Does your VPS have MD5 enabled for passwords?

We recently discovered that the way we install a VPS differs slightly from the usual CD install. This is not something we do specifically but something that can be improved on in the set-ups of CentOS5.3. When you install from a CD it automatically enables MD5 encryption in passwords (which should be the norm), however… Continue reading Does your VPS have MD5 enabled for passwords?

Safe rm prevents accidents! try it!

I found this the today http://www.safe-rm.org.nz/ , and having had the odd accident im most definitely going to be installing this on my own server! What is safe-rm? Safe-rm is a safety tool intended to prevent the accidental deletion of important files by replacing /bin/rm with a wrapper, which checks the given arguments against a… Continue reading Safe rm prevents accidents! try it!

nginx hacking using proxy

It sucks getting hacked Every now and then servers get hacked. Often because of an exploitable webapp, or because (most commonly) a weak, easily guessable password was used on a well known user account (like 'root' or 'info' or 'test'). Once hackers gain access they often install some kind of malware. e.g. something that goes… Continue reading nginx hacking using proxy