Ok it seems like this hacker is causing alot of ripples in the scene so i think its about time sort this niggah out!

What this thread can be used for is to post how you got hacked and what you did to prevent it agian! This way other users can learn the tips and tricks on how to make it harder to get hacked by these script kiddies!

So if your gonna post then please post about 1 of the following:

  • If you got hacked (How they got in) - (and how you patched it)
  • Security Tips! (such as tips about upload forms password areas) etc
  • Any tips regarding lnux security for VPS/DEDI servers
  • Bugs you may have found in Forum software!
  • Any other things related to this matter



--

My Tips!
  1. **Make sure your server passwords are not used elsewhere!**
  2. Sucure any private directories by ip whitlist Google
  3. In php always secure your inputs with mysql_real_escape_string Tizg - PHP
  4. NEVER TRUST YOUR USERS, JUST ACT LIKE YOU DO
  5. If you have register globals on make sure you De-register globals PHP
  6. Make sure you change the defualt port for your Direct admin or Cpanel
  7. In you admin remove the DROP rights for your database username Cpanel
  8. If self built system like LW, make sure you salt all user/admin passwords with a md5
  9. Disable the usage of php files within a upload directory with php (Help stop shells)
  10. Change the location of phpmyadmin to something more secure!
  11. Dont add mysql/file editors on your server, download and uplaod via ftp and us phpmyadmin
  12. Research about shells (Understand what they am and how hackers get them on your site).
  13. Most forum scripts allow you to change your admin location so do that
  14. If you renamed your admin, remove links from index to your admin when your logged in so you have to go to the url and know the directory.
  15. Remove index visibility by adding -Indexes to your htaccess
  16. If you have to exchange passwords with other people! do it over msn and not in PM'S!
  17. NEVER use nulled scripts unless they have been nulled by a friend for you personally
  18. If using a DGT Nulled release always remove validator.php


Other User Tips!
  1. Stay up dated with your web software updates!
  2. DO NOT use the same password!
  3. Find a host that has a reputation with everyone and ask them about there security on the server.
  4. do not go for a host which offeres amazingly cheap prices for high spec'd plans as i have said they are just wanting to make a quick bit of money and dont care about what they do, so security is most probably not that important.
  5. do not let anybody know your passwords as that person could be a fool and get hacked and have your info in there private messages etc.
  6. USE YOUR BLOODY BRAIN AND GET SOME COMMON SENSE!


Browser Specific tips
  1. Try not to save important passwords in your browser
  2. Use keyscrambler addon for Firefox.
  3. Every time you leave your pc, do CTRL + SHIFT + DEL to clear your passwords etc.
  4. keep your browser up to date.


General Fourm tips
Secure your Forum - Thanks to DeLeTeD

VBulletin Specific tips
  1. Rename config.php file (http://www.vbulletin.org/forum/showthread.php?t=198856)
  2. Secure yourself and set up as super administrator (Click here)


PhpBB Specific tips
If you have tips for here please PM or post them

Server(Non Shared) Specific tips
  1. install CSF Firewall, it's not the best, but by far the easiest to use and learn. Also, follow the guides that come with it.
  2. Disable the directory "/cpanel" AND change the cpanel access port (this includes Direct-admin)


Updated : 10, June, 2010
litewarez Reviewed by litewarez on . Security Thread, Get/Post your tips here! Ok it seems like this hacker is causing alot of ripples in the scene so i think its about time sort this niggah out! What this thread can be used for is to post how you got hacked and what you did to prevent it agian! This way other users can learn the tips and tricks on how to make it harder to get hacked by these script kiddies! So if your gonna post then please post about 1 of the following: If you got hacked (How they got in) - (and how you patched it) Security Tips! (such as Rating: 5