Tuesday, March 1, 2011

How to protect websites from virus attacks?


These 5 simple precautions, you will be better protected than the vast majority of your peers that might be leaving themselves wide open to attack.

1. Keep your Antivirus application installed and up to date - Far too often I come across workstations where the user decided to uninstall the Antivirus application because they thought it would "speed up" the computer. Certainly that computer will fail to run fast when it can't even boot because it has been attacked! Also often found are computers that simply fail to receive daily updates to the Antivirus signature files. There are many causes for failed updates, but the solution is simple. Simply make sure to monitor the Antivirus activity every day (easily done with a service like the proactive management plan offered by Big Sky Computer Solutions, a provider of computer repair in Bozeman, MT).

2. Install a quality Spam Filter application - Tons of viruses are passed around via automated Spam messaging through the internet. By having a quality Spam Filter installed either on your local computer or on your email server, you can prevent a number of infected messages from potentially ever reaching your inbox.

3. Do not open attachments - The most common way to transmit spam messages is through an infected file that is attached to the email. If you receive an email from a sender you are not familiar with, do not open it. Instead, immediately delete the attachment along with the email. If it was really an important attachment from a real sender, chances are they will contact you to make sure you receive it properly the next time they send it.

4. Scan attachments before opening - When you do receive an email from a known sender and an expected file is attached, there is still a possibility that the file has been unintentionally infected prior to being sent to you. Take the precaution of running your virus scan on the file before opening it (simply right-click the file and click "scan for viruses").

5. Shut off the Preview Pane - The path to get to this will be different depending on what email client you're using, (most of my customers of Big Sky Computer Solutions in Bozeman, MT use Outlook or Google Apps), but what you want to do is turn off the preview pane that allows you to read an email without actually opening it.


Here are a  few more tips and ideas on making sure your site would not be hacked and attacked.

 
- Make it a habit to have long passwords and make sure they are alphanumeric. A 10 to 12 character password is strongly recommended. Also avoid those that are obvious to guess like birthdays and anniversaries. If you are worried about a higher chance of forgetting them, write it down and keep it in a secure place or hide it somewhere that only you can access it. You can also change your password often for your safety and protection.

- Configure your firewall. Your firewall helps screen the incoming information that comes into your system by blocking unauthorized access, depending also on how you configure it. To be properly protected, make sure that your firewall is properly set according to your security needs. Take note that if not properly configured, your computer's firewall can be the hacker's door towards your system.

- Make sure your anti-virus software is updated. Your first line of defense is an anti-virus software that can help you ward off malicious attacks and viruses especially those that will allow hackers to control your computer.

-  Have your site tested by ethical hackers. A side from installing anti-virus software as your first defense on how to protect your website, you can also seek the services of ethical hackers to help you do some penetration test on your website. This way, you will know the vulnerability of your site, and you can find solutions to that early on.

- Make sure you have checked and validated all inputs to your site. Cross-site scripting is one weakness of websites that can be used by hackers by inserting scripts into your webpage that may lead to their access to confidential information and the likes. To protect your site and information and ward off hackers using this technique, you have to check and validate inputs to your website. If you allow online visitors to input some date on your website, you have to validate each entry and check it against what inputs are allowed. Look for extra scripts and be wary of the type and length of the inputs.

No comments:

Post a Comment