Skip to main content

Security Concerns

Comments

4 comments

  • Infopro
    There's no need to share that sort of link (or promote it with thread title) on these forums. Shell scripts like that have been around for years.
    Having clamAV, CSF and secure passwords is enough to sleep well?

    None of that really matters if your client uploads it to their account willingly to "test it". Those scripts email home when ran. Chirpy's CSX is worth every penny and does a great job of helping to prevent these sorts of scripts from being uploaded: configserver.com/cp/cxs.html As one suggestion for you.
    0
  • Kent Brockman
    ok, sorry for the link and title. I know CXS, but my concerns were for what an attacker could do to us or others.
    0
  • Infopro
    Your concern is valid, I'm with you 100%. Preventing this sort of thing from getting on your server in the first place is a tough job.
    0
  • SoftDux
    Do you use 2Factor Authentication? And strong password policies? And educate your clients? You should!
    0

Please sign in to leave a comment.