[FTP1.01] New "FTP Lock" Security Measure

Over the last year, there has been a substantial increase in the number of sites on the internet that have been hacked due to viruses (Gumblar or Troj/JSRedir-R FTP Viruses) that steal FTP credentials from user's home computers. The hackers then use these credentials to insert hidden code within websites.

To reduce the significant threat from these viruses pfpHosts.com has come up with a solution that protects websites. The solution is to lock FTP when it's not in use, making it extremely difficult for the hackers to infect your site via this route. To unlock FTP, customers will simply log into their pfpHosts.com control panel and click one button to unlock FTP for a period of time. FTP will then automatically lock again after the time period has expired. See diagram below:

Customers will also be able to nominate an IP address that has permanent FTP access, customers FTPing from that IP address will not have to unlock FTP. 

These security measures will ensure that the majority of sites have FTP locked, greatly reducing the risk of having your websites infected.


http://en.wikipedia.org/wiki/Gumblar

Was this answer helpful?

 Print this Article

Also Read

[FTP4.04] Can I use the File eXchange Protocol (FXP) for site-to-site transfers?

We do not allow the use of the File eXchange Protocol (FXP) in the interests of security because...

[FTP2.09] Am I able to unlock multiple IP addresses for usage with FTP?

Yes, just insert them into a comma delimited list(e.g. 123.456.789.654,132.456.789.357).

[FTP4.05] Why am I getting Error 530. Maximum number of users (3) when trying to connect via FTP?

You will see this error when an attempt is made to exceed the limit of 3 concurrent FTP...

[FTP2.07] My extra FTP account doesn't seem to work with PHP scripts.

In theory, this should work without issues as all FTP users on a hosting account have the UID,...

[FTP3.03] How do I connect via FTP from Mac OS X?

The Finder in more recent versions of Mac OS X has built-in support for FTP. All you need to do...