SlideShare a Scribd company logo
1 of 70
How
Being Hacked
Turned Out to be
the
Best Thing
That Ever Happened
to Me
@adspedia / #WCSea
adspedia
Valentin Vesa
Social Media @ SucuriSecurity
@adspedia / #WCSea
@adspedia / #WCSea
Hello WordCamp Seattle!
@adspedia / #WCSea
Hello WordCamp Seattle!
#WCSEA
@adspedia / #WCSea
@adspedia / #WCSea
The Story Starts With
ShoeBox
@adspedia / #WCSea
video
#@adspedia / #Webstockro
@adspedia / #WCSea@adspedia / #WCSEA
@adspedia / #WCSea
The Story Starts With
ShoeBox
@adspedia / #WCSea
RESPONSIBILITIES AS WEBSITE OWNERS
ENSURE THAT OUR AUDIENCE IS SAFE
ENSURE THAT WE ARE GOOD STEWARDS OF THE INTERNET
- Tony Perez
@adspedia / #WCSea
@adspedia / #WCSea
HACKED
Dec 22 2014
@adspedia / #WCSea
IMPACTS
@adspedia / #WCSea
IMPACTS
• Emails I never sent were returning: SPAM generated from site
@adspedia / #WCSea
IMPACTS
• Emails I never sent were returning: SPAM generated from site
• The host warned us they will SUSPEND the website
@adspedia / #WCSea
IMPACTS
• Emails I never sent were returning: SPAM generated from site
• The host warned us they will SUSPEND the website
• EMAIL was now DOWN
@adspedia / #WCSea
IMPACTS
• Emails I never sent were returning: SPAM generated from site
• The host warned us they will SUSPEND the website
• EMAIL was now DOWN
• In mid project phase we were without an online presence
@adspedia / #WCSea
IMPACTS
• Emails I never sent were returning: SPAM generated from site
• The host warned us they will SUSPEND the website
• EMAIL was now DOWN
• In mid project phase we were without an online presence
• Blacklisted website: visitors going to the website were seeing the “attack site” warning,
endangering credibility
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
• Were there any .htaccess edits done?
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
• Were there any .htaccess edits done?
• Any unauthorised FTP access?
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
• Were there any .htaccess edits done?
• Any unauthorised FTP access?
• Check WordPress users list, any recent additions there?
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
• Were there any .htaccess edits done?
• Any unauthorised FTP access?
• Check WordPress users list, any recent additions there?
• Study MySQL/phpMyAdmin for unusual content
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
• Were there any .htaccess edits done?
• Any unauthorised FTP access?
• Check WordPress users list, any recent additions there?
• Study MySQL/phpMyAdmin for unusual content
• Change passwords: FTP, cPanel
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
• Were there any .htaccess edits done?
• Any unauthorised FTP access?
• Check WordPress users list, any recent additions there?
• Study MySQL/phpMyAdmin for unusual content
• Change passwords: FTP, cPanel
• Scan access computer for keyloggers and malware
@adspedia / #WCSea
SELF MITIGATION ATTEMPT
• Were there any .htaccess edits done?
• Any unauthorised FTP access?
• Check WordPress users list, any recent additions there?
• Study MySQL/phpMyAdmin for unusual content
• Change passwords: FTP, cPanel
• Scan access computer for keyloggers and malware
• Did a good job: my website was clean and back online
@adspedia / #WCSea
Until December 24, 2014
When…
@adspedia / #WCSea
@adspedia / #WCSea
HACKED
AGAIN!
@adspedia / #WCSea
Time ToAsk For
HELP!
@adspedia / #WCSea
@adspedia / #WCSea@adspedia / #Webstockro
@adspedia / #WCSea
@adspedia / #WCSea
WHAT I THINK HAPPENED
@adspedia / #WCSea
WHAT I THINK HAPPENED
• RANDOM ATTACK
@adspedia / #WCSea
WHAT I THINK HAPPENED
• RANDOM ATTACK
• DEFAULT WORDPRESS SITE, NO CUSTOM SECURITY SETTINGS
@adspedia / #WCSea
WHAT I THINK HAPPENED
• RANDOM ATTACK
• DEFAULT WORDPRESS SITE, NO CUSTOM SECURITY SETTINGS
• VULNERABLE VERSION OF TIMTHUMB
@adspedia / #WCSea
WHAT I THINK HAPPENED
• RANDOM ATTACK
• DEFAULT WORDPRESS SITE, NO CUSTOM SECURITY SETTINGS
• VULNERABLE VERSION OF TIMTHUMB
• HACKER’S INTENT: USE SITE FOR SPAM
@adspedia / #WCSea
@adspedia / #WCSea
HACKED WEBSITE REPORT 2017
@adspedia / #WCSea
Affected CMS platforms:
WordPress (74%>83%)
Joomla! (17%>13.1%)
Magento (6%>6.5%)
Drupal (2%>1.6%)
@adspedia / #WCSea
Outdated CMS at infection time:
WordPress (61%>39.3%)
Joomla! (84%>69.8%)
Magento (94%>80.3%)
Drupal (86%>65.3%)
@adspedia / #WCSea
@adspedia / #WCSea
@adspedia / #WCSea
WORDPRESS SECURITY PLUGINS
@adspedia / #WCSea
A RANDOM LIST
•WordFence
•BulletProof Security
•Sucuri Security
•iThemes Security
•Acunetix Secure WordPress
•All In One WP Security
•Hide My WP
@adspedia / #WCSea
5 BEST PRACTICES FOR WEBSITE SECURITY
@adspedia / #WCSea
1. LEARN
@adspedia / #WCSea
1. LEARN
• START WITH BLOG.SUCURI.NET
@adspedia / #WCSea
1. LEARN
• START WITH BLOG.SUCURI.NET
• EMPLOY A WEB APPLICATION FIREWALL (SUCURI FIREWALL)
@adspedia / #WCSea
1. LEARN
• START WITH BLOG.SUCURI.NET
• EMPLOY A WEB APPLICATION FIREWALL (SUCURI FIREWALL)
• ACCESS CONTROL
@adspedia / #WCSea
1. LEARN
• START WITH BLOG.SUCURI.NET
• EMPLOY A WEB APPLICATION FIREWALL (SUCURI FIREWALL)
• ACCESS CONTROL
• PLATFORM VULNERABILITIES
@adspedia / #WCSea
1. LEARN
• START WITH BLOG.SUCURI.NET
• EMPLOY A WEB APPLICATION FIREWALL (SUCURI FIREWALL)
• ACCESS CONTROL
• PLATFORM VULNERABILITIES
• CHECK YOUR WEBSITE WHEN VULNERABILITIES ARE ANNOUNCED
@adspedia / #WCSea
2. PASSWORDS
@adspedia / #WCSea
2. PASSWORDS
• USE A PASSWORD MANAGER!
@adspedia / #WCSea
2. PASSWORDS
• USE A PASSWORD MANAGER!
• COMPLEX STRUCTURES
@adspedia / #WCSea
2. PASSWORDS
• USE A PASSWORD MANAGER!
• COMPLEX STRUCTURES
• UPPER CASE, LOWER CASE, SPECIAL CHARACTERS, NUMBERS
@adspedia / #WCSea
2. PASSWORDS
• USE A PASSWORD MANAGER!
• COMPLEX STRUCTURES
• UPPER CASE, LOWER CASE, SPECIAL CHARACTERS, NUMBERS
• LONGER THAN 10 CHARACTERS
@adspedia / #WCSea
2. PASSWORDS
• USE A PASSWORD MANAGER!
• COMPLEX STRUCTURES
• UPPER CASE, LOWER CASE, SPECIAL CHARACTERS, NUMBERS
• LONGER THAN 10 CHARACTERS
• DON’T REUSE PASSWORDS
@adspedia / #WCSea
3. UPDATES
@adspedia / #WCSea
3. UPDATES
• CMS
@adspedia / #WCSea
3. UPDATES
• CMS
• PLUGINS
@adspedia / #WCSea
3. UPDATES
• CMS
• PLUGINS
• SERVER
@adspedia / #WCSea
4. BACKUPS
@adspedia / #WCSea
4. BACKUPS
• ON A SCHEDULE
@adspedia / #WCSea
4. BACKUPS
• ON A SCHEDULE
• OFFSITE
@adspedia / #WCSea
4. BACKUPS
• ON A SCHEDULE
• OFFSITE
• TEST FREQUENTLY
@adspedia / #WCSea
5. USE PROFESSIONALS
@adspedia / #WCSea
5. USE PROFESSIONALS
• SECURITY IS NOT A DIY PROJECT
@adspedia / #WCSea
5. USE PROFESSIONALS
• SECURITY IS NOT A DIY PROJECT
• ADMIT WHEN OVERWHELMED
@adspedia / #WCSea
5. USE PROFESSIONALS
• SECURITY IS NOT A DIY PROJECT
• ADMIT WHEN OVERWHELMED
• EXTRA COST AND TIME TO DO IT IN-HOUSE
@adspedia / #WCSea
THANKYOU!
@adspedia / #WCSea
Val Vesa
Email: valentin@sucuri.net

More Related Content

Similar to How Being Hacked Turned Out to be the Best Thing That Ever Happened to Me

Sucuri Webinar: Oh No! My Website Has Been Hacked.
Sucuri Webinar: Oh No! My Website Has Been Hacked.Sucuri Webinar: Oh No! My Website Has Been Hacked.
Sucuri Webinar: Oh No! My Website Has Been Hacked.Sucuri
 
Oh no! My website has been hacked and why that was a good thing
Oh no! My website has been hacked and why that was a good thingOh no! My website has been hacked and why that was a good thing
Oh no! My website has been hacked and why that was a good thingValentin Vesa
 
Sucuri Webinar: How to clean hacked WordPress sites
Sucuri Webinar: How to clean hacked WordPress sitesSucuri Webinar: How to clean hacked WordPress sites
Sucuri Webinar: How to clean hacked WordPress sitesSucuri
 
Sucuri Webinar: Hacked Website Trend Report Q1/2016
Sucuri Webinar: Hacked Website Trend Report Q1/2016Sucuri Webinar: Hacked Website Trend Report Q1/2016
Sucuri Webinar: Hacked Website Trend Report Q1/2016Sucuri
 
"Wordpress for web designers. What, when, how, where" por @nuriarai
"Wordpress for web designers. What, when, how, where" por @nuriarai"Wordpress for web designers. What, when, how, where" por @nuriarai
"Wordpress for web designers. What, when, how, where" por @nuriaraiwebcat
 
Empowering Non-Profits with WordPress
Empowering Non-Profits with WordPressEmpowering Non-Profits with WordPress
Empowering Non-Profits with WordPressCliff Seal
 
Ryan Markel - WordCamp US 2017
Ryan Markel - WordCamp US 2017Ryan Markel - WordCamp US 2017
Ryan Markel - WordCamp US 2017ryanmarkel
 
WordPress Can Do That
WordPress Can Do ThatWordPress Can Do That
WordPress Can Do ThatJess Jurick
 
Sucuri Webinar: Understand and Fix Google Blacklist Warnings
Sucuri Webinar: Understand and Fix Google Blacklist WarningsSucuri Webinar: Understand and Fix Google Blacklist Warnings
Sucuri Webinar: Understand and Fix Google Blacklist WarningsSucuri
 
The Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSecThe Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSecJames Wickett
 
Word press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp PresentationWord press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp PresentationAngela Samuels
 
A Noob's Journey to the Core
A Noob's Journey to the CoreA Noob's Journey to the Core
A Noob's Journey to the CoreRyan Welcher
 
Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...
Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...
Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...MobileMoxie
 
Infosec girls training-hackcummins-college-jan-2020(v0.1)
Infosec girls training-hackcummins-college-jan-2020(v0.1)Infosec girls training-hackcummins-college-jan-2020(v0.1)
Infosec girls training-hackcummins-college-jan-2020(v0.1)Shrutirupa Banerjiee
 
The Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSecThe Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSecJames Wickett
 
Why Multisite? Uses for WordPress Multisite you may not have heard of.
Why Multisite? Uses for WordPress Multisite you may not have heard of.Why Multisite? Uses for WordPress Multisite you may not have heard of.
Why Multisite? Uses for WordPress Multisite you may not have heard of.rachel_mccollin
 
Innotech Austin 2017: The Path of DevOps Enlightenment for InfoSec
Innotech Austin 2017: The Path of DevOps Enlightenment for InfoSecInnotech Austin 2017: The Path of DevOps Enlightenment for InfoSec
Innotech Austin 2017: The Path of DevOps Enlightenment for InfoSecJames Wickett
 
Sucuri Webinar: How Websites Get Hacked
Sucuri Webinar: How Websites Get HackedSucuri Webinar: How Websites Get Hacked
Sucuri Webinar: How Websites Get HackedSucuri
 
Contributing Back to WordPress - Getting Involved in the Community
Contributing Back to WordPress - Getting Involved in the CommunityContributing Back to WordPress - Getting Involved in the Community
Contributing Back to WordPress - Getting Involved in the CommunityZero Point Development
 

Similar to How Being Hacked Turned Out to be the Best Thing That Ever Happened to Me (20)

Sucuri Webinar: Oh No! My Website Has Been Hacked.
Sucuri Webinar: Oh No! My Website Has Been Hacked.Sucuri Webinar: Oh No! My Website Has Been Hacked.
Sucuri Webinar: Oh No! My Website Has Been Hacked.
 
Oh no! My website has been hacked and why that was a good thing
Oh no! My website has been hacked and why that was a good thingOh no! My website has been hacked and why that was a good thing
Oh no! My website has been hacked and why that was a good thing
 
Sucuri Webinar: How to clean hacked WordPress sites
Sucuri Webinar: How to clean hacked WordPress sitesSucuri Webinar: How to clean hacked WordPress sites
Sucuri Webinar: How to clean hacked WordPress sites
 
Sucuri Webinar: Hacked Website Trend Report Q1/2016
Sucuri Webinar: Hacked Website Trend Report Q1/2016Sucuri Webinar: Hacked Website Trend Report Q1/2016
Sucuri Webinar: Hacked Website Trend Report Q1/2016
 
"Wordpress for web designers. What, when, how, where" por @nuriarai
"Wordpress for web designers. What, when, how, where" por @nuriarai"Wordpress for web designers. What, when, how, where" por @nuriarai
"Wordpress for web designers. What, when, how, where" por @nuriarai
 
Empowering Non-Profits with WordPress
Empowering Non-Profits with WordPressEmpowering Non-Profits with WordPress
Empowering Non-Profits with WordPress
 
Ryan Markel - WordCamp US 2017
Ryan Markel - WordCamp US 2017Ryan Markel - WordCamp US 2017
Ryan Markel - WordCamp US 2017
 
WordPress Can Do That
WordPress Can Do ThatWordPress Can Do That
WordPress Can Do That
 
MWUG wp-myths
MWUG wp-mythsMWUG wp-myths
MWUG wp-myths
 
Sucuri Webinar: Understand and Fix Google Blacklist Warnings
Sucuri Webinar: Understand and Fix Google Blacklist WarningsSucuri Webinar: Understand and Fix Google Blacklist Warnings
Sucuri Webinar: Understand and Fix Google Blacklist Warnings
 
The Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSecThe Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSec
 
Word press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp PresentationWord press theme and plugins WordCamp Presentation
Word press theme and plugins WordCamp Presentation
 
A Noob's Journey to the Core
A Noob's Journey to the CoreA Noob's Journey to the Core
A Noob's Journey to the Core
 
Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...
Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...
Cindy Krum Krum Cindy "What SEOs Need To Know About Progressive Web Apps" SMX...
 
Infosec girls training-hackcummins-college-jan-2020(v0.1)
Infosec girls training-hackcummins-college-jan-2020(v0.1)Infosec girls training-hackcummins-college-jan-2020(v0.1)
Infosec girls training-hackcummins-college-jan-2020(v0.1)
 
The Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSecThe Path of DevOps Enlightenment for InfoSec
The Path of DevOps Enlightenment for InfoSec
 
Why Multisite? Uses for WordPress Multisite you may not have heard of.
Why Multisite? Uses for WordPress Multisite you may not have heard of.Why Multisite? Uses for WordPress Multisite you may not have heard of.
Why Multisite? Uses for WordPress Multisite you may not have heard of.
 
Innotech Austin 2017: The Path of DevOps Enlightenment for InfoSec
Innotech Austin 2017: The Path of DevOps Enlightenment for InfoSecInnotech Austin 2017: The Path of DevOps Enlightenment for InfoSec
Innotech Austin 2017: The Path of DevOps Enlightenment for InfoSec
 
Sucuri Webinar: How Websites Get Hacked
Sucuri Webinar: How Websites Get HackedSucuri Webinar: How Websites Get Hacked
Sucuri Webinar: How Websites Get Hacked
 
Contributing Back to WordPress - Getting Involved in the Community
Contributing Back to WordPress - Getting Involved in the CommunityContributing Back to WordPress - Getting Involved in the Community
Contributing Back to WordPress - Getting Involved in the Community
 

More from Valentin Vesa

6 unelte pentru social media
6 unelte pentru social media6 unelte pentru social media
6 unelte pentru social mediaValentin Vesa
 
Why being hacked turned out to be the best thing that happened to me
Why being hacked turned out to be the best thing that happened to me Why being hacked turned out to be the best thing that happened to me
Why being hacked turned out to be the best thing that happened to me Valentin Vesa
 
How having my website hacked opened up career opportunities
How having my website hacked opened up career opportunitiesHow having my website hacked opened up career opportunities
How having my website hacked opened up career opportunitiesValentin Vesa
 
Tu controlezi ce share-uieşti pe Facebook!
Tu controlezi ce share-uieşti pe Facebook!Tu controlezi ce share-uieşti pe Facebook!
Tu controlezi ce share-uieşti pe Facebook!Valentin Vesa
 
Proiectul de lege privind Rosia Montana
Proiectul de lege privind Rosia MontanaProiectul de lege privind Rosia Montana
Proiectul de lege privind Rosia MontanaValentin Vesa
 
GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION
GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION
GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION Valentin Vesa
 
Sexul vs barza the sex vs the stork
Sexul vs barza the sex vs the storkSexul vs barza the sex vs the stork
Sexul vs barza the sex vs the storkValentin Vesa
 
Lipsa tratament lack of treatment
Lipsa tratament lack of treatmentLipsa tratament lack of treatment
Lipsa tratament lack of treatmentValentin Vesa
 
The 7 whiteboard sessions every social media strategist needs to have in 2012
The 7 whiteboard sessions every social media strategist needs to have in 2012The 7 whiteboard sessions every social media strategist needs to have in 2012
The 7 whiteboard sessions every social media strategist needs to have in 2012Valentin Vesa
 
Social media pocket guide
Social media pocket guideSocial media pocket guide
Social media pocket guideValentin Vesa
 
Social Media Infographics
Social Media InfographicsSocial Media Infographics
Social Media InfographicsValentin Vesa
 
Red panic Button Emergency App for iPhone & Android
Red panic Button Emergency App for iPhone & AndroidRed panic Button Emergency App for iPhone & Android
Red panic Button Emergency App for iPhone & AndroidValentin Vesa
 
Influenta brandurilor asupra consumatorilor social media
Influenta brandurilor asupra consumatorilor social mediaInfluenta brandurilor asupra consumatorilor social media
Influenta brandurilor asupra consumatorilor social mediaValentin Vesa
 
Heart Attack while driving - what to do
Heart Attack while driving - what to doHeart Attack while driving - what to do
Heart Attack while driving - what to doValentin Vesa
 
Magie sau fenta mishto?
Magie sau fenta mishto?Magie sau fenta mishto?
Magie sau fenta mishto?Valentin Vesa
 

More from Valentin Vesa (16)

6 unelte pentru social media
6 unelte pentru social media6 unelte pentru social media
6 unelte pentru social media
 
Why being hacked turned out to be the best thing that happened to me
Why being hacked turned out to be the best thing that happened to me Why being hacked turned out to be the best thing that happened to me
Why being hacked turned out to be the best thing that happened to me
 
How having my website hacked opened up career opportunities
How having my website hacked opened up career opportunitiesHow having my website hacked opened up career opportunities
How having my website hacked opened up career opportunities
 
Tu controlezi ce share-uieşti pe Facebook!
Tu controlezi ce share-uieşti pe Facebook!Tu controlezi ce share-uieşti pe Facebook!
Tu controlezi ce share-uieşti pe Facebook!
 
Proiectul de lege privind Rosia Montana
Proiectul de lege privind Rosia MontanaProiectul de lege privind Rosia Montana
Proiectul de lege privind Rosia Montana
 
GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION
GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION
GLOBALIZING TORTURE: CIA SECRET DETENTION AND EXTRAORDINARY RENDITION
 
Sexul vs barza the sex vs the stork
Sexul vs barza the sex vs the storkSexul vs barza the sex vs the stork
Sexul vs barza the sex vs the stork
 
Lexcivitas
LexcivitasLexcivitas
Lexcivitas
 
Lipsa tratament lack of treatment
Lipsa tratament lack of treatmentLipsa tratament lack of treatment
Lipsa tratament lack of treatment
 
The 7 whiteboard sessions every social media strategist needs to have in 2012
The 7 whiteboard sessions every social media strategist needs to have in 2012The 7 whiteboard sessions every social media strategist needs to have in 2012
The 7 whiteboard sessions every social media strategist needs to have in 2012
 
Social media pocket guide
Social media pocket guideSocial media pocket guide
Social media pocket guide
 
Social Media Infographics
Social Media InfographicsSocial Media Infographics
Social Media Infographics
 
Red panic Button Emergency App for iPhone & Android
Red panic Button Emergency App for iPhone & AndroidRed panic Button Emergency App for iPhone & Android
Red panic Button Emergency App for iPhone & Android
 
Influenta brandurilor asupra consumatorilor social media
Influenta brandurilor asupra consumatorilor social mediaInfluenta brandurilor asupra consumatorilor social media
Influenta brandurilor asupra consumatorilor social media
 
Heart Attack while driving - what to do
Heart Attack while driving - what to doHeart Attack while driving - what to do
Heart Attack while driving - what to do
 
Magie sau fenta mishto?
Magie sau fenta mishto?Magie sau fenta mishto?
Magie sau fenta mishto?
 

Recently uploaded

IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsEnterprise Knowledge
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking MenDelhi Call girls
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsHyundai Motor Group
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure servicePooja Nehwal
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetEnjoy Anytime
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Patryk Bandurski
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?XfilesPro
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountPuma Security, LLC
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
Maximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptxMaximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptxOnBoard
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptxLBM Solutions
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxMalak Abu Hammad
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 

Recently uploaded (20)

Vulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptxVulnerability_Management_GRC_by Sohang Sengupta.pptx
Vulnerability_Management_GRC_by Sohang Sengupta.pptx
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?How to Remove Document Management Hurdles with X-Docs?
How to Remove Document Management Hurdles with X-Docs?
 
Breaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path MountBreaking the Kubernetes Kill Chain: Host Path Mount
Breaking the Kubernetes Kill Chain: Host Path Mount
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
Maximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptxMaximizing Board Effectiveness 2024 Webinar.pptx
Maximizing Board Effectiveness 2024 Webinar.pptx
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptx
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 

How Being Hacked Turned Out to be the Best Thing That Ever Happened to Me

Editor's Notes

  1. Who tweeted already on #WCSEA?
  2. Video play automatically for
  3. This is Maria when she was 7, back in 2007, we’re now at 11th year and she is 18 now. 2006 IN FAMILY, TEACHING OUR SON LUCA TO SHARE WITH OTHER KIDS WHOSE PARENTS COULD NOT AFFORD CHRISTMAS GIFTS 2017: 250.000+ BOXES || 26 COUNTRIES, 371 CITIES AND 816 COLLECTION CENTRES.
  4. … SO IN 2009 WE WANTED A WEBSITE FOR THE PROJECT MY FIRST WORDPRESS INSTALL SIMPLE AUTO-INSTALLER FROM CPANEL WITHOUT ANY SECURITY SETUP OR HARDENED PROCEDURES
  5. STARTED SHOEBOX.RO ON DECEMBER 7, 2009. BASIC WORDPRESS INSTALL, FREE THEME FROM VLADSTUDIO.COM - Everything was great until…
  6. REACHING THE END OF MY PERSONAL WEBSITE SECURITY KNOWLEDGE I DECIDED IT IS TIME TO ASK FOR HELP LOOKED UP “HACKED WORDPRESS CLEANING SERVICES” AND FEW CLICKS AND REVIEWS LATER, I FOUND:
  7. - THEY HAD A LIVE CHAT AT 4AM MY TIME!!! - AGENT WAS CALM, VERY WELL INFORMED ABOUT TECHNOLOGY AND WEBSITE SECURITY - WEBSITE WAS BACK ONLINE IN ~40 MINUTES
  8. 2009-2014: CONTINUOUS IMPROVEMENTS, CHANGED THEME, ADDED USERS, PROJECT GROWS AS I WAS LEARNING MORE ABOUT WORDPRESS I STARTED HELPING OTHERS TO GET ONLINE - TRAVEL THE WORLD AND TALK TO TECH COMMUNITIES
  9. Compared to Q3 2016
  10. Compared to Q3 2016
  11. This doesn’t necessarily speak to more complex hacks but does speak to an increase in the depth of files being affected with each hack. It also indicates that cleaning the symptom from one file is often not enough to remove an infection completely.
  12. Most are free Pretty good scanning, monitoring, protection features USE THEM!
  13. SO WHAT DO I DO NOW TO KEEP A SUPERIOR WEBSITE SECURITY POSTURE?