Challenges to Simple Website Security

August 11th, 2009

Reading a very good artice on Articlecity.info today gives me an idea to write this simple and well known for most of webmasters all over the planet. Articlecity was talking about How to increase your websites security, and as an extend to it I want to add some clues of how the website security is a thing that need extra time.

Security of a website is one of the main priority for a webmaster. But most of the webmaster only the design and what topics should be provided to attract visitors as much as possible.

In fact, if a webmaster ignoring a security website, the webmaster who is injured themselves because a hacker can take important data on a website and also can even make a random view website (deface) .

Here are some common methods that are often used for hackers to attack a website:

1. Remote File Inclusion (RFI)
Methods that exploit weaknesses include PHP script (), include_once (), require (), require_once () the variable is not declared with perfect. With RFI an attacker can include a file that is outside of the server.

2. Local File Inclusion (LFI)
Methods that exploit weaknesses include PHP script (), include_once (), require (), require_once () the variable is not declared with perfect. With LFI an attacker can include a file that is outside of the server.

3. SQL injection
SQL injection is a technique that utilizes an error writing SQL queries on a website so that a hacker can insert some SQL statement to ‘query’ in a way to manipulate input data to the application.

4. Cross Site Scripting (XSS)
XSS also known with CSS stands for Cross Site Scripting.XSS is a method or enter a code into the HTML script that you run a website through a browser on the client.

RSS Feed

Search

  • Categories

  • Archives

  • Affiliates

    View blog authority
    Free PageRank Checker
    eXTReMe Tracker
  • Disclosure

    I hereby state that I have received financial compensation for some of the posts on this blog from sponsors who want to have their product(s) and/or service(s) be reviewed by me.