Go Back   5 Star Affiliate Marketing Forums > SEO, Blogging & Internet Marketing Forums > Webmasters Universe

Webmasters Universe Webmaster and Internet topics started by our administrator Larwee.

Reply
 
Thread Tools Display Modes
  #1 (permalink)  
Old 10-08-2007, 12:40 PM
Larwee's Avatar
Larwee Larwee is online now
5 Star Administrator
 
Join Date: Jul 2006
Location: St. Louis, Missouri USA
Posts: 2,673
Default Why Web sites get hacked

A lot of site owners think about security when there is new coverage about a big security breach. However, experts say that most people don't pay much attention to security when building web applications.

According to some experts most site owners are more interested in the way their site looks than they are in security. They say that security is often thought of after a site is built rather than before.

"The Ten Most Critical Web Application Security Vulnerabilities" is a report by the Open Web Application Security Project (OWASP). They want to raise awareness about the biggest security challenges facing Web developers.

The first OWASP list was issued in 2004. They say security hasn't improved much since then. They also say that new technologies such as Rich Internet Applications and AJAX make Web sites look better but also create more opportunities for attacks.

Here are the top 10 Web vulnerabilities according to the Open Web Application Security Project.

1. Cross site scripting (XSS)
2. Injection flaws
3. Malicious file execution
4. Insecure direct object reference
5. Cross site request forgery
6. Information leakage and improper error handling
7. Broken authentication and session management
8. Insecure cryptographic storage
9. Insecure communications
10. Failure to restrict URL access

This link will give you a description of each vulnerability, as well as examples and how to fix it. The information is fairly detailed The top 10 reasons Web sites get hacked | InfoWorld | News | 2007-10-05 | By Jon Brodkin, Network World

Last edited by Larwee : 04-11-2008 at 08:09 AM.
Reply With Quote
  #2 (permalink)  
Old 10-09-2007, 12:36 PM
route609 route609 is offline
5 Star Member
 
Join Date: Sep 2007
Location: UK
Posts: 38
Default Website security

This post is spot on for accuracy. In my time i have known many people/site owners not to pay much attention to site security. This has then lead to hacking, fraud, copywriting etc etc and due to the lazyness or neglegence of the site owner, nothing can be provided as compensation.

One of the main problems i have came accross as a designer is the amount of eccommerce stores that do not pay much attention and care to security pages. (HTTPS)

This is not something that will affect most affiliates as the secure pages will be found on the product site, however site security is something everybody should seriously consider and take note of when designing a site.

Yes, pretty/good looking designs are good, however, common issues like security and other factors e.g download speed, html/css size etc are issues which should always be at the front of mind when creating websites.

Thanks
__________________
Experienced web designer with 2 years experience working for one of the worlds top affiliate companies.
Now with a web design agency where I have been for 1 and a half years.
I have a strong passion for web design and believe there is not a single web site that cannot be improved.

www.paul-wallas.co.uk
Reply With Quote
  #3 (permalink)  
Old 10-10-2007, 01:36 AM
aureliustjin aureliustjin is offline
5 Star Member
 
Join Date: Sep 2007
Location: Australia
Posts: 11
Default

I agree with that. Website security must above all, be every site owners priority. Or else they keep their sites susceptible to hacker attacks.

Design and attractive looking site is but secondary. :-)
__________________
Free Internet Business Videos, Cartoons, Tips and
Strategies at The Unstoppable Profits Blog:
www.AureliusTjin.com
Reply With Quote
  #4 (permalink)  
Old 11-06-2007, 08:16 AM
videosoflife videosoflife is offline
5 Star Member
 
Join Date: Oct 2007
Location: UK
Posts: 5
Default

Are there any organisations or software that will assess a sites vunerability to hackers. Is this subject covered in detail on any sites in a format that can be understood by non techies.
Reply With Quote
  #5 (permalink)  
Old 11-06-2007, 08:50 AM
Larwee's Avatar
Larwee Larwee is online now
5 Star Administrator
 
Join Date: Jul 2006
Location: St. Louis, Missouri USA
Posts: 2,673
Default

videosoflife, Gibson Research is a free service that I have used for years. They do a decent job. You will probably want to scroll down to ShieldsUp and give that a try.

You will notice they have many other tests that you can try. You may want to check some of them out since they can be very helpful.

Here is the link GRC | Gibson Research Corporation Home Page

After you spend some time at the Gibson Research site, you may then want to try Symantec Security Check. It is also free. Here is a link to it Symantec Security Check

Last edited by Larwee : 04-11-2008 at 08:09 AM.
Reply With Quote
  #6 (permalink)  
Old 11-07-2007, 08:09 AM
videosoflife videosoflife is offline
5 Star Member
 
Join Date: Oct 2007
Location: UK
Posts: 5
Default

Thanks for your support on this topic..........you really do have your finger on the pulse.
Reply With Quote
  #7 (permalink)  
Old 11-07-2007, 01:59 PM
Larwee's Avatar
Larwee Larwee is online now
5 Star Administrator
 
Join Date: Jul 2006
Location: St. Louis, Missouri USA
Posts: 2,673
Default

Thanks, videosoflife. Glad I could help.

Our members face many issues as webmasters. The purpose of the Webmasters Universe Forum is to cover some of the important, interesting, informative and/or useful issues. Most of the time you will find topics here that aren't normally covered in any of the other 5 Star forums.

Last edited by Larwee : 04-11-2008 at 08:10 AM.
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Your favorite web host Larwee Webmasters Universe 30 07-01-2008 08:21 PM
Shopster - Drop Ship Affiliate Program - HOT! Linda Buquet AMWSO Affiliates 65 11-07-2007 07:59 AM
Firefox plans to warn users about dangerous sites Larwee Webmasters Universe 1 08-20-2007 01:47 PM
IMGi web design & web marketing - 15% commission min. UK, US, AUS, CAN & EU markets IMGi Affiliate Program Announcements 0 06-21-2007 08:46 AM
Rules about ads on non-profit web sites? tigergem General Topics Affiliate Forum 0 02-17-2007 07:22 AM

All times are GMT -7. The time now is 04:23 AM.

Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO © 2007, Crawlability, Inc.
©2005 - 2008 Linda Buquet - 5 Star Affiliate Programs