1. Backup your web site about the server.
In case you have more than one crucial Internet site, place them on diverse web hosts. Don’t count on your Net host for backups.
Come across two distinct hosts which permit SSH entry. Get an account with Just about every. FTP the backup of one internet site to the other server specifically, and vice versa. Obtain copies to your house Personal computer also.
two. Place a file identified as ‘index.html’ in every single key or essential Listing in your site, if it doesn’t already have a single.
This stops persons seeking to peek at other information in precisely the same directory.
3. Usually do not use aged versions of FormMail. Do not use scripts which might be newly produced, Except you understand how to check for safety holes.
They need to filter enter like # or >. Lookup on the phrases ‘Script Identify bug’ or ‘Script Identify protection’.
four. Rename any e-mail scripts you down load before setting up them.
Why give a spammer a clue as to what your script is, and synthetic dataset what it can do?
5. Usually do not give information or directories noticeable names, like ‘go’, ’e-mails’, ‘orders’ and the like.
Once more, why help it become uncomplicated for snoopers?

It’s only a computer inside a home God is aware of the place, with God knows who having access to it.
7. Use a favorite World wide web host.
That cheapo 1 may very well be an un-fully commited reseller. Their Google PageRank presents a clue concerning how well known They may be. Send out them an e mail or two. See how much time it takes to secure a reply. Take a look at their discussion boards; how busy are they? They don’t Have got a forum? Subsequent!
8. Should you be creating .htaccess information or every other kind of password safety, use very long and varied passwords.
“Ch33s3And0n10n” is quite a bit more secure than “cheeseandonion”, and equally as memorable. Make your password not less than 8 figures in size, containing each letters and figures, and both equally upper and reduced-scenario letters. Everyday text could be guessed by brute-force cracking systems.
nine. Strip scripts all the way down to the bare essentials. Enhance them on a regular basis.
Applications like PHPNuke have a lot of features in the default set up. They permit webmasters and buyers lots of control of Internet site articles. This produces vulnerabilities. A ‘Nuke website of mine was hacked through Xmas 2005, by an Arabian team. Thankfully, I'd a backup. I didn’t have quickly internet access, at the time, to update it. I only desired one particular module working, so I eliminated the inessential types, and altered file permissions within the admin portion. At enough time of crafting, I’m waiting around to find out what occurs subsequent!
In the event you don’t actually have to have it, change it off.
10. Be cautious what you say about Other individuals or solutions on your site.
Probably not safety, but… people are pretty touchy about criticism. ‘Flame wars’ can be a waste of time and Vitality, so stay clear of them.