Tycoon Talk
Become a Big fish!
The number 1 forum for online business!
Post topics, ask questions, share your knowledge.
Tycoon Talk is part of Freelancer.com - find skilled workers online at a fraction of the cost.

Website and Server Administration Forum


You are currently viewing our Website and Server Administration Forum as a guest. Please register to participate.
Login



Reply
our website got a asprox silent defacement attack
Old 12-30-2008, 06:10 AM our website got a asprox silent defacement attack
Novice Talker

Posts: 4
Name: Tom
Trades: 0
We just found out about a new attack that actually ruin our database - the website seems to be ok but the database was corrupted - any direction what to do with that?
Tomson is offline
Reply With Quote
View Public Profile
 
 
Register now for full access!
Old 12-30-2008, 02:39 PM Re: our website got a asprox silent defacement attack
Skilled Talker

Posts: 80
Name: John
Location: Sacramento
Trades: 0
A little clarity would help:

Do with what? The Attack, Website, or Database?
Server? Apache, IIS, or other?
Database? Oracle, MSSQL, MySQL?

Generally:

Update & Patch the Server & Script.
Restore from Backup (if Possible).
Envision_frodo is offline
Reply With Quote
View Public Profile
 
Old 12-31-2008, 07:42 AM Re: our website got a asprox silent defacement attack
Novice Talker

Posts: 9
Name: Tom Raef
Trades: 0
Your only course of action is to restore the database from a hopefully good backup.

After that, you'll be on the hackers radar screen for awhile so you'd better find out how they got in. If it is asprox, you'll have to search any forms you have to check for SQL injection points of entry.

Validate all data entry points. If passing data in the URL between webpages, validate that data before it gets to the SQL server and then have the SQL query validate it again.

As you found out, you can't be too careful.

If you're using Micrsoft SQL or a newer version of MySQL, you should take a look at using stored procedures for your database transactions. Carefully crafted stored procedures can reduce the threat of SQL injection attacks.

Let me know if you need further help in this.
__________________
We Watch Your Website - you go do what you do best!

Please login or register to view this content. Registration is FREE
WeWatch is offline
Reply With Quote
View Public Profile
 
Old 01-07-2009, 04:50 AM Re: our website got a asprox silent defacement attack
Novice Talker

Posts: 4
Name: Tom
Trades: 0
WeWatch, Envision frodo - Thanks for great info
While searching the net I found some great info on blog name:
http://chaptersinwebsecurity.blogspo...1_archive.html
In one of his post he recommended on a tool name dotdefender that knows how deal with web application attacks. I downloaded the tool and I was surprised, its actually stop the attacks and I could see also the attacks happening.
I contacted the guy from the blog I mentioned above and he also recommend on a way to clean the database from all the injection attacks we had.
I will update in a week and let you know how it works out.
Tomson is offline
Reply With Quote
View Public Profile
 
Reply     « Reply to our website got a asprox silent defacement attack
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off





   
RSS Feed  Feeds: RSS   JS   XML
RSS Feed  Feeds for this forum: RSS   JS   XML



Page generated in 0.14082 seconds with 12 queries