GoFuckYourself.com - Adult Webmaster Forum

GoFuckYourself.com - Adult Webmaster Forum (https://gfy.com/index.php)
-   Fucking Around & Business Discussion (https://gfy.com/forumdisplay.php?f=26)
-   -   Build (almost) unhackable page (https://gfy.com/showthread.php?t=71593)

Friday 08-10-2002 05:43 AM

Build an (almost) unhackable page
 
Encrypted users database with a hidden key, so even if a fucking hacker gets access to the server he can't get their info...

What to do to protect the server 99%?

Is it possible?

How?

BTW: I have asked before on the fucking Q&A but it seems no body checks there...

:helpme

greentea 08-10-2002 05:51 AM

Anything is possible sherlock.....

TFCash 08-10-2002 06:35 AM

The only secure server is one that is not hooked up to the net !!! There really is no such thing as a secure solution :)



Tim
:Graucho

Friday 08-10-2002 06:53 AM

Quote:

The only secure server is one that is not hooked up to the net !!! There really is no such thing as a secure solution
Well, I know that but my question was about solutions, not about common knowledge...

BlackRain 08-10-2002 09:02 AM

Hack Proof?

No such thing.

There is "one" of you protecting your data.

And there are literally "thousands/millions" who possibly want your files and will try/invent methods to get it.


Check your log files for unusual requests and ban the IP/useragent. But if you have a high unique visit daily, you have to be doing this in real time to prevent brute force attacks.


Good luck.

TheDoc 08-10-2002 09:57 AM

firewall on the network, firewall on the server, ftp and shell access turned off all services off. Root password 300 characters long with all kinds of fucked up shit in it. Then hire a guy to sit and watch the box 24/7. After that you need a strong team of people that keep up with every exploit that gets found for the software you are using. That is pretty much hack proof then.

dodo 08-10-2002 10:16 AM

encrypt your passwords with md5. if a hacker gets hold of the encrypted passwords it would be worhtless to him. :thumbsup

_

Friday 08-10-2002 02:14 PM

Thanks to: TheDoc and Dodo - although I know all this stuff, I was hoping to get some idea about database I mean if I use md5 I use it with a key, now if someone hacks into the server and gets the key, he gets the database... But again thanks for your reply! :)

Now BlackRain - Did I say Hack Proof???

No I didn't I only asked for "Almost unhackable"...

More replies about database are welcomed!

Thanks

BlackRain 08-10-2002 03:01 PM

Database for what?

Is it for username/password combos, images, movies?

What are using the database for?

Will it be open to the public i.e. internet or private VPN/network?

If you give us a little more information about your intent it would be helpful!

TheDoc 08-10-2002 03:08 PM

Could do like multi network cards with 2 servers infront of your database machine making the db machine the only one allowed to get commands from the 2 servers over encrypted network packets. Moreless makes it 2 or 3 stages deep from direct internet access. Other than that..I can't think of a way to really make it secure but then again i'm not a network person.

That possible? Not by me but I know it can be done :)

Friday 08-10-2002 03:33 PM

Thank you doc you are great :)

BlackRain - It's gonna be a regular database of users for non adult web site, in the data will be fields of user name/password and details about the users (text only) MAYBE credit card numbers, I am gonna need this data base to let them into parts of the site, basically it's like an adult web site access but since I might store their credit cards as well and whenever they access the server with their user name they can make changes to their data and inside the web site I need it to be super secured - as much as possible, they will also have the option to upload files, but that's not related...

Thanks

Lane 08-10-2002 04:24 PM

Quote:

Originally posted by TheDoc
Could do like multi network cards with 2 servers infront of your database machine making the db machine the only one allowed to get commands from the 2 servers over encrypted network packets. Moreless makes it 2 or 3 stages deep from direct internet access. Other than that..I can't think of a way to really make it secure but then again i'm not a network person.

That possible? Not by me but I know it can be done :)

tell us a solution about brute force attacks too plz

TheDoc 08-10-2002 04:29 PM

Mabey I should start a consulting company :)


Simple fix on brute force attacks is use an image key and get off of apache auth.

That will be $2000 please.

Reaper 08-10-2002 04:35 PM

Best fix of all...
Shut off your computer and hold on to your hardrive after you've unpluged it.!

tree 08-10-2002 05:43 PM

i hear if you format c: your computer cant be hacked

foe 08-10-2002 05:48 PM

Use md5 encryption

letshunt 08-10-2002 05:55 PM

Pix firewall...upper end one..not the 506...configure the IOS correctly and install Cisco HIP software on your server....I haven't seen too many hackers defeat this system...about the third ping and HIP blocks the IP.

Check it out on Cisco's site....I have probably fifty similiar installations and not had a successful hack. Cisco claims it can't be hacked...of course, they also claim they hung the moon, too.

In all seriousness, it is a difficiult system to defeat. Have seen many try and move on to easier prey....something that says NT on it usually. I use it at home and then stick zone alarm on just for internal stuff, pretty tough combination.

Forget all the proxy server bullshit out there, they are easy prey for a real hacker...the kiddies get stumped on them cause they can't find a port open but the good ones breeze right through em.

Friday 08-11-2002 07:25 AM

[
Quote:

Pix firewall...upper end one..not the 506...configure the IOS correctly and install Cisco HIP software on your server....I haven't seen too many hackers defeat this system...about the third ping and HIP blocks the IP. Check it out on Cisco's site....I have probably fifty similiar installations and not had a successful hack. Cisco claims it can't be hacked...of course, they also claim they hung the moon, too.

In all seriousness, it is a difficiult system to defeat. Have seen many try and move on to easier prey....something that says NT on it usually. I use it at home and then stick zone alarm on just for internal stuff, pretty tough combination.

Forget all the proxy server bullshit out there, they are easy prey for a real hacker...the kiddies get stumped on them cause they can't find a port open but the good ones breeze right through em.
Thanks :thumbsup

I'll check it up


All times are GMT -7. The time now is 11:16 PM.

Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
©2000-, AI Media Network Inc123