Another measure to prevent website from hacking is restricting users from uploading files. When you allow users to upload files to your website your website becomes vulnerable to website security risk. There are number of risk associated with file uploading, as the file being uploaded could contain a script that when executed on your server, completely opens up your website.
If you have any kind of file upload form then you need to treat all the files with great suspicion. Images can easily be faked and if you are allowing users to upload images, you cannot just rely on the file extension to verify that the file is an image.
What you need to do is prevent direct access to uploaded files altogether. With this solution, any files uploaded to your website are stored in a folder outside of the webroot or in the database as a blob. If your files are not directly accessible you will need to create a script to fetch the files from the private folder (or an HTTP handler in .NET) and deliver them to the browser.
This will ensure that malicious or fake files don't get uploaded to your website.
Related Article
Vaporizers and E-Cigarettes
Digireload TeamFinally, electronic equipment which is a healthy substitute for smoking...E-Cigarettes and Vaporizers. Both of these products have an upward trend ...
400 Bad Request
Digireload TeamComing to the 40 Bad Request error, when you search for something in your browser which does not fit in the rules of HTTP protocol, your search que...
Define & Focus on Financial Goals
Digireload TeamIt is recommended to invest for a long term but you have the flexibility to choose the period for which you want to stay invested on a particular a...








.png)