<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Website Security</title>
	<atom:link href="http://dave-smith.org/website-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://dave-smith.org/website-security/</link>
	<description></description>
	<lastBuildDate>Mon, 19 Dec 2011 20:51:34 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
	<item>
		<title>By: Dave Smith</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-560</link>
		<dc:creator>Dave Smith</dc:creator>
		<pubDate>Wed, 27 Apr 2011 18:13:35 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-560</guid>
		<description>Thanks Jake,
That is excellent advice and I will look into &#039;libwhisker&#039; you mentioned, any other snippets of advice or sources welcome.
I like your site too, will be reading the posts more fully as I like boats (but don&#039;t have one!) and work in electronics so the marine gps posts definitely interest me.
Thanks for your comment and useful advice.

Cheers

Dave</description>
		<content:encoded><![CDATA[<p>Thanks Jake,<br />
That is excellent advice and I will look into &#8216;libwhisker&#8217; you mentioned, any other snippets of advice or sources welcome.<br />
I like your site too, will be reading the posts more fully as I like boats (but don&#8217;t have one!) and work in electronics so the marine gps posts definitely interest me.<br />
Thanks for your comment and useful advice.</p>
<p>Cheers</p>
<p>Dave</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jake Howard</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-559</link>
		<dc:creator>Jake Howard</dc:creator>
		<pubDate>Wed, 27 Apr 2011 14:16:34 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-559</guid>
		<description>Web security comes from code and server configuration, not 3rd party software. Security is not expensive, it&#039;s common sense and thinking about what you are doing. Once you have a site built, test it. Throw some heuristic queries through each injection point. See if you can sneak useful characters through. Look at the error codes generated. Run libwhisker against the site.There are hundreds of useful tools that can test web application security for free.</description>
		<content:encoded><![CDATA[<p>Web security comes from code and server configuration, not 3rd party software. Security is not expensive, it&#8217;s common sense and thinking about what you are doing. Once you have a site built, test it. Throw some heuristic queries through each injection point. See if you can sneak useful characters through. Look at the error codes generated. Run libwhisker against the site.There are hundreds of useful tools that can test web application security for free.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave Smith</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-103</link>
		<dc:creator>Dave Smith</dc:creator>
		<pubDate>Sun, 17 Jan 2010 01:49:56 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-103</guid>
		<description>Hope the post helps Ray (and sorry for the late reply). Still trying to find time to do the proper web security report, will post here as soon as I do.

Regards,

Dave</description>
		<content:encoded><![CDATA[<p>Hope the post helps Ray (and sorry for the late reply). Still trying to find time to do the proper web security report, will post here as soon as I do.</p>
<p>Regards,</p>
<p>Dave</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: klaverjassen</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-102</link>
		<dc:creator>klaverjassen</dc:creator>
		<pubDate>Sat, 16 Jan 2010 23:32:17 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-102</guid>
		<description>Your site security depends mostly on your hosting provider and server settings as well as to the constant updates and patches of open source CMS such as Joomla, WP... Forums counted too PHPBB i.e.</description>
		<content:encoded><![CDATA[<p>Your site security depends mostly on your hosting provider and server settings as well as to the constant updates and patches of open source CMS such as Joomla, WP&#8230; Forums counted too PHPBB i.e.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ray</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-79</link>
		<dc:creator>Ray</dc:creator>
		<pubDate>Tue, 03 Nov 2009 09:36:28 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-79</guid>
		<description>Hi Dave , I was interested to read your post,and have printed off a copy for future reference!

Regards, Ray</description>
		<content:encoded><![CDATA[<p>Hi Dave , I was interested to read your post,and have printed off a copy for future reference!</p>
<p>Regards, Ray</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave Smith</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-78</link>
		<dc:creator>Dave Smith</dc:creator>
		<pubDate>Sat, 24 Oct 2009 14:36:09 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-78</guid>
		<description>Hello Jacinta,
Just goes to show how careful we have to be, updated my zone alarm (normal updates) and it found an infection. This just shows how we have to have the latest virus/spyware programs and ensure we install all updates regularly. I try to be careful and still end up with problems. There is a lot of bad stuff out there.

Regards

Dave</description>
		<content:encoded><![CDATA[<p>Hello Jacinta,<br />
Just goes to show how careful we have to be, updated my zone alarm (normal updates) and it found an infection. This just shows how we have to have the latest virus/spyware programs and ensure we install all updates regularly. I try to be careful and still end up with problems. There is a lot of bad stuff out there.</p>
<p>Regards</p>
<p>Dave</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave Smith</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-77</link>
		<dc:creator>Dave Smith</dc:creator>
		<pubDate>Sat, 24 Oct 2009 14:07:43 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-77</guid>
		<description>Hello Jacinta,
When you mentioned my site having problems I realised it sounds like your computer. I usually use linux but just booted up windows and double checked and neither my site (this one) nor your&#039;s (www.creatingmybusinessonline.com) has any popups.
What virus/spyware scanning software are you using. I use Zone Alarm which is supposed to be the best but a few weeks ago I accidentally allowed access by 2 .exe programs (I wasn&#039;t paying attention to the alerts and pressed &#039;accept&#039;). this caused both viruses and spyware programs to install. My software was completely up to date as far as updates were concerned but was not the latest zone alarm program. This meant when I scanned it missed things. I then upgraded to the latest Zone Alarm Extreme Security and it found viruses and spyware and eliminated them. I haven&#039;t had any problems since. You may need to upgrade your own protection as it sounds likely you have something on your computer that your virus protection isn&#039;t finding.
Definitely doesn&#039;t sound like the website, I would have seen the same problem.
Hope that helps.

Regards

Dave</description>
		<content:encoded><![CDATA[<p>Hello Jacinta,<br />
When you mentioned my site having problems I realised it sounds like your computer. I usually use linux but just booted up windows and double checked and neither my site (this one) nor your&#8217;s (www.creatingmybusinessonline.com) has any popups.<br />
What virus/spyware scanning software are you using. I use Zone Alarm which is supposed to be the best but a few weeks ago I accidentally allowed access by 2 .exe programs (I wasn&#8217;t paying attention to the alerts and pressed &#8216;accept&#8217;). this caused both viruses and spyware programs to install. My software was completely up to date as far as updates were concerned but was not the latest zone alarm program. This meant when I scanned it missed things. I then upgraded to the latest Zone Alarm Extreme Security and it found viruses and spyware and eliminated them. I haven&#8217;t had any problems since. You may need to upgrade your own protection as it sounds likely you have something on your computer that your virus protection isn&#8217;t finding.<br />
Definitely doesn&#8217;t sound like the website, I would have seen the same problem.<br />
Hope that helps.</p>
<p>Regards</p>
<p>Dave</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jacinta Dean</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-76</link>
		<dc:creator>Jacinta Dean</dc:creator>
		<pubDate>Sat, 24 Oct 2009 12:02:38 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-76</guid>
		<description>Hi Dave,

Thank you so much for your reply. I have read the stopbadware site and checked my site but it isn&#039;t listed with them. Plus I have done a full virus check, spybot and adaware check on my computer as well. I sent an email to D9 but they can tell if anything is wrong.

I am still getting the popups, I got when I loaded your blog website as well.

I am not good at html and have no idea where to begin there. I have done a back up of my blog from the wordpress admin. I am seriously thinking of reinstalling the blog. Was it difficult to do?

Did you find D9 helpful at all? They don&#039;t think there is a problem, however I am still getting the popups going to a gambling site.

Let me know what you think.

Jacinta :&#124;
P.S Thanks for the help I really appreciate it! :)</description>
		<content:encoded><![CDATA[<p>Hi Dave,</p>
<p>Thank you so much for your reply. I have read the stopbadware site and checked my site but it isn&#8217;t listed with them. Plus I have done a full virus check, spybot and adaware check on my computer as well. I sent an email to D9 but they can tell if anything is wrong.</p>
<p>I am still getting the popups, I got when I loaded your blog website as well.</p>
<p>I am not good at html and have no idea where to begin there. I have done a back up of my blog from the wordpress admin. I am seriously thinking of reinstalling the blog. Was it difficult to do?</p>
<p>Did you find D9 helpful at all? They don&#8217;t think there is a problem, however I am still getting the popups going to a gambling site.</p>
<p>Let me know what you think.</p>
<p>Jacinta <img src='http://dave-smith.org/wp-includes/images/smilies/icon_neutral.gif' alt=':|' class='wp-smiley' /><br />
P.S Thanks for the help I really appreciate it! <img src='http://dave-smith.org/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave Smith</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-75</link>
		<dc:creator>Dave Smith</dc:creator>
		<pubDate>Sat, 24 Oct 2009 07:38:17 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-75</guid>
		<description>Hello Jacinta,
One thing I should have mentioned, if you download the index page for viewing make sure you check it with your virus/spyware program, if possible download it to a separate hard drive to view (just in case there is anything in there that could affect your computer-again I&#039;m not an expert but better to be safe). If your ftp program allows viewing of the code while it is still on the website then that is the best option.

Regards

Dave</description>
		<content:encoded><![CDATA[<p>Hello Jacinta,<br />
One thing I should have mentioned, if you download the index page for viewing make sure you check it with your virus/spyware program, if possible download it to a separate hard drive to view (just in case there is anything in there that could affect your computer-again I&#8217;m not an expert but better to be safe). If your ftp program allows viewing of the code while it is still on the website then that is the best option.</p>
<p>Regards</p>
<p>Dave</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Dave Smith</title>
		<link>http://dave-smith.org/website-security/comment-page-1/#comment-74</link>
		<dc:creator>Dave Smith</dc:creator>
		<pubDate>Sat, 24 Oct 2009 07:26:09 +0000</pubDate>
		<guid isPermaLink="false">http://dave-smith.org/?p=139#comment-74</guid>
		<description>Hello Jacinta,
The first I realised I had been hacked was when I received a message from Google when I tried to log in to the site that there was a problem with &#039;badware&#039;. My site (actually several as I was running several subdomains from the same site) was blocked and these messages came up from Google to say that the site was a problem.
There was a link to get further information and it explained that it is often not the site owners fault but either links to other sites containing badware (such as adverts) or that someone may have hacked and inserted their own code in the html to either insert the badware themselves or direct the site to another.

In my case I had a look at the html of the site itself and saw some code I didn&#039;t think belonged there (I&#039;m not an expert on html but the code also contained a russian website link &#039;.ru&#039; so made me suspicious). As I badly needed to review how my sites were set up anyway and as this website and subdomains had not been earning money and were mainly being used to host products for giveaways etc, I decided to delete the entire website and contents and reload from either new or previously saved material on my hard drive.

However, you don&#039;t necessarily have to do this if you think your site has been hacked.
The first thing to do is to check the html code (or php code) of your index pages in the site against your original code with dreamweaver or some other html editor (I use a free program called Kompozer). Even if you don&#039;t know too much about html you can still look for differences. You will need to download the websites index pages for viewing or you may be able to view the site&#039;s code using your ftp program. Mine allows you to right click on the file and select &#039;view&#039;. You can then compare with the copy on your hard drive. Just look for any differences.
If you see something you don&#039;t think should be there in the site copy, try uploading the original copy and overwriting the site copy, and then see if the suspicious behaviour is still there.
If you can&#039;t find anything different the problem may be in the links (including adverts) and it may be necessary to start either checking the adverts or links or removing them to see if the problem disappears. This is what is suggested in the stop badware site.

Also it would be sensible to check the link I put in the post to the site &#039;www.stopbadware.org&#039; as this has some good information on and it can do a check of your site to see if it has been reported for suspicious behaviour (This site was recommended via the message from Google and it is a voluntary site that is trying to help with this type of problem). However your site may have been affected without yet being reported. In this case have a look at the code as above and in the stop badware site and try to eliminate the suspicious behaviour (such as a popup that you didn&#039;t put in there.

I am still looking into how to better protect my sites. The stop badware site recommends auditing your sites to check for vulnerabilities and there are several companies that have services like that, however as some charge a lot I am still trying to find theee best choice, there are supposed to be some free services, and when I find a good service will make a post about it.

Hope this helps a bit.

Best of luck, and let me know if you need any other information and if I can I&#039;ll try to help.

Regards

Dave</description>
		<content:encoded><![CDATA[<p>Hello Jacinta,<br />
The first I realised I had been hacked was when I received a message from Google when I tried to log in to the site that there was a problem with &#8216;badware&#8217;. My site (actually several as I was running several subdomains from the same site) was blocked and these messages came up from Google to say that the site was a problem.<br />
There was a link to get further information and it explained that it is often not the site owners fault but either links to other sites containing badware (such as adverts) or that someone may have hacked and inserted their own code in the html to either insert the badware themselves or direct the site to another.</p>
<p>In my case I had a look at the html of the site itself and saw some code I didn&#8217;t think belonged there (I&#8217;m not an expert on html but the code also contained a russian website link &#8216;.ru&#8217; so made me suspicious). As I badly needed to review how my sites were set up anyway and as this website and subdomains had not been earning money and were mainly being used to host products for giveaways etc, I decided to delete the entire website and contents and reload from either new or previously saved material on my hard drive.</p>
<p>However, you don&#8217;t necessarily have to do this if you think your site has been hacked.<br />
The first thing to do is to check the html code (or php code) of your index pages in the site against your original code with dreamweaver or some other html editor (I use a free program called Kompozer). Even if you don&#8217;t know too much about html you can still look for differences. You will need to download the websites index pages for viewing or you may be able to view the site&#8217;s code using your ftp program. Mine allows you to right click on the file and select &#8216;view&#8217;. You can then compare with the copy on your hard drive. Just look for any differences.<br />
If you see something you don&#8217;t think should be there in the site copy, try uploading the original copy and overwriting the site copy, and then see if the suspicious behaviour is still there.<br />
If you can&#8217;t find anything different the problem may be in the links (including adverts) and it may be necessary to start either checking the adverts or links or removing them to see if the problem disappears. This is what is suggested in the stop badware site.</p>
<p>Also it would be sensible to check the link I put in the post to the site &#8216;www.stopbadware.org&#8217; as this has some good information on and it can do a check of your site to see if it has been reported for suspicious behaviour (This site was recommended via the message from Google and it is a voluntary site that is trying to help with this type of problem). However your site may have been affected without yet being reported. In this case have a look at the code as above and in the stop badware site and try to eliminate the suspicious behaviour (such as a popup that you didn&#8217;t put in there.</p>
<p>I am still looking into how to better protect my sites. The stop badware site recommends auditing your sites to check for vulnerabilities and there are several companies that have services like that, however as some charge a lot I am still trying to find theee best choice, there are supposed to be some free services, and when I find a good service will make a post about it.</p>
<p>Hope this helps a bit.</p>
<p>Best of luck, and let me know if you need any other information and if I can I&#8217;ll try to help.</p>
<p>Regards</p>
<p>Dave</p>
]]></content:encoded>
	</item>
</channel>
</rss>

