[BNM] hacking...

Jay Caines-Gooby jay at gooby.org
Mon Nov 5 10:04:02 GMT 2007


On 11/4/07, Simon Early <simon.early at gmail.com> wrote:
> some time ago we had our main site hacked by some little shit in the USA and
> he caused havoc.

You did completely re-install the server, not just fix the hole -
presuming you know how they got access in the first place? Once you've
been compromised you can't trust that backdoors/rootkits etc haven't
been installed. Wipe the machine, re-install, start from scratch.

Did you store credit card numbers and/or passwords in plaintext in
your database? Better inform the relevant customers if so. Better
re-set their password also.

Was the machine a windows or unix box?

-- 
Jay Caines-Gooby
jay at gooby.org
+44 (0)7956 182625
skype: jaygooby
gtalk: jaygooby at gmail.com
AIM: jaygooby


More information about the BNMlist mailing list. Powered by Wessex Networks