Anyone may write and distribute a Joomla! extension. As a service to the global community, this freedom is actively encouraged and supported by the Joomla! Core team. Due to the openness and popularity of the Joomla! project, there are a wide variety of extensions offering a vast array of features. The quality and breadth of Joomla! extensions is one of the main advantages of Joomla.
 
Depending on the security configuration of your Web server the recommended default permissions of 755 for directories and 644 for files should be reasonably secure.
 
Modifying the $mosConfig_host to an IP Address of a remote host works for hosts that have separate MySQL servers from the client hosting servers.
 
The Joomla! Administrator's Security Checklist is a concise selection of the best tips and tricks from the many contributors in the Joomla Security Forums. Review this list BEFORE you install Joomla for the first time.
 
Search engine ranking AND your competitor's for each of your keywords every week.
Do this for Google, Yahoo, MSN and Alta Vista at the minimum.
 
Beberapa Module module yang dapat dipakai untuk melihat statistik pengunjung pada web kita ada banyak sekali.
 
Joomla - Component: Create Hello World Component on Front End

I follow undocumented rule, learn programming for first time by creating "Hello World" page. I will show you how to create component Hello World. It realy easy.
 
Definition
Remote file inclusion, commonly known as RFI is a form of attack where the attacker trys to inject there own php code inside your php app's. If an attacker can successfully achieve this they will be able to execute any code they wish on your webserver.

 
Joomla Newsflash Modules Tutorial
Ketika menciptakan sebuah isi content di dalam module, category atau section, kita bisa mencipakan sebuah kaliamat pembuka awal, dan selanjutnya memilih readmore untuk isi selanjutnya.
 
http://yoursite.com
http://www.yoursite.com
If you can actually have these show up in your browser then you have a problem. What is happening is that Joomla will happily process both URL's, with and without the www.
"Is that bad?" you now ask.
 
The Joomla! community is pleased to announce the immediate availability of Joomla! 1.5.1 [Seenu]. Since the stable release of Joomla! 1.5 we have seen huge numbers of downloads which has helped to push the total number of downloads to over 3 million in less than a year.

 
Now here are 10 easy, cheap ways to improve your SEO.
 

Teman teman pasti sudah pernah, mungkin sering mendengar SEO SEF, Bahasa pasarannya, SEO adalah optimasi halaman web agar mudah dikenali oleh search engine. biasanya melalu meta tag keyword, description, robot.



 
VirtueMart is also affected by this bug. The problem is indeed a wrong order of the calls to initSessionAdmin and doGzip at the end of the file /administrator/index2.php.
 
Download here Live Users Pro is joomla module for probably one the most advanced "Who Is Online" modules for Joomla. Having started as a modification of the original Live Users Module it is a complete new program by now.
 
Mosets Tree is a directory component for Mambo. It can be used to run a complex Yahoo! style directory directly inside your Mambo website
 
Joomap is a sitemap component for Joomla that shows the normal Menu Structure, Content Categories, Sections and Virtuemart Categories in a hierarchical list
 
Fireboard is fully integrated forum solution for joomla, no bridges, no hacking core files.
 
Tutorial module Login Joomla
Jika kita ingin memperbanyak member site kita,sehingga kita bisa mengetahui seberapa banyak user yang telah register di site kita, kia dapat menggunakan suatu trik, memaksa pengunjung untuk melakukan registrasi.
 
astatsPRO gives you most statistics you would get from cPanel's Awstats and similar and presents the data in a decent way. User agent, OS, Referrer, uniques, page impressions etc.
 
A simple newsletter component with subscriber management and HTML/image embedding capabilities.
 
Dengan Joomla kita bisa membuat suatu page yang isinya adalah menu menu untuk download. buat temen temen yang demen dengan affiliate program, itung itung bisa nabung dari hasil pay per click. cukup gunakan component com_d3000 bisa di download di sini

 
Agar website kita bisa dikenal oleh search engine, mungkin kalau eloe selaku webmaster akan memerhatikan script saat pembuatan website nya, SEO (Search Engine Optimation). Banyak kok, contoh-contoh scripts untuk SEO.
 
Club Template Business Look can give your business site a modern design look and feel. You have the choice of your own background and background color to fit the colors of your identity. The entire template is laid out in PNGs so shadows, overlays, etc. will lay right on top of your background image/color.
 
Use a WordPress Blog in a subdirectory of your Joomla installation the Improve the Search Engine Visibility of your Website.
 
The information provided in this document is critical to stopping these attacks and must be taken into immediate consideration.
 
1. Read Me First!
1. There's no free lunch! Don't be fooled by Joomla's award-winning easy of use. Maintaining a secure, dynamic Web site on the open Internet is not easy. Security requires continual watchfullness and effort.

 

Joomla!Joomla is an open source content management system referred by tens of thousands as the best CMS in the world.

 
This Tutorial how you Installing Joomla Components Modules Templates
 
joomla submit users are allowed to submit contents.
 
Tutorial Joomla Generate Flickr API Key
 
This tutorial will show you how to add a URL link menu item to your Joomla site
 
Tutorial kali ini membuat tulisan berjalan di joomla
 
Sedikit tutorial, dari http://www.compassdesigns.net tentang keuntungan menggunakan "read more" atau “Click to continue”
 
Joomla dapat menggunakan satu atau dua baris/kolom pada tampilan web joomla
 
Backup joomla anda, sebelum anda harus bekerja keras
 
Untuk Menciptakan Template Joomla,
 
Tutorial menciptakan content pada menu baru
 
Merubah tampilan template joomla
 
Sudah sejauh aman kah joomla anda..?
 
Minimum Requirement untuk instalasi Joomla
 
JOOMLA installation can not be completed:
 
Saya akan sedikit berbagi tutorial bagaimana saya mendesain web dengan joomla
 
Joomla, register_global=OFF Siapa Takut
 
Kita dapat menciptakan sebuah forum didalam web joomla kita
 
Mungkin kita untuk teknis design suatu website sedikit paham, tapi sebelumnya kita harus berangkat dari sebuah plan dulu
 
Masih ragu menggunkanan CMS dalam mendesain web..?
 
Setelah kita Registrasi ke Provider Hostingan kita, selanjutnya yang dilakukan adalah :
 
Tutorial untuk menghemat bandwith ketika cek e-mail
 
Anda tidak perlu Upload manual, jika menggunakan CMS, berikut tutorialnya
 
Beberapa teman saya yang jauh lebih mahir dalam membuat website, mengatakan masih enggan memakai joomla
 
Biasanya webstite Menyediakan fasilitas untuk tanya jawab, mengisi komentar, makian juga sering joomla tutorial
 
Bosen nyari nyari module yang bisa di download free..? khusus buat teman teman yang tahu sedikit bahasa pemograman script, nda usah banyak pengetahuan untuk ini Cool
 
Kemaren ada pemirsa yang bertanya, kenapa joomla menjadi pilihan CMS ku, dan isi blog ini tutorialnya kok hanya tutorial joomla melulu. tapi berhubung dia itu bulek, aku terpaksa buat postingan bahasa inggris, moga tutorial ini berguna, koreksi ya kalau ada yang salah
 

Aku yakin, dalam hal membuat suatu website, kamu lebih dari aku.

 
Tutorial menghasilkan uang dari joomla
 
Tutorial Component Mosets Tree Joomla - Tutorial module login joomla - Tutorial Module Joomla - Tutorial Components Modules Templates - Tutorial Joomla SEO SEF - Anda Sudah Registrasi ? - Tutorial tulisan berjalan di joomla - Tutorial Joomla Requirement - Tutorial WordPress Blog into Joomla - Tutorial menambah menu joomla - Tutorial Joomla Generate Flickr API Key - Tutorial Remote File Inclusion - Tutorial Backup file Joomla - What Joomla do Error 1, Error 2, and Error 3 mean?
Username Password Remember me Lost Password? Register
Total Members : 788
Latest Member : priero
Today : 0 Registers
This week : 1 Registers
No users online
Guests: 2
Tutorial hacked websites and hacking attempts PDF Print E-mail
Written by Tutorial Joomla   
The information provided in this document is critical to stopping these attacks and must be taken into immediate consideration.
As many of you know there has been a large surge of hacking activity targeted at Joomla and Mambo powered websites.

The attackers are using various exploits in 3rd party add-ons to compromise websites. Some attacks seem as simple as defacement, others are much worse. I advise you all to take this advisory into immediate consideration if your website shows any sign of compromise or attempted compromise!

The majority of the problems are caused from 3rd party components not properly checking that they are being called from Joomla and continuing execution if they are requested directly.

This is not proper behavior. It is very important that 3rd party components/modules/etc check to make sure they are being requested by Joomla itself.



All .php files of 3rd party add-ons should include the line below as the first command executed:
Code:
defined( '_VALID_MOS' ) or die( 'Restricted access' );
This applies to components/modules/mambots under the Joomla root directory and also those under the Administrator directory. If a .php file from a 3rd party component does not include this line it could leave your system at risk!

When we first started getting reports of these attacks they seemed pretty superficial, usually just overwriting configuration.php but now that I have had more time to analyze the logs, talk to users, and investigate the various commands and requests I have realized that some of the attackers are using more advanced scripts and performing increasingly dangerous commands. Some of the files I have investigated have turned out to be Perl scripted worms and others are PHP scripts like “Redworm” and various other file browsing and alteration tools. These files are usually downloaded into the servers /tmp directory or Joomla’s cache or media directories, executed and then in the case of the Perl scripts, deleted in order to make discovery more difficult.

It is imperative that these scripts be killed and removed immediately, especially the Perl worms as they are capable of launching various DDoS (Distributed Dial of Service) attacks as well as performing search engine queries to scan for and attack other vulnerable websites. The Perl worms are the scripts that I am particularly worried about as they are capable of connecting back to the attacker’s IRC network to wait for commands from the attackers. From that point your website’s server could be used to launch various forms of DDoS attacks as well as attack and infect other vulnerable websites. The Perl scripts also appear to be rather difficult to kill as they set themselves up to ignore interrupt and kill signals as well as renaming their own process-name to an empty string or sometimes to “httpd” making it more difficult to detect their presence.

If your website has been compromised or you have noticed attempted attacks in your log files you should report this activity to your Hosting Provider/System Administrator immediately so they can investigate the attacks and assess whether the server has been compromised or a worm or other hacking tools have been downloaded to it. If you are the system administrator I suggest you very carefully recursively check your Joomla directory as well as the servers /tmp directory. Additionally, you should check for any rogue Perl scripts using ps -aux | grep perl or similar.

If you are of the extra cautious persuasion, which in my opinion is warranted in this situation, I would check for rogue cron scripts and then give the server a reboot just to make sure there are no rogue Perl scripts running on it. It might also be worth using a root kit locator or other similar tool to assess the security of the whole server and verify that it has not been rooted.

Additionally, I recommend you (compellingly) request that your host disable PHP’s register globals (RG), if they are still enabled, as this setting creates more opportunities for small bugs to be taken advantage of, often turning them into major security issues. Furthermore, it has been recommend that users edit globals.php in the Joomla root directory. On line 12, change:
Code:

define( 'RG_EMULATION', 1 );
to
Code:
define( 'RG_EMULATION', 0 );

This modification will tell Joomla not to emulate the behavior of register globals and prevent the potential for Joomla to open up more security issues. (NOTE: I am awaiting an evaluation from the core team as to whether Joomla’s RG emulation is safe to use)

Lastly, it is imperative that you take care of any files that do not have the proper “VALID_MOS” check, again, the line below should be in ever .php file of every third party component.

Code:
defined( '_VALID_MOS' ) or die( 'Restricted access' );

If you had a component installed that is known to be vulnerable but have since uninstalled it, please make absolutely sure that the files have been physically removed from the directory structure as sometimes this does not happen due to file permission issues. It is possible for a 3rd party add-on to appear uninstalled from within Joomla but still reside on the server. If this happens, your server is still vulnerable!
 
< Prev   Next >
Joomla Featured Articles Module by DART Creations
ym : ptlnx


Click here to join joomla-id

download joomla module template component