Protecting Your Website Against Hacking

Ranked #592 in Internet, #28,485 overall

Ways To Protect Your Website Against Hacking

Today in the age of affiliate marketing, more and more people are creating their own sites to market products. Having your own website will definitely help you in getting more customer purchasing your products. You will also attract hackers to play around with your site, if you have not taken enough care to protect your site. There are many hacks possible in almost all the programming languages used for websites today. With little care you can protect your site and your online identity.

The most common type of hacking is the Cross site scripting also called as XSS. The cross site scripting can be carried out in different ways, DOM-based, stored or reflected. Instead of looking into what these hacks are, it's best to understand how you can protect your sites from such hacks. The best way to protect your site from such attacks, is to ensure you validate all the inputs to your site. Any form of inputs like page headers, cookies, query string, hidden fields used on forms and forms fields used to gather some sort of input from the users should be validated. Many site owners normally user web forms for subscription to gather user email. Such inputs should be validated against expected input types and length. Any input to the web forms should always be HTML encrypted to avoid any unwanted script elements. The best way to validate inputs to the site would be to validate against what should be allowed rather than what should not be allowed.

The second most common hacking technique is the Google hacking. Today most search engines provide lot of tools to webmasters to track and analyze their site rankings. Google has become the most important search engine and it seems to be on top of the list for both web site owners as well as hackers. Google hacking refers to the techniques used to gain access to unauthorized information through advanced search queries. Google hacking employs searching sites using special characters, logical operators and operators such as cache, filetype, link, site, intitle, inurl. Many web masters put critical data on their servers to enable access from anywhere. Though such documents are kept isolated, it is easy to get access to such pages. Unless specified in the robots.txt file, all the documents on a particular site are indexed by the search engine spiders. Such documents are then available to the public via search engine queries. Some of the advanced queries like ext:doc or filetype:doc will search all the word doc files available on the servers. Similarly site:xyz.com private will search for all instances of private on the site xyz.com.

To protect yourself from such attacks you should take necessary precautions like avoiding any storage of critical or sensitive data on the server. If it is necessary, use robots.txt file to avoid indexing of such documents or folders. E.g. User-agent: *
Disallow: /documents

These instructions will not allow the contents of folder "documents" to be indexed by any search engine spider. Similarly the meta tag "meta name='SPIDERNAME' content='NOARCHIVE' " can be used on individual HTML pages, if you do not want that page to be indexed by any search engine. Here you need to put the correct spider name of search engine you want to block.

Lastly you should also check if your web server allows directory listing. Directory listing will allow anyone to see the contents of directory by typing in the website address and existing folder name. If you type http://domainname.com/somefoldername/, and you see the contents of the directory, you should immediately talk to the web host and get it disabled for your site.

Though it is virtually impossible for a normal website owner to avoid all hacking attempts, it is possible to minimize them using some basic precautions.




Used Cars Winnipeg PricePiece Marketing
Web Project Manager B2B Marketing

Hacking Videos

Introduction to Hacking
by elithecomputerguy | video info

1,792 ratings | 175,471 views
automatically generated by YouTube

Hacking Related Books

Loading

News on website hacking

B2C Marketing | Business To Consumer Marketing

Loading

Fan of This Lens? Feel Free to Sign my Guestbook and Rate my Lens!

Reciprocity Guaranteed!

  • Julianne May 24, 2012 @ 9:39 pm | delete
    Great post! Thanks for the tips. I thought you might find this relevant. http://www.rackspace.com/blog/... It's a graphic of an Anatomy of an Attack ? Why You Need to Consider Security in the Cloud.
  • Julianne May 24, 2012 @ 9:39 pm | delete
    Great post! Thanks for the tips. I thought you might find this relevant. http://www.rackspace.com/blog/... It's a graphic of an Anatomy of an Attack ? Why You Need to Consider Security in the Cloud.
  • LemonSeo Apr 18, 2012 @ 1:07 am | delete
    thanks for the information, helps in setting some extra security measures to secure my website from spammers and hackers

    Filetype Doc | Free Document Search Engine
  • Kim Feb 23, 2012 @ 8:54 am | delete
    The robots.txt file is not a guarantee that search engines won't index your content. It is simply a statement of your *wishes* and all search engines are free to abide by your wishes or disregard them completely. The only way to truly prevent indexing is to put it in a password-protected area.
  • ibra Feb 7, 2012 @ 10:51 am | delete
    thanks for this article

    http://www.weird-strange-facts.com
  • Sp00ky Oct 19, 2011 @ 3:54 pm | delete
    very useful information
  • ktunnel Sep 23, 2011 @ 4:21 am | delete
    Ktunnel proxy is a free proxy to unblock several websites like Facebook, Twitter, YouTube and others. Fast proxy to secure browsing anonymously.
    Here the ktunnel proxies :
    ktunnel
    ktunnel
    Do not forget to invite all your friends to use ktunnel proxy so that they will also enjoy browsing online without any restrictions. Enjoy it!
  • fbproxy Jul 8, 2011 @ 6:57 pm | delete
    Love your style of writing. Thanks!

    ===================================================================
    Facebook Proxy | Facebook Proxy | Facebook Proxy | Facebook Proxy | Facebook Proxy
  • australiasbest Jun 23, 2011 @ 11:42 pm | delete
    Thank you for the useful info. As a website owner I now can take more caution, thanks!.
  • May 27, 2011 @ 7:51 pm | delete
    I found this lens very interesting! :) Useful tips and informations!
  • Load More

Quote Of The Day

"In Cyberspace, the First Amendment is a local ordinance."
-John Perry Barlow-

Interesting keyword combinations

Searchers to access Protecting Your Website Against Hacking page used these terms. Sometimes they are funny but in some cases they are quite hilarious. Judge it yourself!

website hacking
hacking websites
hacking a website
hacking website
protecting website from hackers
protect website from hacker
how to protect website from hacking
forms website hacks
protect web server against hacking
avoid website hacking
hacking related web content

by

PricePiece_Marketing

We are specialized in Streaming Video and Video Email Communications. It is our business to efficiently provide access to competitively priced, professional... more »

Feeling creative? Create a Lens!