LinuxQuestions.org
View the Most Wanted LQ Wiki articles.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
LinkBack Search this Thread
Old 02-10-2008, 07:08 PM   #1
brokenpromises
Member
 
Registered: Jan 2005
Location: NZ
Distribution: Fedora / Debian
Posts: 90

Rep: Reputation: 21
Question Securing Joomla / Other


Hello,

A friend's server has been broken into on two separate occasions. I suspect that the first time they got in through Joomla. And I know for sure that they got in through Joomla the second time.

What can we do to secure this installation so these script kiddies can't get in and deface my sites?

I've heard one solution is to block all OUTGOING on PORT 80 using iptables. However this presents me with a problem: The joomla sites have RSS feeds, and RSS won't work if OUTGOING PORT 80 is blocked. Is there a way around this?

ANY Help and other tips on security highly appreciated
 
Old 02-10-2008, 08:00 PM   #2
jiml8
Senior Member
 
Registered: Sep 2003
Posts: 3,171

Rep: Reputation: 112Reputation: 112
Joomla is database driven, and any database driven app is vulnerable if all inputs are not checked for validity before being acted on. This means that any page you add to Joomla which includes any kind of user input will make Joomla and your entire site vulnerable via SQL injection attacks unless you act positively to prevent this.

Most likely this is what happened to you. There is a sticky on this forum about PHP vulnerabilities and how to secure PHP; read that thread, take it to heart, and make sure it is fully incorporated into your Joomla site. This will prevent cracking.
 
Old 02-11-2008, 01:56 AM   #3
chrisdavenport
LQ Newbie
 
Registered: Feb 2008
Posts: 1

Rep: Reputation: 0
Lightbulb

I strongly urge you to read the Joomla! Administrator's Security Checklist. As a newbie I can't post the URL, so you will need to use your favourite search engine to find it.

Regards,
Chris.
 
Old 02-11-2008, 08:54 AM   #4
Hangdog42
LQ Veteran
 
Registered: Feb 2003
Location: Maryland
Distribution: Slackware
Posts: 7,700
Blog Entries: 1

Rep: Reputation: 374Reputation: 374Reputation: 374Reputation: 374
In my experience, most Joomla vulnerabilities are either mis-configured PHP settings or vulnerabilities in third party add ons. Make sure you've locked down PHP and check that any add-ons are up to date.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Joomla : What can YOU do with it? linuxglobe General 7 02-08-2008 08:15 AM
LXer: Securing Joomla! installations LXer Syndicated Linux News 0 01-03-2008 06:41 PM
Joomla and konqueror sbeel1 Linux - Desktop 1 03-07-2007 10:28 PM
Joomla+Mambo. binary_dreamer Debian 0 08-04-2006 07:44 AM
Which database for Joomla website? LinuxSeeker Linux - Networking 2 07-09-2006 04:14 PM


All times are GMT -5. The time now is 11:24 AM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration