Jump to content

How do they Highjack a site?


hcdarkmage

Recommended Posts

Funny thing happened over the Thanksgiving holiday . . . my company's website was highjacked.  I personally didn't see it happen, mostly because I never go to the site on my days off, but I was told by my manager that another company made it so that anyone who typed in our web address was sent to a completely different site.

 

How did they do that?

 

I'm a little sketchy on the details, mostly because I am the "fix-it" programmer (one that fixes little details in the site, not code the whole thing).  The main "Guru" told me little about what happened, but I found out when I tried to make changes to our phpMyadmin using my login and it told me I was locked out.  He also told me that he locked everyone out.

 

Is it possible to prevent this from happening again?  Like I said, I don't know who, what, why or how they did it, but I would like to make sure it doesn't happen again.

Link to comment
Share on other sites

If it's DNS poisoning, there's not much you can do other then have your users access your website directly by IP instead of domain name.

 

Although I think it's more likely that they simply found an exploit in a PHP script or something and used it to put a redirect into your HTML.

Link to comment
Share on other sites

This thread is more than a year old. Please don't revive it unless you have something important to add.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.