Showing posts with label Technical Support. Show all posts
Showing posts with label Technical Support. Show all posts

Tuesday, September 9, 2008

A Russian Security Hole In My Website

Well, I heard from the Ukrainians regarding the problem I blogged about earlier today regarding Russian websites targeting my Eyes on Texas website.

After the scary Ukrainian response I called the U.S. phone line support and had no wait and quickly figured out the Ukrainian was feeding me misinformation.

Below is the technical support I got from Jenny the Ukrainian.....

I'm afraid there is a security hole in your web site that was used by hackers for sending spam through your site. The reason is that durangotexas.com/awstats/data/ folder has 777 permissions, it means that it is writable for anyone in the web. It is not secure to have permission for the folders set to 777 as it allows everybody to do everything to this file. Having files/folders with such permissions anyone can write to it. This means a security hole since everybody on the server can overwrite these files or can write, remove or overwrite files in the directories. You need to chmod your folder/files to permission mask 755 to prevent hacker's attacks in future. You can do it via Webshell or any standalone ftp client. 755 is a read permissions for owner, group and others; write permissions for owner ONLY; execute permissions for owner, group and others.

If you have any further questions, please feel free to contact us at anytime, we are available 24/7.

Kind regards,
Jenny Danilenko
Technical Support