed by unauthorized user(local hack) but they can not hack root. open_basedir is enabled for all sites.
    I have WHM/Cpanel on a CentOS box
    VN-SG Hosting | Shared Hosting | Reseller at very affordable price |
    http://vn-sg.com

  6. #6
    sites is accessed by unauthorized user
    What the hacker done ? Changed files ? Have you checked FTP log at the time of file modification ? There is a FTP hack discussed in cpanel forum, on which abuser get FTP password some way and modify files and include IFRAME code. Can you tell what the hacker done to your web site ?

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •