Web Wiz - Green Windows Web Hosting

  New Posts New Posts RSS Feed - SQL Server Deleted!
  FAQ FAQ  Forum Search   Events   Register Register  Login Login

SQL Server Deleted!

 Post Reply Post Reply
Author
paulhg View Drop Down
Newbie
Newbie


Joined: 07 January 2004
Status: Offline
Points: 6
Post Options Post Options   Thanks (0) Thanks(0)   Quote paulhg Quote  Post ReplyReply Direct Link To This Post Topic: SQL Server Deleted!
    Posted: 30 October 2004 at 12:34pm
All the tables are empty! I have a backup from yesterday, so not the end of the world, but this sucks. I have the latest webwiz patch, sql server sp3. Any ideas on how to make it more secure?
Back to Top
WebWiz-Bruce View Drop Down
Admin Group
Admin Group
Avatar
Web Wiz Developer

Joined: 03 September 2001
Location: Bournemouth
Status: Offline
Points: 9844
Post Options Post Options   Thanks (0) Thanks(0)   Quote WebWiz-Bruce Quote  Post ReplyReply Direct Link To This Post Posted: 30 October 2004 at 12:51pm
The forum is already secure as it can be, espically as the largest hacking site in Russia uses it and they all continully try to hack and and do let me know instaentky if any security holes exsist, which I then usually patch within 12 hours.

The only way I can see this can happen is:-
  1. Someone has found your admin username and password
  2. Someone has got into your MS SQL Server database
  3. You have given a secound user admin privileges
  4. A problem with your MS SQL Server
Then off course more advanced hackers may have used packet sniffing software to get your MS SQL Server username and password or your admin username and password. But unless you use SSL space to host your forum, this will always be a hole in your security.
Back to Top
paulhg View Drop Down
Newbie
Newbie


Joined: 07 January 2004
Status: Offline
Points: 6
Post Options Post Options   Thanks (0) Thanks(0)   Quote paulhg Quote  Post ReplyReply Direct Link To This Post Posted: 30 October 2004 at 1:15pm

Thanks, I will look into these 4 points. I did find some entries in the ftp log and was thinking maybe they found the db name and login info via this. Here are some entries I found:

Part of FTP log from 10/29/04:
15:41:34 62.251.26.232 [63]USER anonymous 331 0
15:41:34 62.251.26.232 [63]PASS Pgpuser@home.com 530 1326

Part of FTP log from 10/30/04:
14:02:00 80.143.250.231 [64]USER anonymous 331 0
14:02:00 80.143.250.231 [64]PASS Jgpuser@home.com 530 1326

I don't know who this is. There's no reason why anyone other myself would ftp into the site, so maybe this person had something to do with it.

Back to Top
 Post Reply Post Reply

Forum Jump Forum Permissions View Drop Down

Forum Software by Web Wiz Forums® version 12.08
Copyright ©2001-2026 Web Wiz Ltd.


Become a Fan on Facebook Follow us on X Connect with us on LinkedIn Web Wiz Blogs
About Web Wiz | Contact Web Wiz | Terms & Conditions | Cookies | Privacy Notice

Web Wiz is the trading name of Web Wiz Ltd. Company registration No. 05977755. Registered in England and Wales.
Registered office: Web Wiz Ltd, Unit 18, The Glenmore Centre, Fancy Road, Poole, Dorset, BH12 4FB, UK.

Prices exclude VAT at 20% unless otherwise stated. VAT No. GB988999105 - $, € prices shown as a guideline only.

Copyright ©2001-2026 Web Wiz Ltd. All rights reserved.