As a small hosting, systems administration, and programing company we’re on the front lines of Internet security. In the old days (oh, say pre 2003) our security focus was on upgrading and protecting the server’s operating system. Hackers would probe servers, find vulnerable applications (Apache, portmap, sendmail, etc.) and compromise the machine in the hopes of gaining root access.
Not any more. Hackers could care less about the OS. They attack web sites since a compromised web site provides them nearly everything they need; the ability to send spam, find user data, and attack other computers. And hackers tend to reach for the low hanging fruit – web sites that run out-of-date open source software such as Joomla, WordPress, and Drupal (among a host of others.)
Continue reading Web site security for the common web site owner