I’d love to see your website btw!
I’d love to see your website btw!
Yeah! That’s cool, I haven’t had any issues so far.
Everyday I get a bunch of logs of bots trying to access files and folders that don’t exist. It seems that they are targeting wordpress sites because all the files start with ‘wp-’ for example, some tried to access ‘wp-admin/credentials’, but since my site isn’t wordpress I’m not worried. Besides, I’m pretty sure that I could implement some rules on the firewall or even on nginx to block access to said directories by (for example) redirecting them to a different page.
Thanks! I’ll keep all of that in mind. I knew there were a lot of bots and scripts running rampant on the internet, but I was really surprised when I put my website online and suddendly became a target.
It’s good to know I’m not really at risk and that this is expected. I’ll try to learn more about cybersecurity
Thanks! I appreciate your concern.
This website is just a personal fun project, and I haven’t got anything to lose if it gets compromised. On the contrary I’ve gained a lot so far, and I might gain even more if something bad were to happen to it.
No one can hack into the knowledge and experience I’ve gained so far.
If you’ve got any advice on security tools, good practices, etc. I’d appreciate them! I may lack the knowledge, but not the will to learn more
Uhhhh… Prayers?
So far the only protection I’ve got is running it through a cloudflare tunnel. And that’s it.
Thanks a bunch!
I will certainly consider this, I had no idea nginx created these log files.
If anything, I can just rm
them into oblivion right?
Definitely!
You get to learn a lot, and most importantly, you become self suficient and free. No need to depend on corporations to manage your services, because you can do that yourself.
Want your own cloud? Just run and configure nextcloud on your server :D
Want your own personal blog? Make it yourself!
It’s so fun!