Build (almost) unhackable page

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Friday
    Confirmed User
    • Apr 2002
    • 157

    #1

    Build (almost) unhackable page

    Encrypted users database with a hidden key, so even if a fucking hacker gets access to the server he can't get their info...

    What to do to protect the server 99%?

    Is it possible?

    How?

    BTW: I have asked before on the fucking Q&A but it seems no body checks there...

    Last edited by Friday; 08-10-2002, 04:45 AM.
    ...
  • greentea
    Confirmed User
    • Mar 2002
    • 6580

    #2
    Anything is possible sherlock.....
    blunts

    Comment

    • TFCash
      Confirmed User
      • Apr 2001
      • 1738

      #3
      The only secure server is one that is not hooked up to the net !!! There really is no such thing as a secure solution



      Tim
      TeenFlood.com Online since 1998.

      TFCash KissMeGirl
      VirginRiches MondoBucks

      tim at tfcash.com or submit a ticket at our HelpDesk

      Comment

      • Friday
        Confirmed User
        • Apr 2002
        • 157

        #4
        The only secure server is one that is not hooked up to the net !!! There really is no such thing as a secure solution
        Well, I know that but my question was about solutions, not about common knowledge...
        ...

        Comment

        • BlackRain
          Confirmed User
          • May 2002
          • 110

          #5
          Hack Proof?

          No such thing.

          There is "one" of you protecting your data.

          And there are literally "thousands/millions" who possibly want your files and will try/invent methods to get it.


          Check your log files for unusual requests and ban the IP/useragent. But if you have a high unique visit daily, you have to be doing this in real time to prevent brute force attacks.


          Good luck.

          Comment

          • TheDoc
            Too lazy to set a custom title
            • Jul 2001
            • 13827

            #6
            firewall on the network, firewall on the server, ftp and shell access turned off all services off. Root password 300 characters long with all kinds of fucked up shit in it. Then hire a guy to sit and watch the box 24/7. After that you need a strong team of people that keep up with every exploit that gets found for the software you are using. That is pretty much hack proof then.
            ~TheDoc - ICQ7765825
            It's all disambiguation

            Comment

            • dodo
              Confirmed User
              • Jan 2002
              • 162

              #7
              encrypt your passwords with md5. if a hacker gets hold of the encrypted passwords it would be worhtless to him.

              _
              FREE TRAFFIC TRADING on any host. Also try our 200% traffic back program.Click here
              We host the scripts for you so you trade on our bandwidth.

              Comment

              • Friday
                Confirmed User
                • Apr 2002
                • 157

                #8
                Thanks to: TheDoc and Dodo - although I know all this stuff, I was hoping to get some idea about database I mean if I use md5 I use it with a key, now if someone hacks into the server and gets the key, he gets the database... But again thanks for your reply!

                Now BlackRain - Did I say Hack Proof???

                No I didn't I only asked for "Almost unhackable"...

                More replies about database are welcomed!

                Thanks
                ...

                Comment

                • BlackRain
                  Confirmed User
                  • May 2002
                  • 110

                  #9
                  Database for what?

                  Is it for username/password combos, images, movies?

                  What are using the database for?

                  Will it be open to the public i.e. internet or private VPN/network?

                  If you give us a little more information about your intent it would be helpful!

                  Comment

                  • TheDoc
                    Too lazy to set a custom title
                    • Jul 2001
                    • 13827

                    #10
                    Could do like multi network cards with 2 servers infront of your database machine making the db machine the only one allowed to get commands from the 2 servers over encrypted network packets. Moreless makes it 2 or 3 stages deep from direct internet access. Other than that..I can't think of a way to really make it secure but then again i'm not a network person.

                    That possible? Not by me but I know it can be done
                    ~TheDoc - ICQ7765825
                    It's all disambiguation

                    Comment

                    • Friday
                      Confirmed User
                      • Apr 2002
                      • 157

                      #11
                      Thank you doc you are great

                      BlackRain - It's gonna be a regular database of users for non adult web site, in the data will be fields of user name/password and details about the users (text only) MAYBE credit card numbers, I am gonna need this data base to let them into parts of the site, basically it's like an adult web site access but since I might store their credit cards as well and whenever they access the server with their user name they can make changes to their data and inside the web site I need it to be super secured - as much as possible, they will also have the option to upload files, but that's not related...

                      Thanks
                      ...

                      Comment

                      • Lane
                        Will code for food...
                        • Apr 2001
                        • 8496

                        #12
                        Originally posted by TheDoc
                        Could do like multi network cards with 2 servers infront of your database machine making the db machine the only one allowed to get commands from the 2 servers over encrypted network packets. Moreless makes it 2 or 3 stages deep from direct internet access. Other than that..I can't think of a way to really make it secure but then again i'm not a network person.

                        That possible? Not by me but I know it can be done
                        tell us a solution about brute force attacks too plz

                        Comment

                        • TheDoc
                          Too lazy to set a custom title
                          • Jul 2001
                          • 13827

                          #13
                          Mabey I should start a consulting company


                          Simple fix on brute force attacks is use an image key and get off of apache auth.

                          That will be $2000 please.
                          ~TheDoc - ICQ7765825
                          It's all disambiguation

                          Comment

                          • Reaper
                            Registered User
                            • Jul 2002
                            • 44

                            #14
                            Best fix of all...
                            Shut off your computer and hold on to your hardrive after you've unpluged it.!
                            The war has just begun or has it passed us all by?

                            Comment

                            • tree
                              Confirmed User
                              • Nov 2001
                              • 1601

                              #15
                              i hear if you format c: your computer cant be hacked

                              Comment

                              • foe
                                Confirmed User
                                • May 2002
                                • 5246

                                #16
                                Use md5 encryption

                                Comment

                                • letshunt
                                  Confirmed User
                                  • Mar 2002
                                  • 196

                                  #17
                                  Pix firewall...upper end one..not the 506...configure the IOS correctly and install Cisco HIP software on your server....I haven't seen too many hackers defeat this system...about the third ping and HIP blocks the IP.

                                  Check it out on Cisco's site....I have probably fifty similiar installations and not had a successful hack. Cisco claims it can't be hacked...of course, they also claim they hung the moon, too.

                                  In all seriousness, it is a difficiult system to defeat. Have seen many try and move on to easier prey....something that says NT on it usually. I use it at home and then stick zone alarm on just for internal stuff, pretty tough combination.

                                  Forget all the proxy server bullshit out there, they are easy prey for a real hacker...the kiddies get stumped on them cause they can't find a port open but the good ones breeze right through em.
                                  The object of war is not to die for your country but to make the other bastard die for his. -George Patton

                                  Comment

                                  • Friday
                                    Confirmed User
                                    • Apr 2002
                                    • 157

                                    #18
                                    [
                                    Pix firewall...upper end one..not the 506...configure the IOS correctly and install Cisco HIP software on your server....I haven't seen too many hackers defeat this system...about the third ping and HIP blocks the IP. Check it out on Cisco's site....I have probably fifty similiar installations and not had a successful hack. Cisco claims it can't be hacked...of course, they also claim they hung the moon, too.

                                    In all seriousness, it is a difficiult system to defeat. Have seen many try and move on to easier prey....something that says NT on it usually. I use it at home and then stick zone alarm on just for internal stuff, pretty tough combination.

                                    Forget all the proxy server bullshit out there, they are easy prey for a real hacker...the kiddies get stumped on them cause they can't find a port open but the good ones breeze right through em.
                                    Thanks

                                    I'll check it up
                                    ...

                                    Comment

                                    Working...