How to avoid hacking



1.    Implement a firewall, antivirus and anti-spyware
2.    Develop a corporate security policy (unique passwords, password change every 90days)
3.    Don't run unnecessary network services
4.    Conduct a vulnerability test
5.    Keyword Filter to block out any harsh words. Use a whitelist before accepting any data from a user. (Whitelists reject all data that are not included on the OKed list.)
6.    Unsolicited Installation of Scripts
7.    Avoid Scam/Spammy Websites
8.    Make sure your files are using the correct CHMOD Permissions
9.    Change default table prefix for opensource scripts
10.  Check code before use of 3rd Party Scripts, Plugins, widgets
11.  Checking Your Logs Regularly
12. Blocking Search engine spiders from indexing admin section through robots.txt by adding Disallow: /wp-admin
13. Avoid .htaccess hack by # STRONG HTACCESS PROTECTION


order allow,deny
deny from all
satisfy all

14. Not allow browse through your directory by add code in htaccess file
# disable directory browsing
Options All –Indexes
15. Secure config files by adding code in htaccess
# protect wp-config.php


Order deny,allow
Deny from all

16. use .htaccess to restrict access and allow only specific IP addresses to admin directory by
# deny access to wp admin
order deny,allow
allow from 192.168.0.11 # This is your static IP
deny from all
17. Block script injection, and unwanted modification of _REQUEST and/or GLOBALS. In htaccess
# protect from sql injection
Options +FollowSymLinks
RewriteEngine On
RewriteCond %{QUERY_STRING} (\<|%3C).*script.*(\>|%3E) [NC,OR]
RewriteCond %{QUERY_STRING} GLOBALS(=|\[|\%[0-9A-Z]{0,2}) [OR]
RewriteCond %{QUERY_STRING} _REQUEST(=|\[|\%[0-9A-Z]{0,2})
RewriteRule ^(.*)$ index.php [F,L]
18. Make sure firewall and antivirus are always running before you access the Internet. If you want to exit or turn off your firewall or antivirus program, disconnect from the Internet first.
19. Encoding output data will stop script injection in the browser.
20. Never use filename or files supplied by users in any server-based resources including images and script inclusions.
21. Do not automatically use credentials or tokens submitted by browsers. “The only solution is to use a custom token that the browser will not ‘remember,’” writes OWASP.
22. When possible, avoid using interpreters. If you must use them, OWASP recommends to “use safe APIs, such as strongly typed parameterized queries and object relational mapping libraries.”
23. Use prepared statements, parameterized queries, or stored procedures. Do not use Dynamic SQL.
24. When connecting to a database use a less privilege account. That account should not be able to drop the “able” or “create.”
25. Never write your own encryption algorithms, it takes teams of encryption professionals to do this appropriately.
26. Only use tried, trued, and approved public encryptions.
27. Never generate keys while you are connected online.
  1. Use an index, indirect reference map or another indirect method to avoid exposure of direct object references. If you can’t avoid direct references, require authorization for website visitors before displaying them.
29. All private URLs and business functions need to be password protected by an effective access control mechanism that verifies the user’s role and privileges.
30. Remove default, test and example pages and applications that usually come with web server software.
31. never post your IP address on the Internet or in an email
32. Don’t use Generic Usernames
33. Securing your Ports.  Make sure any unwanted ports are ‘properly closed.’
34.  Updated Security Patches
35. Avoid public wi-fi – Avoid checking emails, logging into mobile banking sites and accessing private information when your phone is connected to public wi-fi such as those in coffee shops – as these are often insecure.
36. Turn off Bluetooth – When you’re not using Bluetooth always turn it off as hackers could use the wireless connection to gain remote access to your phone.
37. When using other than your personal home computer or laptop Turn off auto-complete, Delete your browsing history
38. Check if your Gmail messages are being forwarded without your permission
39. Keep informed about network security
40. Ensure physical security and Use paswordless authentication like smartcard etc.

Comments

Related Posts Plugin for WordPress, Blogger...

Popular Posts

மூக்குத்தி அணிவது ஏன்?

UI Certifications Q & A

Technicals details select

Do's and Don'ts - Central Pollution Control Board (CPCB),

for programmers dropdown

medicals dropdown

:: Useful web links List

  • Velliangiri herbals - வெள்ளியங்கிரி ஹெர்பல்ஸ் வழங்கும் இயற்கை முறையில் விளைந்த, வீட்டு முறையில் தயாரிக்கப்பட்ட புரத சத்து நிறைந்த ❤️முருங்கை இலை,கருவேப்பிலை,குறு ...
  • Election 2024 - [image: ELECTION DATES] [image: SUN TV]
  • Beware of Fake applications & Fake Whatsapp groups - *Caution Notice* *Attention to all Customers and the General Public* Dear Client, It has come to our notice that some unknown individuals have been fra...
  • web blogs - best blog links http://tv-actors.blogspot.in/ http://bedtti.blogspot.com/ http://firstnightdecoration.blogspot.com/ http://itparkcareers.blogspot.com/ http:...
  • IFHRMS Wipro Error - அனைத்து அரசு அலுவலகங்களிலும் IFHRMS என்ற செயலியின் மூலம் பணம் சார்ந்த பட்டியல்கள் தயாரிக்கப்படுகிறது. ஆனால் இம்மாதம் மார்ச் மாதத்தில் இருந்து IFHRMS செய...
  • soap - 100% organic Home made soap product Goat milk – 1. improve dry skin 2. healthy skin microbiome 3. maintain the skin’s moisture Charcoal soap 1....
  • blogs - http://tv-actors.blogspot.in/ http://bedtti.blogspot.com/ http://firstnightdecoration.blogspot.com/ http://itparkcareers.blogspot.com/ http://kottapathar.blo...
  • ELDERS HOME - ELDERS HOME IN MADURAI! Old age home in mela anuppanadi(near Thepakulam) *Individual *and double sharing rooms A/C,non A/C rooms 24 hrs staff support,cot,...
  • Old Games in Tamilnadu - *1.Kabaddi* [image: istockphoto-1790754800-612x612.jpg]Tamil Nadu is home to the popular team sport of Kabaddi. Kabaddi is the state sport of Tamil Na...
  • Samiyana Pandhal - Contact For Chairs & Samiyana Pandhal Prop: S.Muthuraman *MJM Samiyana & Chair Land* 9-1, Madurai Main Road, 4th Street Sivagangai, Tamilnadu Cell: +91 90...
  • Exclusive market updates - Inbox Search for all messages with label Inbox Remove label Inbox from this conversation data collections Search for all messages with label data collect...
  • FAQ - What is E.S.I Scheme? In addition to necessities of food, clothing, housing etc., man needs security in times of physical and economic distress conseq...
  • IFHRMS Wipro Error - அனைத்து அரசு அலுவலகங்களிலும் IFHRMS என்ற செயலியின் மூலம் பணம் சார்ந்த பட்டியல்கள் தயாரிக்கப்படுகிறது. ஆனால் இம்மாதம் மார்ச் மாதத்தில் இருந்து IFHRMS செயல...
  • Wedding Seervarisai Thattu decoration models - [image: sevajothi-plate-decorators] [image: sevajothi-plate-decorators] [image: sevajothi-plate-decorators] [image: sevajothi-plate-decorators] [imag...
  • Plots for sale - 5 வருசத்துல 4 மடங்கு விலை ! இப்ப இடம் வாங்கலைன்னா..... எப்ப வாங்க போறீங்க? உங்க பட்ஜெட்டில் ஒரு கனவு வீடு சாத்தியமா ? சாத்தியம் இனி வாடகை வீட்டுக்கு By...
  • Contact Us - Sevajothi Trust 45, TEACHERS QUATERS MELUR - 625106 MADURAI DT TAMILNADU MOBILE: 7708661011, WHATSAPP: 7708661011, https://sevajothi.blogspot.co...
  • IFHRMS Wipro Error - அனைத்து அரசு அலுவலகங்களிலும் IFHRMS என்ற செயலியின் மூலம் பணம் சார்ந்த பட்டியல்கள் தயாரிக்கப்படுகிறது. ஆனால் இம்மாதம் மார்ச் மாதத்தில் இருந்து IFHRMS செய...
  • INTERNSHIPS - GOVERNMENT: https://www.niti.gov.in/internship https://internship.mea.gov.in/internship https://dpiit.gov.in/internship-scheme-0 https://www.shar.gov.in/...
  • News - நாள்- 29-07-2024 வருகின்ற திங்கட்கிழமை நேரம் -காலை 11மணி இடம்..திருமங்கலம் தெற்குதெரு அகமுடையார் சங்க மஹால்..... தேவரின அரசாணை சம்பந்தமாக ஆலோசனை கூட்ட...
  • ads links - https://tnpsc-ssc-rrb-tet-trb-bsrb.blogspot.com/ https://trivandrumtomorrow.blogspot.com/ https://womens-trust.blogspot.com/ https://madurai-kamaraj-univer...
  • Tags - Tags, lorry, truck, booking, LBS, parcel service, transport, logistics, van, container,
  • links - *Education**:* http://bedtti.blogspot.com/ http://indiansportsgames.blogspot.in/ http://interfacetrivandrum.blogspot.in/ http://deoceo.blogspot.com/ ...
  • For Rent - House for lease or rent at moderate rates. Location; Melur, Madurai 1 & 2 bedrooms nice new house in compound contact: Prabha - 8525913174
  • Marriage links - bride groom background verification online https://sevajothitechnologies.blogspot.com/ MJM Samiyana Chair Land Hiring Services - Decorators in Sivagang...
  • ELDERS HOME - ELDERS HOME IN MADURAI! Old age home in mela anuppanadi(near Thepakulam) *Individual *and double sharing rooms A/C,non A/C rooms 24 hrs staff support,cot,f...
  • Keywords - bus, bus day, transport, SETC, PRC, KSRTC, TNSTC, airways, airbus, car, train, truck, Ship, Boat, Electric Trian, Locomotive, passenger, public transport, ...
  • Dr.Radhakrishnan Best Teacher Award - https://nationalawardstoteachers.education.gov.in/ https://www.awards.gov.in/ Conditions of Eligibility of Teachers - School teachers and Heads of ...
  • Free food - Free food by MJM Chairland at Sivagangai Velayithasamy koil function
  • links ad content - www.standardtips.com = links URL = www.standardtips.com Title = All tips and tricks for your complete life. Description = Get the complete tips fo...
  • social links - https://gtechindia.org/member/softland-india-ltd https://www.tradeindia.com/softland-india-ltd-29664352/ https://in.linkedin.com/company/softland-india...
  • IFHRMS - *Danger:*Due to inactivity, your session has expired. Before you continue, make sure your entered data is saved locally.
  • Hardware links - http://softlandindia.blogspot.in/ http://indianindustrycompanies.blogspot.in/2011/06/wireless-electronic-spot-billing-and.html http://designersiva.blogspot.i...
  • quotation - Dt: 24.12.2007 To, Mr.Kumerasen www.dravidar.org *Sub:- AMC Agreement for www.dravidar.org* Sir, As per our earlier ...
  • design blogs - https://graphicsbackgrounds.blogspot.in/ https://designersiva.blogspot.in/ http://myclientsmydesigns.blogspot.com/ http://beamconsultancy.blogspot.com/ http...
  • Joint Venture (JV) Deal - What is a Joint Venture (JV) Deal? Off late demand for joint ventures in real estate has been increasing exponentially. In real estate, JV means that a ...
  • கீரைகளும்_அதன் முக்கிய_பயன்களும்: - 🌿அகத்திக்கீரை- ரத்தத்தை சுத்தமாக்கி பித்தத்தை தெளியவைக்கும். 🌿காசினிக்கீரை- சிறுநீரகத்தை நன்கு செயல்பட வைக்கும். உடல் வெப்பத்தை தணிக்கும். 🌿சிறுபசலைக்கீ...
  • blog links - *Education*: http://bedtti.blogspot.com/ http://staff-teachers-students.blogspot.in/ http://indiansportsgames.blogspot.in/ http://svpitmcbe.blogspot.com/ ht...
  • திருக்குறள்: - 1. கற்க கசடறக் கற்பவை கற்றபின் நிற்க அதற்குத் தக. 2. அரியவற்று ளெல்லாம் அரிதே பெரியாரைப் பேணித் தமராக் கொளல். -திருவள்ளுவர் குறள் விளக்கம்: பெரியாரைப் போற்...
  • top 10 female social media influencers in india - *Larissa D'Sa* *Travel Influencer* *7 lakh Instagram followers* *593K YouTube subscribers* [image: Larissa D'Sa] *IMAGE: Travel entrepreneur Larissa D'...
  • shopping links - vikas nighties shopping links https://www.meesho.com/vikas-cotton-nighties/p/zev2g?srsltid=AfmBOopSIFB5et-WM3zDmotr8kmL-hy-QcAggELxCe9THJKZXrnblGRr http...
  • Site Map - Companies - arasappalams (1) - Bharath Foundation (1) - conveytechniques (1) - links (1) - MEETPPU (1) - MR GROUP (1) - MTN Colle...
  • ads links - https://tnpsc-ssc-rrb-tet-trb-bsrb.blogspot.com/ https://trivandrumtomorrow.blogspot.com/ https://womens-trust.blogspot.com/ https://madurai-kamaraj-univer...