63% of website owners don't know how they were hacked

Zargon

Lifer
Nov 3, 2009
12,218
2
76
some lulz.

seems like its almost always out of date cms stuff or sql related.

my boss got his site hacked, running stock ass joomla unpatched from like 2 years ago
 

gsellis

Diamond Member
Dec 4, 2003
6,061
0
0
Easy to believe. Resistance to best practice is huge because it usually means you can't have it right now, without some modifications, and some cost.
 

Jeff7181

Lifer
Aug 21, 2002
18,368
11
81
I guess this assumes that the website owner owns the Web server and doesn't use a hosted service. For someone that uses a hosted service, I can see why they may not know how they were hacked. Securing their Web server may not be in their control.
 

Dravic

Senior member
May 18, 2000
892
0
76
No surprise, everyone wants a website, nobody wants to run a website.

Security above all things is keeping your software up to date and being able to pick out the anomalies from day to day activity. The only logs/statistics most website owners look at on a regular basis are those of ad impressions.
 

Lemon law

Lifer
Nov 6, 2005
20,984
3
0
Makes sense for the hacker too, what good does it do them to hack into a website and then promptly get their hack in discovered. And the future life of their hack is nasty brutish and short. But if the hacker can fly under the radar, they can get away with it for maybe decades.
 

Lithium381

Lifer
May 12, 2001
12,452
2
0
i didn't until i just got an e-mail from another website owner complaining . . .turns out i've been compromised since last friday according to my scouring of syslogs