hosted by liquidweb


Go Back   Web Hosting Talk : Web Hosting Main Forums : Hosting Security and Technology : best method to prevent local hack?
Reply

Forum Jump

best method to prevent local hack?

Reply Post New Thread In Hosting Security and Technology Subscription
 
Send news tip View All Posts Thread Tools Search this Thread Display Modes
  #1  
Old 11-29-2007, 12:17 PM
vnsg vnsg is offline
Web Hosting Guru
 
Join Date: Apr 2005
Location: Singapore
Posts: 302

best method to prevent local hack?


I try to enhance my server security and prevent local hack but it seem useless.
I tried to chmod home/user/public_html to 711; disable functions; enable php open_basedir.
I can stop some popular shell such as c99shell.php but server can be hacked local.
Anyway to prevent it completely?
Appriciate all replies

__________________
VN-SG Hosting | Shared Hosting | Reseller at very affordable price |
http://vn-sg.com



Sponsored Links
  #2  
Old 11-29-2007, 12:34 PM
flashwebhost flashwebhost is offline
Web Hosting Master
 
Join Date: Jan 2002
Posts: 1,361
c99shell.php can access other sites files when you have open_base_dir enabled ? I don't think it will able to do that.

__________________
WebHostingNeeds.com

  #3  
Old 11-29-2007, 12:44 PM
vnsg vnsg is offline
Web Hosting Guru
 
Join Date: Apr 2005
Location: Singapore
Posts: 302
Quote:
Originally Posted by flashwebhost View Post
c99shell.php can access other sites files when you have open_base_dir enabled ? I don't think it will able to do that.
I mean i can stop it but by some way server can be hacked local

__________________
VN-SG Hosting | Shared Hosting | Reseller at very affordable price |
http://vn-sg.com

Sponsored Links
  #4  
Old 11-29-2007, 01:06 PM
flashwebhost flashwebhost is offline
Web Hosting Master
 
Join Date: Jan 2002
Posts: 1,361
Your server got hacked or only just one site ?

All sites on the server have open_base_dir enabled ? What control panel you have on server ?

__________________
WebHostingNeeds.com

  #5  
Old 11-29-2007, 01:22 PM
vnsg vnsg is offline
Web Hosting Guru
 
Join Date: Apr 2005
Location: Singapore
Posts: 302
sites is accessed by unauthorized user(local hack) but they can not hack root. open_basedir is enabled for all sites.
I have WHM/Cpanel on a CentOS box

__________________
VN-SG Hosting | Shared Hosting | Reseller at very affordable price |
http://vn-sg.com

  #6  
Old 11-29-2007, 01:31 PM
flashwebhost flashwebhost is offline
Web Hosting Master
 
Join Date: Jan 2002
Posts: 1,361
Quote:
sites is accessed by unauthorized user
What the hacker done ? Changed files ? Have you checked FTP log at the time of file modification ? There is a FTP hack discussed in cpanel forum, on which abuser get FTP password some way and modify files and include IFRAME code. Can you tell what the hacker done to your web site ?

__________________
WebHostingNeeds.com

Reply

Related posts from TheWhir.com
Title Type Date Posted
European ISPs BT and Alcatel-Lucent Reach 'Fastest Ever' Broadband Speeds Web Hosting News 2014-01-24 14:25:41
Successful Ingredients for Stopping Outbound Spam Blog 2013-07-30 09:54:15
Name.com Resets Customer Passwords After Security Breach Web Hosting News 2013-05-13 14:43:19
WHD.local 2013 London, UK Web Hosting Events 2012-11-20 15:34:40
GoGrid Partners with Boston Big Data Research Group hack/reduce With Free Cloud Hosting Web Hosting News 2012-11-08 17:42:48


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes
Postbit Selector

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump
Login:
Log in with your username and password
Username:
Password:



Forgot Password?
Advertisement:
Web Hosting News:



 

X

Welcome to WebHostingTalk.com

Create your username to jump into the discussion!

WebHostingTalk.com is the largest, most influentual web hosting community on the Internet. Join us by filling in the form below.


(4 digit year)

Already a member?