10 Stupidest Administrator Tricks

About this list - I copied this from the Joomla docs site. It's very, very, very, true to life

This list originally appeared late one night on the Joomla Forums after one developer ended a particularly long round of crack recovery. The post struck many a nerve among Joomlaists far and wide, and has been translated into several languages. Some nerves were near the funny bone, others painfully far from it. Your experience may vary.

9. Don't waste time with regular backups.

Maybe the hosting provider will help you out.

8. Don't waste time adjusting PHP and Joomla! settings for increased security.

Hey, the install was brain-dead easy. How bad could the rest be? Worry about those details only if there's a problem.

7. Use the same username and password for everything.

Use the same username and password for your on-line bank account, Joomla! administrator account, Amazon account, Yahoo account, etc. Hey, who has time to keep track of so many passwords? And anyway, since you don't change passwords, it's easier to just use the same one all the time, everywhere.

6. Install your brand new beautiful Joomla!-powered site, and celebrate a job well done.

Don't worry about it again. After all, if you don't make any more changes, what can go wrong?

5. Do all upgrades on the live site right away.

Who needs a development and testing server anyway? If an installation fails, you'll just uninstall it again. That will hopefully also undo any damage the installation caused.

4. Trust third-party extensions.

Install all the cool-looking stuff you can find. Anyone smart enough to write a Joomla! extension will provide perfect code that blocks every known exploit attempt, now and forever. After all, almost all this stuff is provided for free by well-meaning, good-hearted people who know what they are doing.

3. Don't worry about updating to the latest version of Joomla!

Hey, nothing has gone wrong so far, and if it ain't broke don't fix it! Same plan for the third-party extensions. Too much work; life's a beach.

2. When your site gets cracked, panic your way into the Joomla! Forums.

Start a new post with a very familiar title: "My Site's Been Hacked! (sic)" Be sure not to leave relevant information, such as which obsolete versions of Joomla! and third party extensions you installed.

1. Once your site's been cracked, fix the defaced index.php file and assume all else is well.

Don't check raw logs, change your passwords, remove the entire directory and rebuild from clean backups, or take any other overly paranoid-seeming action. When the attackers return the next day, scream loudly that you've been "hacked again," and it's all Joomla!'s fault. Ignore the fact that removing a defaced file is not even step one in the difficult process of fully recovering a cracked site.

 



Add this page to your favorite Social Bookmarking websites

Comments  

 
0 #1 Tim 2010-02-15 13:11
haha funny stuff, thanks for sharing.
Quote
 

Add comment


Security code
Refresh

Recent Posts

  1. New SOBI template - Store Locator
    troy - 03-09-2010
  2. A good list - top 50 joomla apps to install
    troy - 03-05-2010
  3. New customer website launched - parnitascatering.com
    troy - 02-21-2010
  4. Website shape - time to go widescreen!
    troy - 02-20-2010
  5. New SOBI template - Menu List (catering, restaurant, etc)
    troy - 02-13-2010
  6. New SOBI template - Staff List
    troy - 02-03-2010
  7. HOWTO: Social Media Marketing, and our Joomla websites
    troy - 02-01-2010
  8. Kill-IE6 Campaign gaining traction, Google ramping up
    troy - 02-01-2010
  9. HOWTO - Create an article and link it on your main menu
    troy - 01-29-2010
  10. joined twitter - and the 21st century..
    troy - 01-23-2010
  11. 10 Stupidest Administrator Tricks
    ed - 01-22-2010
  12. What is Joomla? and Why should I use it?
    ed - 01-22-2010
  13. How to spot a phishing scam
    ed - 01-21-2010
  14. And yet another Scam - watch out for this one
    ed - 01-20-2010
  15. Assigning a different template to the front page
    ed - 01-16-2010
  16. Publish Joomla blog or Article via Microsoft Word directly – metablog api
    troy - 01-15-2010
  17. How To Create a Glossary using Joomla Core
    ed - 01-12-2010
  18. Caution - Phishing Scam
    ed - 01-07-2010
  19. Email Marketing Tool - Autoresponder, better than constant contact
    troy - 12-11-2009
  20. What's Wrong With My Email?
    ed - 12-07-2009
  21. Washington State Tax Rate Lookup tool - wa state tax
    troy - 11-21-2009
  22. Nice Paypal Buttons
    ed - 08-05-2009
  23. Ed's Joomla Morfeo Show Observations
    admin - 08-03-2009
  24. Make GroupJive work in Joomla 1.5 with Community Builder
    troy - 06-03-2009
  25. Need a site to track a customer's job or file?
    admin - 05-25-2009