MyBB Support

Questions about MyBB Backdoors

Submitted by Glunar, , Thread ID: 22332

Thread Closed

RE: Questions about MyBB Backdoors

Mercy
Web Designer and Server Admin
Level:
0
Reputation:
5
Posts:
211
Likes:
8
Credits:
235
11-07-2016, 03:14 PM
#6
11-07-2016, 03:11 PM
Glunar Wrote:
11-07-2016, 03:08 PM
Mercy Wrote:
Well there is no way to "check for backdoors" as backdoors are found by hackers. There isn't like a tool where you can run and will tell you all the backdoors and vulnerabilities on your website. You could however deploy a Web Application Firewall or scan your website for vulnerabilties and patch it. By outdated theme I would presume that this theme hasn't been updated for some time. To my understanding of MyBB forums, I think the structure of themes have no changed much so it shouldn't really effect you.

Good luck

Well I mostly use Ransack Agent or whatever it is to scan files. In Garry's Mod (Lua) You mostly search for Run.str or Run.String or something like that so I was asking if there's any specific code which actually lets them to do something bad.

There isn't a set of code that can make a website vulnerable. Well there are the common ones, but I doubt MyBB have those lying around anywhere. The vulnerabilities you see for MyBB are just simple code alternatives or shortcuts. So to make the code more efficient or something, devs will sometimes use alternative methods or new methods. This sometimes leaves the software being vulnerable. MyBB is opensource, so a lot of Vulnerabilities are found since hackers can take a look at the code. But most hackers dont' site around going through thousand lines of code. White hats or security researchers do, and when they find something they will report it and MyBB would fix it. My best reccomendation is to keep up to date on all the software, MyBB, web server, server OS updates, all of it. I would also hide your admin panel, you can Google on how to do that there are tutorials out there.

Users browsing this thread: 3 Guest(s)