Countermeasures

 

  1. Don't use FTP! If FTP is needed:
    1. Only allow specific IP addresses
    2. Use difficult to guess usernames and passwords
    3. Give the FTP user limited access to the web server
    4. Protect FTP with a VPN connection

  2. Install anti-virus software on all your machines in the LAN

  3. Protect your web traffic with ScanSafe against viruses and malware

  4. Review your web applications for malicious injections

  5. Monitor the Google Safe Browsing blacklist using www.dasient.com

  6. Patch PCs: operating system, Office, browser, Flash, QuickTime, iTunes, …

  7. Don't trust unknown web sites

  8. Use Firefox with the NoScript extension