Software Hacking Problems

Get answers to common Article Dashboard installation questions and tips on customizing the script for your site.

Software Hacking Problems

Postby picman2 » Sun Mar 14, 2010 4:47 pm

Hi Guys,
I've had Article Dashbord for a long time and now my site has been hacked and my question is that why havent the software produces provided some more protection in their software and contacted the people they've sold too to have their software updated to include better security fixes.

I have no real technical knowledge to impliment the changes or reistall the software after a major attack so now I have no article directory. I've contacted my host Hostgator and its looking at this stage that they may not be able to restore the account either.

I've read through the security section and it seems even though my site had the standard admin security passwords these hackers were easily able to attack this software simply because it had the same standard problems throughout the software design.

Can Article Dashboard help me restore my account please as I had them install the account the first time as well?
picman2
 
Posts: 2
Joined: Sat Mar 13, 2010 11:12 pm

Re: Software Hacking Problems

Postby winalot » Mon Mar 22, 2010 7:08 pm

Have just found this forum -

I know hacking has been an issue with AD script, but if you protect your admin folder, that should help.

Do this by putting an htaccess file in there and add the following:

<LIMIT GET>
order deny,allow
deny from all
allow from YOUR.IP.ADDRESS
</LIMIT>

You must have a static IP for this to work.

That will restrict access to the admin folder to your IP only.

So far it has worked for me.
winalot
Active Member
 
Posts: 26
Joined: Mon Mar 22, 2010 7:03 pm

Re: Software Hacking Problems

Postby GardenSimply » Thu Mar 25, 2010 12:36 am

Hi! Welcome to the forum all ...

Yes, protecting the admin folder and not mass approving articles are two very effective deterrents. I ignore hackers. They are small people with bitter lives. Keep good hosting, good backups, and learn to understand the technicalities of the scripts you choose to run.

Article Dashboard has not been in active development for some time and it is a 'use at your own risk' sort of script. I have used many MANY scripts over the years, seen them come and go, drop out of development and support (First Page editor comes to mind, anyone know whatever happened to that project?) and I've rarely seen the animosity that has been directed at ArticleDashboard.

It is frustrating that such an 'almost good' script that works so well... almost... got shut down like it did and didn't go on to further development and fame (like wordpress) but unless more of the code was opened up to revision and further support, would be developers could only go so far. Still, I've never found another script that overshadows AD except in active development.

picman, if your hosting company cannot find and delete the offending category issue (which is most certainly the problem) they need to look closer. Stay on them. If you roll back to a previous backup, this should solve the problem. If they keep good backups. A good host always keeps good backups, but if they do not have one, remember, it is not really their responsibility. I would not trust anyone (even my good hosting) to not keep at least a monthly backup of my database and template files.

I don't know if ArticleDashboard is still installing the script for people... anyone know? I have helped restore a number of downed sites the last few weeks after this last rat person (direct quote from Paul Myers, LOL) went through having his fun. If I can help you in anyway, I will be happy to do so.

Protect your admin folder and you should be quite fine.
User avatar
GardenSimply
Admin
 
Posts: 208
Joined: Sat Sep 15, 2007 10:31 am
Location: Oklahoma

Re: Software Hacking Problems

Postby abilash2012 » Mon Aug 30, 2010 5:45 am

Hello Sabi,

I am a network security engineer (building systems security) and ethical hacker, I hope I can help you with your study.

Computer crackers (which I think you mean) are not hackers. They are malicious users. To cut to the chase, they break the Triangle Security architecture: CIA- Confidentiality, Integrity, and availability. Crackers obtain personal information, and exploit it. Several types of attacks can be performed by efferent people. Example: A DOS or Denial of Service attack, shuts down a website temporarily because the attacker is overflowing the website, this makes the website unavailable to people who may need it.

=================
Breast Enhancement Cream | Breast Enhancement Pills
abilash2012
New Member
 
Posts: 6
Joined: Thu Aug 26, 2010 4:10 am


Return to Article Dashboard Installation and Customization

Who is online

Users browsing this forum: No registered users and 1 guest