Presentation is loading. Please wait.

Presentation is loading. Please wait.

Web Server Security By Michael Huang. Web Server Security - Background Experts gets hacked (AOL, MSN, FBI, CIA, etc…) Loss of Trade Secrets, Company Embarrassment,

Similar presentations


Presentation on theme: "Web Server Security By Michael Huang. Web Server Security - Background Experts gets hacked (AOL, MSN, FBI, CIA, etc…) Loss of Trade Secrets, Company Embarrassment,"— Presentation transcript:

1 Web Server Security By Michael Huang

2 Web Server Security - Background Experts gets hacked (AOL, MSN, FBI, CIA, etc…) Loss of Trade Secrets, Company Embarrassment, Compromise of Client’s Personal Information Fallacy- firewall will protect web server Computer-illiterate people can hack a web server Absolute Security Impossible Basic guidelines to deter amateurs

3 Web Server Security- Basic Guidelines  isolate/off-network hosting  manage accounts/passwords employees are biggest risk remote password guessing tools (brutus, crack)  keep it patched new patches every few days, be proactive  limit access – not a workstation email, aim, irc, ftp/telnet/ssh etc  serve safe code code abuse

4 Web Server Security- Hacking 101  Cookbook Hacking Determine server or operating system software Learn exploit from hacking site/forum Hack server Demo

5 Web Server Security- Hacking 101  Attacking Web Forms Find a web form (search for login.asp) Check for vulnerability Enter basic SQL (standard query language) commands to delete database Demo


Download ppt "Web Server Security By Michael Huang. Web Server Security - Background Experts gets hacked (AOL, MSN, FBI, CIA, etc…) Loss of Trade Secrets, Company Embarrassment,"

Similar presentations


Ads by Google