> Do you have any ideas how this guy did this ..
ther could be multiple ways to do it.
As it is PHP, I guess that it was due to a vulnerability somewhere in your other php scripts, or even another application hosted on the same physical server.
Best you check your logs.
> .. and how to patch the issue?
1. secure your applications, in particular check *every and all* input (from user, http header, database, whtever) and reject everything you do not know --> whitelisting
2. secure your configurations (php.ini, httpd.conf)
3. secure your operating system as a second line of defence, this includes strong permissions for process users and file access
Main Topics
Browse All Topics





by: Abs_jaipurPosted on 2006-04-05 at 20:08:11ID: 16388705
Hi,
Are you running any public forums or your site maked through the template and use the phpbb. that "Mostly Hacker attack on forums/ board/template to find out security holes and hack sites". Hacker guys have already hacked thousand of sites to find out security holes on forums/boards/template all over world.
If you are using any forums/board then I would suggest that you upgrade to the latest version to prevent this from happening again and make sure that you always keep your forum up-to-date
If you didn't use this then you have to contect your hosting company and ask to the latest backup of your site. they will provide you the latest back up.
The hacker changes in the coding of the yyoue default page so think you shoul recompile or recheck whole page coding . In the page there may be redirect script or not