garis
May 3 2007, 01:02 AM
Hello,
In the light of the latest waves of website hacks, I'm now working on the hyip security software that performs security scans of hyip sites. The idea is not such trivial as to see if the website have an SSL or DDos protection, generally it doesn't matter and doesn't help much. My software will scan both the website script and server for known vulnerabilities, that can grant access to the hyip database, the permission to execute arbitrary code, etc. In a few words I will find bugs that may result in money theft. The database of the software will be updated on a regular basis from the websites such as securityfocus.com and securitylab.com. The software will not only find bugs, but also suggest the ways to fix it.
I'm going to open the service for both admins and hyip players. Admins will receive a detailed report on the security and ways to enchance it, hyip players will receive the prodection level of the site from 1 to 10 and brief report on found bugs.
In my opinion, the programs that are found to be highly protected, use perfect script and hosted on the best servers, have much more chances to stay for long, as it takes great deal of work to take into account all the aspects of website security.
Waiting your comments on this project. Will you use the service?
Dannyboy-online
May 3 2007, 01:35 AM
Not really, HYIP is full of scammers and scammers would do anything to scam, the real problem with the hyip security today are the admins, 90% of the Doss attacks are not true, they just got feed up and want to cashout everyone's earnings. That's all.
Danny...
DarkProdigy
May 3 2007, 06:26 PM
QUOTE(Dannyboy-online @ May 3 2007, 05:35 AM) [snapback]4048282[/snapback]
Not really, HYIP is full of scammers and scammers would do anything to scam, the real problem with the hyip security today are the admins, 90% of the Doss attacks are not true, they just got feed up and want to cashout everyone's earnings. That's all.
Danny...
Do you know how many times i stated that most DDoS claims were fake...90% is an understatement and just being nice...
eiranis
May 3 2007, 06:39 PM
Only after I came into the HYIP industry, knew what DDoS was... and I have to agree that most attacks had been fake, just a lie to run with the pennies, you shouldn't waste your time providing such security unless you want to guarantee the deposits.
KingOfQueens
May 3 2007, 11:16 PM
it wouldnt work, cause a admin can fake a attack,, he can say oh i was ddos'd and they also got the funds, and how would we know if hes lieing or not..your scan say one thing and the admin can say another..
Jacob
May 4 2007, 03:15 AM
I don't feel the idea is good...having a HYIP security is good only for admins and bad for members....when admin closes the website, members are nothing...LOL...
CyberEquities
May 23 2007, 03:11 AM
Not a bad idea for websites in general esp ones that hold personal information about clients\
presently am talking with HackerSafe about there service for the business..
The sites that use premade scripts tend to be scammer's... but god knows after putting 600K into
the business over 3 years in R & D and backend coding... not to mention lawyers and accountants