About Security One Website
Security of a website is one of the main priority for a webmaster.
But most of the webmaster only the design and what topics should be provided to attract visitors as much as possible.
In fact, if a webmaster ignoring a security website, the webmaster who is injured themselves because a hacker can take important data on a website and also can even make a random view website (deface) is.
Here are some common methods that are often used for hackers to attack a website:
1. Remote File inclusion (RFI)
Methods that exploit weaknesses include PHP script (), include_once (), require (), require_once () the variable is not declared with perfect.
RFI with an attacker can menginclude a file that is outside of the server.
You can read about the full inclusion in the Remote File http://en.wikipedia.org/wiki/Remote_File_Inclusion
2. Local file inclusion (LFI)
Methods that exploit weaknesses include PHP script (), include_once (), require (), require_once () the variable is not declared with perfect.
LFI with an attacker can menginclude a file that is in the server concerned.
3. SQL injection
SQL injection is a technique that utilizes an error writing SQL queries on a website so that a hacker can menginsert some SQL statement to 'query'
with how to manipulate input data to the application.
You can read extensively about SQL injection in http://en.wikipedia.org/wiki/SQL_injection
4. Cross Site Scripting (XSS)
XSS also known with CSS stands for Cross Site Scripting.
XSS is a method or enter a code into the HTML script that you run a website through a browser on the client.
You can read more about the Cross Site Scripting in http://en.wikipedia.org/wiki/Cross-site_scripting
It's the internet saying "No matter the most secure in the internet world",
Really saying is true, but here are some ways that our website is not easy disusupi by the hacker, that it is not 100% secure, but can reduce the risk of our website with the easy-random in random by a hacker.
1. If you are using a CMS such as joomla, phpBB, phpnuke, wordpress and so forth, rajinlah CMS update you with the latest CMS appear if a newer version.
2. Visit sites that discuss about the security of web applications such as: www.milw0rm.com, www.securityfocus.com www.packetstormsecurity.org or for information about the latest bug.
3. Sewalah a security expert to analyze the security of the website your website.
4. Use software such as scanning Acunetix make up for weaknesses that could occur in webdite you, the software can be purchased in www.acunetix.com and if your lucky maybe you can do a search on google.com bajakannya version (sorry this is not recommended: D) .
Hopefully the above explanation can be helpful for all of us.
0 komentar
Posting Komentar