当前位置:网站首页>What should I do after the domain name of website security is hijacked and the domain name is hijacked!!!
What should I do after the domain name of website security is hijacked and the domain name is hijacked!!!
2022-07-22 20:16:00 【douya0012】
The official Weibo of qianfeng.com released an announcement , Announced that the domain name was stolen and lost billions . Today, hackers are everywhere , Domain name theft and hijacking happen almost every day . Baidu search engine hopes that the webmaster will pay attention to the collection 、 Traffic 、 While realizing , Pay more attention to domain name security , After all, domain name security is the foundation of survival . In the previous contact with the stationmaster , I found that webmasters have the following Psychology : The domain name is completely controlled by the service provider , We are on the passive side . Then the webmaster really doesn't have to do anything 、 Can't do anything ?
One 、 Serious consequences of domain name hijacking
1, The domain name is resolved to another address , The user is not able to access... Properly , Website traffic is damaged
2, Generate a large number of subdomains through pan resolution , Point to other addresses together ( Often malicious spam websites )
3, Domain names are resolved to malicious phishing sites , Resulting in the loss of user property
4, When the content of the hijacked domain name interferes with the search results , To ensure user experience and safety , Baidu search engine will temporarily shut down the collection and display of domain names , It will not be released again until it is strictly reviewed and confirmed
IIS7 Website monitoring can prevent all kinds of website hijacking in advance 、 And it's free online 、 It is applicable to all station masters 、 Government website 、 School 、 company 、 Hospital and other websites . He can do it 24 Hourly timing monitoring 、 At the same time, it can let you know whether the website is hacked 、 Be invaded 、 Changed title 、 Black chain 、 Hijacked 、 Wall and quilt DNS Is it contaminated or not 、 It also has exclusive detection of the website's real full open time 、 Let you as stationmaster can know oneself website health condition clearly !
Official picture
Official address :IIS7 Website monitoring
Two , How to reduce the risk of domain name hijacking , Reduce the loss
1, Set complex passwords for domain name registrants and registration mailboxes , And often replace . Use a separate DNS service , You also need to set the password above . At the same time, be careful not to use the same user name and password in multiple important registration places .
2, Set domain name update to locked state , It is not allowed to pass through DNS Service provider website modification record
* After using this method , Domain name resolution needs to be done through the service provider , Poor timeliness
3, Check domain name account information regularly 、 domain name whois Information , Every day site Website check for unexpected pages , Or use Baidu cloud observation to monitor —— When the domain name is resolved to a malicious site, you can receive an alarm at the first time ( Baidu cloud observation's introduction to domain name security )
4, Website operation and optimization personnel often check the website index and external chain information in detail , Be sure to check if there is any abnormality
3、 ... and , What should I do after the domain name is hijacked ?
1, Immediately change the domain name service provider and email password , Use complex passwords and change them frequently
2, Delete something that doesn't belong to you DNS analysis , recovery DNS Set up
3, If a third party is used DNS service , The third party should be modified immediately DNS Server account password , Lock account information , Open account SMS email reminder
4, Collect all illegally added pages and set 404, Use Baidu webmaster platform tool to submit the dead chain
5, If the domain name under the service provider is often hijacked , Consider changing to a safer and more stable service provider . Capable websites can be built by themselves DNS service , Independent operation and maintenance at its own risk
Two 、 How to reduce the risk of domain name hijacking . Reduce the loss
1, Set complex passwords for domain name registrants and registration mailboxes , And often replace . Use a separate DNS service , You also need to set the password above . At the same time, be careful not to use the same user name and password in multiple important registration places .
2, Set domain name update to locked state , It is not allowed to pass through DNS Service provider website modification record
* After using this method , Domain name resolution needs to be done through the service provider , Poor timeliness
3, Check domain name account information regularly 、 domain name whois Information , Every day site Website check for unexpected pages , Or use Baidu cloud observation to monitor —— When the domain name is resolved to a malicious site, you can receive an alarm at the first time
4, Website operation and optimization personnel often check the website index and external chain information in detail , Be sure to check if there is any abnormality
3、 ... and 、 What to do after the domain name is hijacked
1, Immediately change the domain name service provider and email password , Use complex passwords and change them frequently
2, Delete something that doesn't belong to you DNS analysis , recovery DNS Set up
3, If a third party is used DNS service , The third party should be modified immediately DNS Server account password , Lock account information , Open account SMS email reminder
4, Collect all illegally added pages and set 404, Use Baidu webmaster platform tool to submit the dead chain
5, If the domain name under the service provider is often hijacked , Consider changing to a safer and more stable service provider . Capable websites can be built by themselves DNS service , Independent operation and maintenance at its own risk
边栏推荐
猜你喜欢
随机推荐
Elastic Search 学习入门之Elastic Search的安装配置(一)
Spark资料查找
linux Redis下载及安装
Five levels of people and products
小鸟平台隐私政策
达梦数据库安装使用避坑指南
Nc26 bracket generation
Kotlin学习一:变量、函数、条件语句与循环语句
Youboxun helps Shenzhen build a global "city of Hongmeng Oula"
求幂的位数,求阶乘的位数
dns 劫持什么意思、dns 劫持原理及几种解决方法
Flutter development (32): flutter screen adaptation
Abstract class, interface
Leetcode 209. subarray with the smallest length
dns劫持如何完美修複?dns被劫持如何解决如何完美修複
Flutter开发(三十一):Flutter启动白屏
2017 year end summary
[reading notes] micro habits: slimming down
What is the meaning of DNS hijacking, the principle of DNS hijacking and several solutions
oc 项目倒入swift 代码注意事项