View Full Version : Apache
nikki
12-17-2002, 09:33 PM
I found this article about securitiy flaws in Apache. Maybe this is why Karen's forum got hacked?
http://www.internetnews.com/dev-news/article.php/10792_1500451
Flash ho
12-17-2002, 10:29 PM
Good Find!
Helen
12-17-2002, 11:47 PM
FYI:
The server that most of you are on now is:
Operating System Linux Apache Version 1.3.26 (Unix)
The new server that we are putting new accounts (including those we
create for folks who request dividing their space/bandwidth allotments
into additional accounts) is:
Operating System Linux Apache Version 1.3.27 (Unix)
As has been said, there is never a guaranteed situation to prevent the
determined hackers. And the best way to protect yourself is to upgrade
programs you use; make your passwords 8 characters, scrambled with
both letters and numbers that make no sense. We tend to pick them
according to what is easiest for us to remember. Hackers love that too.
The new server is not restricted to new accounts. We will be happy to
move anyone there who requests it. However, this will require you to
upload all your files there, possibly alter some scripts that are unique
to the current server you are on.
There will also need to be a change at your registrar to the new name
servers, which will need to propagate across the internet... meaning that
you may experience some website downtime while that is in process.
Cartman
12-18-2002, 12:18 AM
After talking with some folks, I don't think that the server is the problem.
My friend was telling me about the "script kiddies". Kids that download hacking software from sites and then use it. They download programs that will go through different letter variations on passwords and stuff until they hit yours.
Upgrading servers and scripts is fine, but not a guarantee that a hacker won't ever hack you again.
Best defense is to have a unique password (8 characters, mixed letters and numbers) as Helen said.
and
BACKUP, BACKUP, BACKUP ... early and often!!!!
Helen
12-18-2002, 12:35 AM
Thanks Karen! I forgot to mention that again. NOTHING is better than
frequent backups. And don't anyone ever think because you have a
small site or a topic of little interest to more than a few friends and
family, that you're immune...
NO ONE IS IMMUNE TO HACKERS.
NO PROGRAM OR SYSTEM IS IMMUNE TO HACKERS.
KEEP EVERYTHING BACKED UP.
:)
vBulletin v3.5.3, Copyright ©2000-2012, Jelsoft Enterprises Ltd.