MyBB Community Forums

Full Version: Keeping MyBB Secure
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
I have read stories of peoples myBB being hacked .. so

After you install MyBB I know you delete the install directory, but is that it? Is there any other files you have to mod/delete?

I tried seraching but didnt find anything. I just want to be as secure as possible


Thanks in advance
The list is pretty endless but the best is staying up to date. Pretty much all the people hacked were using old versions of MyBB.

http://mybbstudios.com/thread-30-post-812.html
The best you can do if you have no idea of your PHP environment variables is to keep the installer as locked or delete it. I recommend keeping it with the lock file in it as that makes it easier to upgrade later and still provides security as locked files or folders cannot be run or viewed or edited.
How does keeping it make it easier to update? All updates come with the install folder anyway.
There is no difference between deleting or locking the install folder. Maybe a matter of a second or two during uploading the new files perhaps...

It may be covered in the link already given, but here is a few steps you can take to add some extra measures to protect your copy of MyBB: http://community.mybboard.net/thread-9991.html
I should probably mention that MyBB itself is always updated as soon as a security issue is found, patched, and tested, to ensure a quality release.

These steps taken are for those that want to be extra safe. Although backing up is always recommended at the very least to ensure if you are compromised that you have all your posts, etc. ready to go again.