Articles

Website hacking attempts on rise in lockdown period. Stay home and stay protected

Website hacking attempts on rise in lockdown period. Stay home and stay protected 

Dear abcaus users,

Website hacking attempts on rise in lockdown period

Stay home and stay protected but Covid-19 is not the only thing you should be worried about.

Amidst the lockdown, many of you will be working from home and so do the hackers. As per leading wordpress security service provider, over last 30 days, hacking attempts worldwide touched a new height of 251 million attempts on May 12th, 2020 from 191 million on May 11th, 2020.

You will be perhaps surprised to note that India tops the list of countries by number of attacks.

The above said attacks statistics were related to the attacks to gain access to the website that are hosted on wordpress. Today, most of the websites that need a Content Management System (CMS) uses WordPress.

According to my Firewall summary, majority of the attacks recorded on abcaus.in were “brute force” attempts.

A brute force attack is an attempt to crack a password or username using a trial and error approach and hoping, eventually, to guess the password/ username correctly. Though old, it is still popular with hackers. Even automated tools are also available to help with brute-force attacks.

Depending on the length and complexity of the password, cracking it can take few seconds to many years. Some hackers even target the same systems every day for months and sometimes even years.  

It is advisable that a user should choose 10-character passwords that include symbols or numerals. Such password would create 171.3 quintillion permutations/combinations. Using a processor that tries 10.3 billion hashes per second, cracking such password would take approximately 526 years.

Users should choose complex passphrases rather than single words. It’s important to avoid the most common passwords and to change them frequently. Users may also use password generation tools for creating complex passwords.

I would strongly recommend installing Wordfence Security Plugin for wordpress. It blocks an IP based on the user defined number of attacks

Stay home, stay protected.

– CA Ashutosh Lohani

Share

Recent Posts

  • Empanelment

FDCM invites application for empanelment of practising CAs/ Chartered Accountant Firms

Invitation For Empanelment Of Practising Chartered Accountants / Chartered Accountant Firms Forest Development Corporation of Maharashtra Limited (FDCM Limited), Nagpur,…

2 days ago
  • Empanelment

PGRI invites application for CAs for empanelment for Circulation Verification work

Press Registrar General of India (PGRI) invites application for empanelment of Chartered Accountants. The Press Registrar General of India manages…

2 days ago
  • Income Tax

CBDT notifies revised Form for registration as valuer & authorised income tax practitioner

CBDT notifies revised Form No. 169 for making application for registration as a valuer under section 514 and authorised income…

2 days ago
  • Income Tax

Curtailing time to file reply to notice u/s 148A(b) from 30 days prejudiced assessee’s right – HC

Curtailing time to file reply to notice u/s 148A(b) from statutorily available 30 days to 15 days seriously prejudiced assessee’s…

3 days ago
  • Income Tax

For registration u/s 12AB, applicability of proviso to section 2(15) can’t be adjudicated

At the stage of registration u/s 12AB, the CIT(E) not empowered to adjudicate applicability of provisio to section 2(15) of…

4 days ago
  • Income Tax

Flower bed area not included in “built up area” to calculate eligible limit u/s 80IB(10)

Flower bed area could not be included in the definition of “built up area” to calculate eligible limit of 1000…

5 days ago