SlideShare a Scribd company logo
1 of 3
Well this is something which not many people are knowing about.
Malicious COMMENTS attack: you should be knowing that whatever
comments users make in our website gets saved in the database,
from where it can be operated via a simple mySql query. So what the
hackers and spammers do is, they post comments in your website
which look really really real, like:
” Hey nice website I have now bookmarked your website, you really
write awesome, I will be waiting for more articles”
or
“I havent seen such a nicely written blog, great man, keep it up”
or something or otherthing like that, and whenever u approve the
comment, it starts its operation.
which can cause some of the following issues:
internal errors
automatic plugins remove
sitemap disapperas
posts or categories diappears
you cannot login your admin
etc etc.
How to protect?
well there are few precautions which u can take and you
need not to worry about this thing:
comments should be approved disable the auto approval
function
users should be registered to comment, this u can find in
general settings
install captcha plugin by bestwebsoft.com its name is just
“CAPTCHA”
never make someone an author, or admin of ur website.
never approve untrusted users
this thing might help you..

More Related Content

Viewers also liked

Gerard Byrne's Exciting 2012 Workshop Program
Gerard Byrne's Exciting 2012 Workshop ProgramGerard Byrne's Exciting 2012 Workshop Program
Gerard Byrne's Exciting 2012 Workshop ProgramCPA Australia
 
Control de velocidad de un automovil!
Control de velocidad de un automovil!Control de velocidad de un automovil!
Control de velocidad de un automovil!Xime Molina
 
Passion to Teach, Conceptual Mastery
Passion to Teach, Conceptual MasteryPassion to Teach, Conceptual Mastery
Passion to Teach, Conceptual MasteryIwan Pranoto
 
Homenaje al Ballet Gimnástico UPLA
Homenaje al Ballet Gimnástico UPLAHomenaje al Ballet Gimnástico UPLA
Homenaje al Ballet Gimnástico UPLAMario Oliva
 
Manual para implementacion del sistema de gestion en seguridad y salud en el ...
Manual para implementacion del sistema de gestion en seguridad y salud en el ...Manual para implementacion del sistema de gestion en seguridad y salud en el ...
Manual para implementacion del sistema de gestion en seguridad y salud en el ...Lima Innova
 
Dicari pemimpin transformatif
Dicari pemimpin transformatifDicari pemimpin transformatif
Dicari pemimpin transformatifHusain Rahim
 
Sample Draft of a Will - www.relakhs.com
Sample Draft of a Will - www.relakhs.comSample Draft of a Will - www.relakhs.com
Sample Draft of a Will - www.relakhs.comSreekanth Reddy
 
Analisis Contoh Konflik Sosial
Analisis Contoh Konflik SosialAnalisis Contoh Konflik Sosial
Analisis Contoh Konflik Sosialfiafia6
 

Viewers also liked (11)

Gerard Byrne's Exciting 2012 Workshop Program
Gerard Byrne's Exciting 2012 Workshop ProgramGerard Byrne's Exciting 2012 Workshop Program
Gerard Byrne's Exciting 2012 Workshop Program
 
Control de velocidad de un automovil!
Control de velocidad de un automovil!Control de velocidad de un automovil!
Control de velocidad de un automovil!
 
Dream Palm Residence (4)
Dream Palm Residence  (4)Dream Palm Residence  (4)
Dream Palm Residence (4)
 
Passion to Teach, Conceptual Mastery
Passion to Teach, Conceptual MasteryPassion to Teach, Conceptual Mastery
Passion to Teach, Conceptual Mastery
 
Homenaje al Ballet Gimnástico UPLA
Homenaje al Ballet Gimnástico UPLAHomenaje al Ballet Gimnástico UPLA
Homenaje al Ballet Gimnástico UPLA
 
Manual para implementacion del sistema de gestion en seguridad y salud en el ...
Manual para implementacion del sistema de gestion en seguridad y salud en el ...Manual para implementacion del sistema de gestion en seguridad y salud en el ...
Manual para implementacion del sistema de gestion en seguridad y salud en el ...
 
Dicari pemimpin transformatif
Dicari pemimpin transformatifDicari pemimpin transformatif
Dicari pemimpin transformatif
 
Sample Draft of a Will - www.relakhs.com
Sample Draft of a Will - www.relakhs.comSample Draft of a Will - www.relakhs.com
Sample Draft of a Will - www.relakhs.com
 
TD-wireless-systems
TD-wireless-systemsTD-wireless-systems
TD-wireless-systems
 
Analisis Contoh Konflik Sosial
Analisis Contoh Konflik SosialAnalisis Contoh Konflik Sosial
Analisis Contoh Konflik Sosial
 
Amaatra homes
Amaatra homesAmaatra homes
Amaatra homes
 

How to protect website from comment based hacking

  • 1.
  • 2. Well this is something which not many people are knowing about. Malicious COMMENTS attack: you should be knowing that whatever comments users make in our website gets saved in the database, from where it can be operated via a simple mySql query. So what the hackers and spammers do is, they post comments in your website which look really really real, like: ” Hey nice website I have now bookmarked your website, you really write awesome, I will be waiting for more articles” or “I havent seen such a nicely written blog, great man, keep it up” or something or otherthing like that, and whenever u approve the comment, it starts its operation. which can cause some of the following issues: internal errors automatic plugins remove sitemap disapperas posts or categories diappears you cannot login your admin etc etc.
  • 3. How to protect? well there are few precautions which u can take and you need not to worry about this thing: comments should be approved disable the auto approval function users should be registered to comment, this u can find in general settings install captcha plugin by bestwebsoft.com its name is just “CAPTCHA” never make someone an author, or admin of ur website. never approve untrusted users this thing might help you..