Reseller Hosting, Shared Hosting, Dedicated Hosting by Vortech Inc.

Go Back   Reseller Hosting, Shared Hosting, Dedicated Hosting by Vortech Inc. > >> General Public > Chit Chat Public
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Chit Chat Public Talk about any thing you want! This forum is public.

Reply
 
Thread Tools Display Modes
  #1  
Old 08-30-2009, 01:14 AM
JoshK's Avatar
JoshK JoshK is offline
Administrator
 
If you or your client is repeatedly getting hit We will be happy to pull the logs for you. Nearly every case of hacking recently has been as david stated before, by the hacker using VALID ftp credentials. We've gone to great lengths (that should not be discussed openly in a semi public forum) to detect hackers loging in compared to actual people, only to find with a month they were ping ponging so to speak off multiple controlled servers at multiple IP's to attempt the same log-ins. We can detect and block them often, but the root of all of it is insecure or stolen passwords.

Many have already discussed here the importance of updating and changing them. Reality is there was a LOT of nasty code going around that could steal saved passwords. Many viral protection programs did not see it until millions were infected. Infected machines often can no longer be trusted to scan their own files even when viral software is updated to look for it. In short the definitions need to reach you BEFORE the virus does, or often viral code is smart enough to work right around your efforts. A few get hit, then those visitors got hit and it snowballed world wide. Some companies swept it under the rug or worked around it, some deny it happened at all. We've been pretty open about it giving what information we have been able to find as we find it.

In short, to keep from being protected use secure strong passwords, change them periodically (I would never let one go longer than 90 days for anything critical) and work from known clean machines and chances are you'll skip this type of attack completely. VERY few people are getting hit anymore and I have seen only a few cases of a re-injection most of which either didn't change passwords, or did not change ALL passwords. Don't forget ftp sub accounts. These are often handed off to a less savy end user, and seem to get hit far more often than the main ftp.
Reply With Quote
Reply

Bookmarks


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Logging in to admin account using "client login" method... antic Chit Chat Public 4 05-25-2004 09:38 PM


All times are GMT -5. The time now is 07:57 PM.


Vortech Inc. ©2009
Page generated in 1.68742 seconds with 14 queries
[Output: 39.86 Kb. compressed to 38.27 Kb. by saving 1.59 Kb. (3.99%)]