Skip navigation.
Home

Fixed - damn crackers abusing awstats!

At long last, I think I've fixed my server - erm, maybe I shoudl say, "secured".

It looks like awstats had a security hole associated with it.

Searching Google revealed all the pertinent information I needed.

A quick look at my apache logs confirmed that I'd been done.

Interestingly, the first thing these dozy crackers do is to download scanning software, a backdoor, and a "call-back" script onto my server.

Syndicate content