If you are running a Wordpress site always make sure you have the Sucuri plugin and iThemes Security (formerly Better WP Security) plugins
This allows you to block most automated bots from trying to hack sites
- Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
- Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!
Collapse
You are not logged in or you do not have permission to access this page. This could be due to one of several reasons:
- You are not logged in. If you are already registered, fill in the form below to log in, or follow the "Sign Up" link to register a new account.
- You may not have sufficient privileges to access this page. Are you trying to edit someone else's post, access administrative features or some other privileged system?
- If you are trying to post, the administrator may have disabled your account, or it may be awaiting activation.
Logging in...
Previously on "Those of you responsible running commercial websites"
Collapse
-
Which is why I run sshd on a non-standard port, as well as use group permissions to restrict logins. It still gets attacked, but then fail2ban adds their IP to the firewall.Originally posted by stek View PostCheck your server authlog and be amazed at the number of bots on Chinese IP's trying to guess the root password......
Leave a comment:
-
Thanks chaps.
The system runs on Azure Web Sites (PaaS) so less worries about ports, security updates etc.
Leave a comment:
-
Just a port scanner found an unpatched hole - and Ddos'd from it, fixed a sec as soon as they told me.Originally posted by diseasex View PostI think if they target you , there's nothing you can do . If they see they can milk you , or you upset them enough (visa, Sony etc)
Hasn't happened to me though
Leave a comment:
-
I think if they target you , there's nothing you can do . If they see they can milk you , or you upset them enough (visa, Sony etc)Originally posted by stek View PostSomebody exploited an ntp hole on the aLom on my colo'd box, turned out I was the relay of a fair amount of havoc!
Hasn't happened to me though
Leave a comment:
-
Somebody exploited an ntp hole on the aLom on my colo'd box, turned out I was the relay of a fair amount of havoc!Originally posted by diseasex View PostI have emails spamming me once every few weeks , saying something like yours, or trying to sell me seo or other bulltulip. even logging on website to use support to try to sell me something via internal mailing system. I have never replied to them , and nobody ever hacked my website either (or at least i dont know)
Leave a comment:
-
I have emails spamming me once every few weeks , saying something like yours, or trying to sell me seo or other bulltulip. even logging on website to use support to try to sell me something via internal mailing system. I have never replied to them , and nobody ever hacked my website either (or at least i dont know)Originally posted by zazou View PostI've just been forwarded this email.
Is this common chancer tactics?
Leave a comment:
-
I've had a simple Wordpress site live for two months or so, Jetpack reports that it's stopped over 2500 auth attempts already.
Leave a comment:
-
Check your server authlog and be amazed at the number of bots on Chinese IP's trying to guess the root password......
Leave a comment:
-
Report it as a phishing attempt and then ignore. Don't reply as it only confirms to the sender the validity of your email address.
Leave a comment:
-
The fact that you have a commercial website is a "fortunate" coincidence.
Leave a comment:
- Home
- News & Features
- First Timers
- IR35 / S660 / BN66
- Employee Benefit Trusts
- Agency Workers Regulations
- MSC Legislation
- Limited Companies
- Dividends
- Umbrella Company
- VAT / Flat Rate VAT
- Job News & Guides
- Money News & Guides
- Guide to Contracts
- Successful Contracting
- Contracting Overseas
- Contractor Calculators
- MVL
- Contractor Expenses
Advertisers
Contractor Services
CUK News
- Andrew Griffith MP says Tories would reform IR35 Oct 7 00:41
- New umbrella company JSL rules: a 2026 guide for contractors Oct 5 22:50
- Top 5 contractor compliance challenges, as 2025-26 nears Oct 3 08:53
- Joint and Several Liability ‘won’t retire HMRC's naughty list’ Oct 2 05:28
- What contractors can take from the Industria Umbrella Ltd case Sep 30 23:05
- Is ‘Open To Work’ on LinkedIn due an IR35 dropdown menu? Sep 30 05:57
- IR35: Control — updated for 2025-26 Sep 28 21:28
- Can a WhatsApp message really be a contract? Sep 25 20:17
- Can a WhatsApp message really be a contract? Sep 25 08:17
- ‘Subdued’ IT contractor jobs market took third tumble in a row in August Sep 25 08:07

Leave a comment: