Sites Hacked

I agree that the server needs to be secure as possible, but in my experience, most localised site hacks are done because the hacker has taken advantage of the site in a vulnerable state.

basic-linux-security.htm

Is a useful guide for setting up a Linux server securely (of course, this should be taken with a pinch of salt!)

Looking at the issue, an easy to spot vulnerability within the vBulletin the forums run on is that users can sign up with the same password as their username, e.g. stugster, stugster.

This would be an ideal situation for someone who wanted to "hack" or take advantage of such poor security. Sift, update :p

That's a very good website, but you shouldn't just follow the script verbatim without knowing what you're doing. Get a security guy or Linux guru to have a look at that web page and do it for you. The reason I say is that is because I saw one or two things in there which might break some functions on your website depending on how it was set up.
 
Upvote 0

Latest Articles