Hi bprof2007. It's not necessary your fault.
Some web hosters have common aliases like /cgi-bin with obsolete software inside.
Also, as giltjr said apache is not the only way to break security.
You may perform vulnerability scanning of your host with Nessus (http://www.nessus.org/) , SAINT (http://www.saintcorporati
Also you may have weak or default ftp/php administration login/password or, even worse, 'hacker' may have access to your home computer and steal all your logins/passwords. Windows have multiple vulnerabilities for last 1-1.5 years, that allow remote user to gain access to your PC.
Main Topics
Browse All Topics





by: giltjrPosted on 2007-02-25 at 15:46:55ID: 18606564
You are assuming that they hacked it through HTTP. The .htaccess is only used by Apache. They could have broken in using ftp, ssh, or telnet.
What is group id and user id on the index file?