<feed xmlns="http://www.w3.org/2005/Atom" xml:base="http://www.gawkwire.com/">
	<title type="text">Gawkwire: Web Hosting and Internet News Resource</title>
	<id>http://www.gawkwire.com/</id>
	<link rel="alternate" type="text/html" hreflang="en" href="index.php" />
	<link rel="self" type="application/atom+xml" href="http://www.gawkwire.com/tag/host4yourself/index.1.atom" />
	<rights>&amp;copy;2007 Spoonlabs d.o.o.</rights>
	<generator>Vivvo CMS 4.0</generator>
	<updated>2013-05-25T00:54:59-04:00</updated>
	
			
				
					<entry>
						<title>The Whir Temporarily falls to Hackers</title>
	<id>http://www.gawkwire.com/technology/the_whir_falls_to_hackers.html</id>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.gawkwire.com/technology/the_whir_falls_to_hackers.html" />
						<published>2008-06-30T12:35:00-04:00</published>
						<updated>2008-06-30T12:35:00-04:00</updated>
						<author>
							<name>GW_Staff</name>
						</author>
		<category term="tech" scheme="http://www.gawkwire.com/technology/the_whir_falls_to_hackers.html" label="tech" />
<summary>When will it end? Even secure and notable websites such as thewhir.com can be vulnerable to hackers nowadays.  As of 3:30 PM Central Time, clicking any link at the popular web resource site, will get you a quick redirect to www.jukez.com and lots of headaches for visitors.
</summary>
<content type="html">&lt;p&gt;When will it end? Even secure and notable websites such as thewhir.com can be vulnerable to hackers nowadays.&amp;nbsp; As of 3:30 PM Central Time, clicking any link at the popular web resource site, will get you a quick redirect to &lt;a href=&#34;http://www.jukez.com/&#34;&gt;www.jukez.com&lt;/a&gt; and lots of headaches for visitors.&lt;/p&gt;&lt;p&gt;Evan Kamlet, &lt;a href=&#34;http://www.host4yourself.com/&#34;&gt;www.Host4Yourself.com&lt;/a&gt; says it is possibly an SQL injection and cleaning up this problem is limited to only a few options.&lt;/p&gt;&lt;p&gt;Kamlet says &amp;quot;It is most likely an insecure script and if luck is on your side, no root access was gained.&amp;nbsp; First, disable the web service and any database servers and do some forensics.&amp;nbsp; It is important to first plug the hole.&amp;nbsp;&amp;nbsp; &lt;br /&gt;Search logs for strange SQL following a GET request: index.php?page=1;UNION%20INSERT.. etc.&amp;nbsp; UNION, INSERT, DELETE SQL commands generally should not be showing up in your GET requests.&lt;/p&gt;&lt;p&gt;Then, restore from a backup or do a mass find and replace within your database only once you are SURE you found the entrance point..&amp;nbsp; Obviously, there can be other causes of these defacements such as shell commands being executed in a similar manner in order to rewrite scripts, create SQL injections, or to invoke code injections into the scripts themselves.&amp;quot;&lt;/p&gt;&lt;p&gt;Sharon Koifman, VP Marketing for Applicure considers &amp;quot;It's related to the fact that hosting companies don't really protect individual applications and Individual shared hosting clients.&amp;nbsp; The only way to prevent something like this from happening is to change the standard of the entire industry security on the application level.&amp;quot;&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;a href=&#34;http://www.gawkwire.com/technology/the_whir_falls_to_hackers.html&#34;&gt;http://www.gawkwire.com/technology/the_whir_falls_to_hackers.html&lt;/a&gt;
</content>
					</entry>
				
			
		
</feed>