Tag Archive 'DDoS attack'

The Dangers of Insecure Web Applications

Software can be used for many great things but there is a gloomy dark side.  It also comes in the form of malicious programs and the web is literally infested with these harmful applications.  Sadly, thousands of internet users download malicious software everyday, blind to the fact that they are essentially inviting threats right into their systems.  These risks have the potential to be even more dangerous when a website is involved.  Any software code running on a web server poses a great threat for the mere fact that it contains an executable file.  This means that it can be executed by anyone in the world with an internet connection.  Just imagine if there was an executable file on your desktop computer that could be executed by anyone at anytime.  If this was the case, that program would have to completely secure in order to prevent the execution of malicious code on your system.  The same goes for programs consisting of PHP or CGI scripts.

What makes executable programs even worse is that many of them accept parameters such as a user name or email address, making them more vulnerable to exploitation.  Needless to say, the web was a lot safer some five to eight years ago when the internet phenomenon wasn’t as huge.  Today, hackers are highly skilled and more determined than ever.  They will do whatever it takes to break into home-based PCs, network servers, and even the applications on your website.  If your scripts are not probably secured, you stand the risk of losing essential data that can stir up all sorts of trouble.

Here are just a few examples of what can happen when your scripts are not properly secured:

Hijacking of your mail server: You may ask, “what’s the point?”.  The answer all boils down to legality.  Although you couldn’t tell on the surface, spam is illegal in most countries and if the authorities catch you doing it, you could find yourself in big trouble.  By hijacking the mail server, a spammer can use your domain to distribute mass mailings of spam.  When the authorities find out, it all leads back to you.

Hijacking of your website: Ever run across a family-friendly site and wondered why is was littered with pornographic images?  This my friend is website hijacking, more commonly known as defacing.  A poorly configured script can invite an intruder into your site, give them enough time to setup their own credentials and leave you out in the cold.

Attacks on other machines: Leave the door open for a hacker and they just might force you to participate in a strike against other machines.  Known as a DDoS attack, the hacker slips through your insecure script and installs a rootkit which opens a backdoor that gives them complete control over the server.  This could eventually cause problems for both you and your web host.

With the responsibility of administering the server, it is up to your web host to provide a secure environment.  As a webmaster however, it is up to you to make sure your web applications are properly scripted and secure.  Software can add instantly functionality to your site but if you’re not careful, it can also be your worst nightmare.

Category: Security Issues
Tags: , , , , , , ,
Posted on Friday, Jan 23, 2009
Trackback URI   Comments RSS

The Benefits of VPS Hosting

Seemingly out of nowhere, VPS has become the preferred hosting solution for small to medium sized businesses.  VPS stands for Virtual Private Server, a solution that effectively bridges the gap between the limitations of shared hosting and the flexibility of dedicated server hosting.  A VPS is created by virtualization software which partitions a single physical server to form multiple servers within it.  Each virtual server is completely independent of its neighbors and functions like an actual networked server.  What makes VPS hosting so popular is that it provides control at a level similar to a dedicated server at a price not to far removed from affordable shared hosting .

Here are some of the benefits that come along with VPS hosting:

Stability: Unlike shared hosting, the traffic and activities of other VPS customers will not adversely affect your operation.

Performance - Having your own allotment of resources allows you and your visitors to enjoy faster load times.

Dedicated Resources - VPS hosting provides you with more disk space, CPU and RAM.

Flexibility - You have the freedom to choose the operating system and software you want to install on the server.

VPS Features

The features and services of VPS hosting vary depending on the provider.  Although the ones you will need all depends on personal requirements, here are a few you may want to look out for:

Root Access: Root access will grant you with complete control over your VPS account from configurations to software installations.  All of the actions can be handled from the interface of your control panel application.

Management and Support: Similar to a dedicated hosting account, VPS hosting calls for you to manage your own server .  However, there are many companies that provide support and management services to assist with administrative tasks.  This feature is invaluable if you lack technical savvy.

Server Monitoring: A good VPS provider will actively monitor its network and hardware your account relies on.  This ensures the physical security of the server and also helps defend against virtual threats such as hackers, malicious software and DDoS attacks.

Multiple Domain Hosting: Although shared hosts offer multiple domain hosting, most of them do not provide enough resources for you to do so and still enjoy a smooth performance.   Many VPS providers offer plans that allow you to host multiple websites without suffering performance issues.  In most cases, you can set up separate email accounts and allocate specific resources for each individual site.

Managed Data Backups: As with any hosting solution, a VPS plan should offer a way to backup your data.  Because anything could occur within the provider’s network, it is recommended that you choose a service that allows you to manually backup your own data to assure that it can be restored at any time.

VPS hosting offers an inexpensive way to get many of the features, resources, control and flexibility of a more costly and complex dedicated server.  With the technology increasing in popular, prices are dropping rapidly, assuring that you can find a reliable VPS solution that meets your hosting needs.

Category: Web Hosting Types
Tags: , , , , , , , ,
Posted on Tuesday, Dec 30, 2008
Trackback URI   Comments RSS

Sponsored Links