Tycoon Talk
Become a Big fish!
The number 1 forum for online business!
Post topics, ask questions, share your knowledge.
Tycoon Talk is part of Freelancer.com - find skilled workers online at a fraction of the cost.

General Discussions


You are currently viewing our General Discussions as a guest. Please register to participate.
Login



Reply
Turkish Hacker Problem please Help.:-(
Old 11-27-2007, 07:54 PM Turkish Hacker Problem please Help.:-(
Novice Talker

Posts: 7
Name: Henry M. Ticong Jr.
Trades: 0
My fellow webmaster, a turkish hacker has been messing our site. I keep on fixing our site but after a day or two they're back. I research on the internet but i couldn't find a precise solution. Please help.. I'm new to this webmaster job.

Here's the scenario:

Turkish hacker can only hacked two tables on my database, they changed the values and insert either a script or promotion of their site.

Please help me.. Thank you so much.
__________________
Take What's Mine..
hendane is offline
Reply With Quote
View Public Profile
 
 
Register now for full access!
Old 11-27-2007, 09:47 PM Re: Turkish Hacker Problem please Help.:-(
Nathand's Avatar
Extreme Talker

Posts: 233
Location: USA
Trades: 0
Do you know how they're hacking your site? Do you have their IP's logged?

First, if you know their IP's block them. Secondly, you need to find out how they are hacking your site. Is it SQL injection, did they guess your password, etc..
Nathand is offline
Reply With Quote
View Public Profile
 
Old 11-27-2007, 10:56 PM Re: Turkish Hacker Problem please Help.:-(
Novice Talker

Posts: 7
Name: Henry M. Ticong Jr.
Trades: 0
@Nathan

I'm really kinda new on webmaster stuff sir. Where can i see the IP log?
__________________
Take What's Mine..
hendane is offline
Reply With Quote
View Public Profile
 
Old 11-27-2007, 11:42 PM Re: Turkish Hacker Problem please Help.:-(
ForrestCroce's Avatar
Half Man, Half Amazing

Posts: 3,023
Name: Forrest Croce
Location: Seattle, WA
Trades: 0
Sounds like sql injection. I thought nobody used that anymore...? Figure out which page is being used to change the data in your tables, then lock it down to prevent injections. Or add some check constraints to the table to keep certain data out.

Your request log, with the IP addresses in it, could be in any number of places depending on what type of web server you're using, and how it's configured.
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
ForrestCroce is offline
Reply With Quote
View Public Profile Visit ForrestCroce's homepage!
 
Old 11-28-2007, 12:12 AM Re: Turkish Hacker Problem please Help.:-(
Novice Talker

Posts: 7
Name: Henry M. Ticong Jr.
Trades: 0
We're using CPanel and PHPmyadmin.

Yes i also think its an SQL injection, they insert html codes or scripts to promote or brag that they are the one who hacked our site.

Guys i really appreciate the quick replies and help i get from you co webmasters. Thank you so much.
__________________
Take What's Mine..
hendane is offline
Reply With Quote
View Public Profile
 
Old 11-28-2007, 04:15 PM Re: Turkish Hacker Problem please Help.:-(
Learning Newbie's Avatar
Defies a Status

Latest Blog Post:
Astounding Republican Paranoia
Posts: 5,662
Name: John Alexander
Trades: 0
Did you get the problem solved?
__________________

Please login or register to view this content. Registration is FREE


Please login or register to view this content. Registration is FREE
Learning Newbie is offline
Reply With Quote
View Public Profile
 
Old 11-29-2007, 01:43 AM Re: Turkish Hacker Problem please Help.:-(
ForrestCroce's Avatar
Half Man, Half Amazing

Posts: 3,023
Name: Forrest Croce
Location: Seattle, WA
Trades: 0
If it's sql injection, using stored procedures is a great line of defense, although you need mysql 5+ for this. But the fastest block you can implement is probably a check constraint on the table disallowing anything containing their url, or an insert trigger that would accomplish the same thing.

If you'd like, we can move this thread to the database forum, where you'll get expert advice regardless of what version of php you're using ... or the php or javascript forum where people can share code to examine user input to prevent this type of attack.
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
ForrestCroce is offline
Reply With Quote
View Public Profile Visit ForrestCroce's homepage!
 
Old 12-02-2007, 07:35 PM Re: Turkish Hacker Problem please Help.:-(
Novice Talker

Posts: 7
Name: Henry M. Ticong Jr.
Trades: 0
For now, my client agreed to temporarily shutdown our hacked site. Maybe after a month or two it will be live again with a new IP address. Hopefully we wont be hacked again, thank you so much for the quick replies sir.
__________________
Take What's Mine..
hendane is offline
Reply With Quote
View Public Profile
 
Old 12-02-2007, 07:39 PM Re: Turkish Hacker Problem please Help.:-(
Novice Talker

Posts: 7
Name: Henry M. Ticong Jr.
Trades: 0
Is there a way that the data on those 2 tables they were hacking can be block or they cannot overwrite? I'm really unsure if it's possible and I'm still new to these job. Thanks.
__________________
Take What's Mine..
hendane is offline
Reply With Quote
View Public Profile
 
Old 12-02-2007, 09:29 PM Re: Turkish Hacker Problem please Help.:-(
ForrestCroce's Avatar
Half Man, Half Amazing

Posts: 3,023
Name: Forrest Croce
Location: Seattle, WA
Trades: 0
Absolutely. Databases have the concept of validation rules; just like you can prevent someone from storing 'three' in a numeric column, you can set up your own rules to make the table reject changes that would leave certain values. Look into check constraints.
__________________

Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
|
Please login or register to view this content. Registration is FREE
ForrestCroce is offline
Reply With Quote
View Public Profile Visit ForrestCroce's homepage!
 
Reply     « Reply to Turkish Hacker Problem please Help.:-(
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off





   
RSS Feed  Feeds: RSS   JS   XML
RSS Feed  Feeds for this forum: RSS   JS   XML



Page generated in 0.97994 seconds with 12 queries