{"id":5232,"date":"2019-06-14T14:00:31","date_gmt":"2019-06-14T12:00:31","guid":{"rendered":"https:\/\/assistance.groupemagiconline.com\/?post_type=ht_kb&#038;p=5232"},"modified":"2022-11-28T09:15:14","modified_gmt":"2022-11-28T08:15:14","slug":"securite-de-votre-site","status":"publish","type":"ht_kb","link":"https:\/\/assistance.groupemagiconline.com\/en\/knowledge-base\/securite-de-votre-site\/","title":{"rendered":"Security of your site"},"content":{"rendered":"<h2 class=\"sectionedit1\" style=\"text-align: justify;\">Advice<\/h2>\n<div class=\"level1\" style=\"text-align: justify;\">\n<p>Obviously, we are not going to deal in a few lines with the innumerable problems related to the <a href=\"https:\/\/assistance.groupemagiconline.com\/en\/knowledge-base\/piratage-de-mon-site-web\/\">website security<\/a>. Entire books are devoted to this and computer security is a profession in its own right.<\/p>\n<p>We will limit ourselves to a few recommendations that considerably reduce the risk of one day being confronted with a disaster.<\/p>\n<\/div>\n<h2 class=\"sectionedit2\" style=\"text-align: justify;\">Software updates<\/h2>\n<div class=\"level2\" style=\"text-align: justify;\">\n<p><strong>It's FON-DA-MEN-TAL! If there's only one thing you need to remember, it's this<\/strong>. Read carefully the following lines, they may save your life.<\/p>\n<p><strong>More than 99% customers<\/strong>\u00a0victims of piracy are victims of piracy because they have not updated the software they use.\u00a0<em class=\"u\">If you don't update your site, you can be almost certain that sooner or later your site will be hacked, no matter how big it is, how many people visit it or how important it is<\/em>\u00a0! Hackers use automatic bots that scan search engines and automatically exploit security holes in known software.<\/p>\n<p><strong>Your host can't do anything for you<\/strong>\u00a0if the data you host has known security flaws. Our servers are obviously secure, but it is important to understand that hacking a site has nothing to do with hacking a server. We cannot protect you against attacks that target the programming code of your site.\u00a0<em class=\"u\">We are a hosting company, not your webmaster<\/em>.<\/p>\n<p>You use a\u00a0<acronym title=\"Content Management System\">CMS<\/acronym>\u00a0as\u00a0<strong>Joomla, Prestashop, WordPress, OsCommerce, PhpBB, Spip, Coppermine<\/strong>etc.? You should keep yourself informed on official websites and user forums about security updates and apply them. If you are not willing or able to do this or delegate it, then you should not use a\u00a0<acronym title=\"Content Management System\">CMS<\/acronym>. The updates can be tedious, but they will always be much less tedious than if you had to face the impetuous passage of an indelicate hacker...<\/p>\n<p>The updates also concern the means of production of your site: software of creation of the site, client\u00a0<acronym title=\"File Transfer Protocol\">FTP<\/acronym>\u00a0(<strong>FileZilla<\/strong>etc.), and more generally your PC: if it is infected, the virus can perfectly use your hosting to exploit it (phishing, spam, etc.)<\/p>\n<\/div>\n<h2 class=\"sectionedit3\" style=\"text-align: justify;\">Make your own backups!<\/h2>\n<div class=\"level2\" style=\"text-align: justify;\">\n<p><strong>You can never have too many backups!<\/strong><\/p>\n<p>Back up your files, back up your databases with PhpMyAdmin, and\u00a0<strong>archive as much as possible on your computer<\/strong>\u00a0then periodically burn them on a DVD or copy them on another support (USB key, external hard disk...) so as to keep a copy even if something happens to your computer.<\/p>\n<p>Even if our offers include an automatic backup system,\u00a0<em class=\"u\">this does not exempt you from making your own backups<\/em>\u00a0!<\/p>\n<\/div>\n<h2 class=\"sectionedit4\" style=\"text-align: justify;\">Confidentiality of identifiers<\/h2>\n<div class=\"level2\" style=\"text-align: justify;\">\n<p>The most \"effective\" way to get hacked is to leave your credentials lying around. Adopt a strict security policy from the start. Don't leave your credentials lying around, prey to hackers, viruses, Trojans, prying eyes... Keep your credentials in a safe place.<\/p>\n<p>If you change your passwords, choose completely random passwords that you learn by heart, or write down on a piece of paper. Avoid at all costs words from the dictionary (of any language!), proper names, actor's names, singer's names, your birth date, etc. Try to alternate numbers, lower case, and upper case. This\u00a0<a class=\"urlextern\" title=\"http:\/\/fr.wikipedia.org\/wiki\/Password\" href=\"http:\/\/www.generateur-motdepasse.com\/\" target=\"_blank\" rel=\"noopener\">online tool<\/a>\u00a0will help you generate a good password. Be sure to use different passwords for each service to avoid chaining effects.<\/p>\n<\/div>\n<h2 class=\"sectionedit5\" style=\"text-align: justify;\">Protect what should not be visible to everyone<\/h2>\n<div class=\"level2\" style=\"text-align: justify;\">\n<p>You can easily restrict access to a folder to one or more users. To do this you just need to use the .htaccess file<\/p>\n<p>If you work with several people on a website, you can also restrict the access of each collaborator to a specific folder by\u00a0<a href=\"https:\/\/assistance.groupemagiconline.com\/en\/knowledge-base\/gerer-mes-comptes-ftp\/#creer-un-compte-ftp\" target=\"_blank\" rel=\"noopener\">creating secondary FTP access<\/a>.<\/p>\n<\/div>\n<h2 class=\"sectionedit6\" style=\"text-align: justify;\">What can happen to you if you are hacked<\/h2>\n<div class=\"level2\" style=\"text-align: justify;\">\n<p>You'd be surprised how fertile a hacker's imagination can be. Here's what could happen to your site if a hacker exploits a security hole:<\/p>\n<ul>\n<li class=\"level1\">\n<div class=\"li\"><a class=\"urlextern\" title=\"http:\/\/fr.wikipedia.org\/wiki\/Spam\" href=\"http:\/\/fr.wikipedia.org\/wiki\/Spam\" target=\"_blank\" rel=\"noopener\">Spam<\/a>\u00a0the hacker will use your access to send spam to the whole world<\/div>\n<\/li>\n<li class=\"level1\">\n<div class=\"li\"><a class=\"urlextern\" title=\"http:\/\/fr.wikipedia.org\/wiki\/Phishing\" href=\"http:\/\/fr.wikipedia.org\/wiki\/Phishing\" target=\"_blank\" rel=\"noopener\">Phishing<\/a>\u00a0the hacker will discreetly use your hosting to lure in account numbers and credit cards<\/div>\n<\/li>\n<li class=\"level1\">\n<div class=\"li\"><a class=\"urlextern\" title=\"http:\/\/fr.wikipedia.org\/wiki\/D%C3%A9facement\" href=\"http:\/\/fr.wikipedia.org\/wiki\/D%C3%A9facement\" target=\"_blank\" rel=\"noopener\">Defacement<\/a>\u00a0: the hacker replaces your homepage and disfigures your site<\/div>\n<\/li>\n<li class=\"level1\">\n<div class=\"li\"><strong>Adding malicious code<\/strong>\u00a0the hacker will add a few lines\u00a0<acronym title=\"HyperText Markup Language\">HTML<\/acronym>,\u00a0<acronym title=\"Hypertext Preprocessor\">PHP<\/acronym>Javascript without your knowledge in order to divert your visitors to illegal sites or make them download viruses<\/div>\n<\/li>\n<li class=\"level1\">\n<div class=\"li\"><strong>Vandalism<\/strong>\u00a0the hacker will have fun by simply deleting your files, databases and doing maximum damage<\/div>\n<\/li>\n<\/ul>\n<\/div>\n<h2 class=\"sectionedit7\" style=\"text-align: justify;\">Your responsibility<\/h2>\n<div class=\"level2\">\n<p style=\"text-align: justify;\"><strong>Remember that until proven otherwise and in good faith, you remain\u00a0<em class=\"u\">criminally responsible<\/em>\u00a0of the data you host and consequently of any illegal actions resulting from it<\/strong>. Take it very seriously, because we have already seen clients go into custody...<\/p>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>Advice Obviously, we are not going to deal in a few lines with the countless problems related to the security of websites. Entire books are devoted to this and computer security is a profession in its own right. We will content ourselves with a few recommendations which considerably reduce the risk of being confronted one day with a problem...<\/p>","protected":false},"author":52,"comment_status":"open","ping_status":"closed","template":"","format":"standard","meta":{"footnotes":""},"ht-kb-category":[26],"ht-kb-tag":[669],"class_list":["post-5232","ht_kb","type-ht_kb","status-publish","format-standard","hentry","ht_kb_category-autres-services","ht_kb_tag-site-web"],"_links":{"self":[{"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/ht-kb\/5232","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/ht-kb"}],"about":[{"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/types\/ht_kb"}],"author":[{"embeddable":true,"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/users\/52"}],"replies":[{"embeddable":true,"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/comments?post=5232"}],"version-history":[{"count":3,"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/ht-kb\/5232\/revisions"}],"predecessor-version":[{"id":11500,"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/ht-kb\/5232\/revisions\/11500"}],"wp:attachment":[{"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/media?parent=5232"}],"wp:term":[{"taxonomy":"ht_kb_category","embeddable":true,"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/ht-kb-category?post=5232"},{"taxonomy":"ht_kb_tag","embeddable":true,"href":"https:\/\/assistance.groupemagiconline.com\/en\/wp-json\/wp\/v2\/ht-kb-tag?post=5232"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}