I run an OsCommerce site which has been hacked twice now. Anybody got advice on securing the site?
Website security
Collapse
X
-
do you know how they are hacking your site? I'd suggest starting at the OsCommerce site forums to see if there have been any new hacks found. -
I see part of their support forum is a security section.Participation is voluntary.
Alcocks Electrical Services | Alcocks Pest Control & Entomological Services | Alcocks Hygiene ServicesComment
-
Comment
-
Adrian - My Joomla! site has been hacked twice now too. Unfortunately if they are decent enough hackers they're going to get through just about any protection.
Have they done any serious damage to your site? Our culprits just seem to do things to annoy us - And they succeed."The way to gain a good reputation, is to endeavor to be what you desire to appear." - Socrates
Trench Life - A blog for young professionals, BY young professionals
LinkedIn
Bafokke Shirts - South Africa's No. 1 Fan Shirt!Comment
-
-
When you say they hacked your site Adrian, what did they actually do? Was it malicious or passive? Was there a money making angle to it, was there theft?_______________________________________________
_______________________________________________Comment
-
@cream - the url is www.scalecraft.co.za
They don't destroy the site. They disable the entire site and replace the front page. I think they do it simply to prove that they can.
I keep a backup of the entire site so when it happens I clear out the rubbish that they add and replace the damaged files.
They deleted the admin user from the database once and added their own user - I fixed this through PhPMyAdmin via Cpanel.Last edited by adrianh; 08-Dec-10, 07:49 AM.Comment
-
@cream - the url is www.scalecraft.co.za
They don't destroy the site. They disable the entire site and replace the front page. I think they do it simply to prove that they can.
I keep a backup of the entire site so when it happens I clear out the rubbish that they add and replace the damaged files.
They deleted the admin user from the database once and added their own user - I fixed this through PhPMyAdmin via Cpanel.
Generate a lenght password
Get a SSL Cerificate for your website
You did not mention what osEcommerce solution your are using
If you can specify a name I would be able to assist youByron Neary
www.yougottohaveit.co.zaComment
Comment