ေအာက္က ကြ်န္ေတာ္ေပးထားတဲ့ code ေတြကို php.ini အျဖစ္ မိမိ server ေပၚမွာ တင္ေပးထားျခင္းျဖင့္
c99 တို ့ b374k တို ့ကဲ့သို ့ shell မ်ိဳးကို မိမိ sever ေပၚ အတင္ခံရျခင္းမွ ကာကြယ္ေပးထားႏိုင္ပါတယ္။
disable_functions = php_uname, getmyuid, getmypid, passthru, leak, listen, diskfreespace, tmpfile, link, ignore_user_abord, shell_exec, dl, set_time_limit, exec, system, highlight_file, source, show_source, fpaththru, virtual, posix_ctermid, posix_getcwd, posix_getegid, posix_geteuid, posix_getgid, posix_getgrgid, posix_getgrnam, posix_getgroups, posix_getlogin, posix_getpgid, posix_getpgrp, posix_getpid, posix, _getppid, posix_getpwnam, posix_getpwuid, posix_getrlimit, posix_getsid, posix_getuid, posix_isatty, posix_kill, posix_mkfifo, posix_setegid, posix_seteuid, posix_setgid, posix_setpgid, posix_setsid, posix_setuid, posix_times, posix_ttyname, posix_uname, proc_open, proc_close, proc_get_status, proc_nice, proc_terminate, phpinfo,system,passthru,shell_exec,escapeshellarg,escapeshellcmd,proc_close,proc_open,ini_alter,dl,popen,popen,pcntl_exec,socket_accept,socket_bind,socket_clear_error,socket_close,socket_connect
safe_mode = On
register_globals = Off
display_errors = Off
allow_url_fopen = Off
allow_url_include = Off
enable open_basedir(set it to webroot path)
Monday, June 10, 2013
//
Labels:
Hacking Tutorial
//
0
comments
//
0 comments to "How to secure your server from PHP Shells!"
Powered by Blogger.
Respect List
Blink Hacker Group
Myanmar Hacker Uniteam
Brotherhood of Myanmar Hackers
and All Myanmar Attackers & All Myanmar Black Hats.
Myanmar Hacker Uniteam
Brotherhood of Myanmar Hackers
and All Myanmar Attackers & All Myanmar Black Hats.
Categories
@Lph@ blog ကို Android Devices ေတြေပၚကဖတ္ခ်င္ရင္
Link list 1
- Application (1)
- E-book (2)
- Facebook Tips & Tricks (2)
- Hacking Tutorial (37)
- HTML (2)
- Kali Linux (6)
- Mobile Tips & Tricks (5)
- Myanmar Cyber Army (1)
Popular Posts
-
Local File Inclusion Vulnerability ကို အသံုးခ်ျပီး Shell upload လုပ္ဖို ့အတြက္ common parameter အခ်ိဳ ့ကို သိထားဖို ့လိုအပ္ပါတယ္။ index.p...
-
Kali Linux အသံုးျပဳသူေတြ အတြက္ အသံုး၀င္မယ့္ Tools ေတြရဲ ့ Descriptions ေတြရယ္ အသံုးျပဳပံုေတြ ပါ၀င္ပါတယ္။ Kali Linux ကို အသံုးျပဳေနတယ္ဆိုရ...
Followers
စည္းလုံးျခင္းသံစဥ္ေရဒီယုိ
Blog Archive
-
▼
2013
(56)
-
▼
June
(26)
- Android Bot Maker
- How to get someone IP Address
- Linux Sever တစ္ခုကို ဘယ္လို Root လုပ္မလဲ
- USB drive အသံုးျပဳျပီး Password မ်ားခိုးယူျခင္း
- Rooting A Server
- Inserting Keylogger Code in Android SwiftKey Using...
- Android Keylogger
- Firewall ကို Back Door / Trojan Virus ႏွင့္ ခ်ိဳးေ...
- Basic Spreading Method
- WordPress ရဲ ့ Zer0 Day Exploit
- Website Admin Panel ကို အလြယ္ကူဆံုး hack နည္း
- Hacking Paypal Accounts
- Hacking Joomla Sites
- DNN Method - Website Hacking
- Protect your Facebook account from hackers with My...
- Hack Wordpress Blogs
- Hack Unsecured Webcams
- How to secure your server from PHP Shells!
- HTML ဆုိတာဘာလဲ ?
- HTML မိတ္ဆက္
- IIS Exploit - Easiest way to deface Website [Windo...
- Hack YAHOO IDs by Brute Force Attack
- SMS Spoffer
- Hack / Bypass .asp sites using SQL Injection
- Hacking 800 Collection
- Blog ရဲ ့ရည္ရြယ္ခ်က္
-
▼
June
(26)
Post a Comment
သင့္ရဲ ့ comment မ်ားက ကြ်န္ေတာ္တို႔လို blogger ေတြ အတြက္ အားေဆးတစ္ခြက္ပါ။
ေကာင္းသည္၊ ဆုိးသည္ ေရးႏုိင္ပါသည္။ လိုအပ္သည္မ်ားကိုလည္းေဝဖန္အၾကံေပးႏုိင္ပါသည္။