easyhostmedia
Well-known member
It's amazing and scary how simple clients make their passwords...
Lost count how many times i have reminded clients to use complicated passwords.
It's amazing and scary how simple clients make their passwords...
It's amazing and scary how simple clients make their passwords...
Why should they make them complicated?
Hi,
Hackers now a days are doing lot of such activities and shared servers are often the best targeting ones. Considering this, you have to be on your toes to make the server secure on the core level, as a small loop holes causes hacker to go right into core to view the files that they should not viewing and exploiting the information altogether.
Hack into one account and defacing all the accounts gets quite easy in such situation. You got to isolate each user properly, so if hacker gets into one account, he is not able to go beyond that particular user to get files/configurations from the other users.
Properly configured mod security does pretty good job, but again not 100% full proof. Vulnerability assessment has to be done and the logs should be audited on a regular basis to see activities.
Few things to start with:
1. Rotational passwords changes (if needed enforced)
2. Ensure clients updating their CMS platforms
3. Run complete security check and optimization on the server level, ensuring there is no open holes patched in by certain hacker.
4. If all above done and security issues continues and its not coming from specific web site, highly consider re-install and restoration of the accounts into brand new setup that has been pre-secured and optimized before accounts placed on.
I agree with your recommendations but I highly doubt both providers and EU do this or will be willing to do this often. Most hosting providers are set up and forget.:twocents:
easyhostmedia as always very dedicated , web hosting superb