View Single Post
Old 05-25-2016, 02:12 PM  
roxpoxy
Confirmed User
 
roxpoxy's Avatar
 
Industry Role:
Join Date: Jan 2015
Posts: 101
sucuri.net is a good start.

does your script use a database? have an admin area with elevated privledges?
allow uploads of images or posting of text?

if you can, scan all files for "base64_decode(" & other common tale tale signs of compromise. "can't remember off the top of my head but a quick google search should point you in the right direction".
__________________
roxpoxy is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote