{"id":818,"date":"2012-09-19T23:44:22","date_gmt":"2012-09-20T04:44:22","guid":{"rendered":"http:\/\/roshanjoshi.com.np\/web\/?p=818"},"modified":"2012-09-19T23:44:22","modified_gmt":"2012-09-20T04:44:22","slug":"nepali-colleges-universities-government-sell-viagra-sex-drugs","status":"publish","type":"post","link":"https:\/\/roshanjoshi.com.np\/web\/nepali-colleges-universities-government-sell-viagra-sex-drugs\/","title":{"rendered":"Colleges and Government Websites in Nepal Sell Sex Drugs!"},"content":{"rendered":"<p>I hope that educational institutes such as colleges, schools or universities in Nepal (or anywhere as a matter of fact) are into education rather than selling sex drugs. Also, that the government offices do their assigned jobs rather than selling Viagra. The point I am raising here is security issues of educational and government websites in Nepal.<\/p>\n<p>Let&#8217;s do a quick search on Google for Viagra (apparently\u00a0a sexual wonder drug!) within the educational websites in Nepal, which have the names followed by .edu.np. We can do this using [search term] + the &#8216;site:&#8217; operator + the URL or domain. For educational sites, this would be\u00a0<strong><a href=\"https:\/\/www.google.com\/search?&amp;q=viagra+site%3A.edu.np\" target=\"_blank\" rel=\"noopener noreferrer\">https:\/\/www.google.com\/search?&amp;q=viagra+site%3A.edu.np<\/a><\/strong><\/p>\n<p>The search for Viagra in educational website resulted in over 1700 results! I won&#8217;t link such sites direct here but present a screenshot. You can do the search yourself too using the search above.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-819\" title=\"Educational sites in Nepal Hacked\" src=\"https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-education-sites-nepal-viagra.jpg\" alt=\"Educational sites in Nepal Hacked\" width=\"755\" height=\"606\" srcset=\"https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-education-sites-nepal-viagra.jpg 755w, https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-education-sites-nepal-viagra-300x241.jpg 300w\" sizes=\"auto, (max-width: 755px) 100vw, 755px\" \/><\/p>\n<p>From Kathmandu University to American Language Center &#8211; and several schools, colleges universities websites are infected.<\/p>\n<p>Similarly doing a search for Government sites of Nepal shows plenty of infected websites too.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-821\" title=\"hacked government sites Nepal\" src=\"https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-government-sites-nepal-viagra.jpg\" alt=\"hacked government sites Nepal\" width=\"670\" height=\"606\" srcset=\"https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-government-sites-nepal-viagra.jpg 670w, https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-government-sites-nepal-viagra-300x271.jpg 300w\" sizes=\"auto, (max-width: 670px) 100vw, 670px\" \/><\/p>\n<p>Finally doing a search for a .com.np site showed over 178,000 infected web-pages. I would just share screenshot here as well.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-822\" title=\"hacked business sites Nepal viagra\" src=\"https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-business-sites-nepal-viagra.jpg\" alt=\"hacked business sites Nepal viagra\" width=\"629\" height=\"617\" srcset=\"https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-business-sites-nepal-viagra.jpg 629w, https:\/\/roshanjoshi.com.np\/web\/wp-content\/uploads\/2012\/09\/hacked-business-sites-nepal-viagra-300x294.jpg 300w\" sizes=\"auto, (max-width: 629px) 100vw, 629px\" \/><\/p>\n<h2>Why do educational and government websites get exploited so much?<\/h2>\n<p>The easy explanation is that weak security in websites\u00a0(especially quick cheap ones) allow easy access to external attackers. Another reason might also be related to a different reason called SEO (search engine optimization), which is about how Google ranks a website when somebody makes a search for a particular term. It is a common but somewhat mistaken assumption that links from educational or government site provides better ranks in search results. So the practice of inserting codes to &#8216;bad&#8217; sites in educational or government or any other site with old software is a notorious practice that has been going on for a long time. Some sites may also redirect to potentially bad sites when clicked on search results rather than going to the actual result displayed.<\/p>\n<h2>What can be done to improve website security?<\/h2>\n<p>Unfortunately, there is no such thing as 100% secured and even biggest websites get hacked. If we do a similar search for overall educational or government sites around the world, the situation is no better. I wouldn&#8217;t be surprised if my own site gets hacked someday. But having said that it is upto the website owner or team to ensure that the site is safe for its visitors.<\/p>\n<p>In general, it is a good practice to:<\/p>\n<ul>\n<li>Keep the content management system (CMS) or software up-to date on the server and on own computers<\/li>\n<li>Use antivirus<\/li>\n<li>Not use easy to guess passwords<\/li>\n<li>Choose a more secured hosting<\/li>\n<li>Backup data regularly<\/li>\n<li>Check own site on Google using the &#8216;site:&#8217; operator. For example <strong>viagra site:ku.edu.np<\/strong> or <strong>viagra site:.gov.np<\/strong><\/li>\n<li>Never open suspicious files attachments or websites<\/li>\n<li>Report websites that are infected to the website owner<\/li>\n<\/ul>\n<p>Here are some additional references on better web security (don&#8217;t worry! these are\u00a0trustworthy\u00a0sites and open in new window.)<\/p>\n<ul>\n<li><a href=\"http:\/\/www.smashingmagazine.com\/2010\/06\/15\/10-ways-to-beef-up-your-websites-security\/\" target=\"_blank\" rel=\"noopener noreferrer\">10 ways to better website security<\/a><\/li>\n<li><a href=\"https:\/\/wordpress.org\/support\/article\/faq-my-site-was-hacked\/\" target=\"_blank\" rel=\"noopener noreferrer\">What to do when WordPress site is Hacked<\/a><\/li>\n<li><a href=\"http:\/\/www.slideshare.net\/armeda\/wp-endusersecurity\" target=\"_blank\" rel=\"noopener noreferrer\">A presentation on how and why websites with old software are attacked by &#8216;bad&#8217; sites<\/a><\/li>\n<li><a href=\"http:\/\/forum.joomla.org\/viewtopic.php?f=432&amp;t=335090\" target=\"_blank\" rel=\"noopener noreferrer\">Joomla website security checklist<\/a><\/li>\n<li><a href=\"http:\/\/support.google.com\/chrome\/bin\/answer.py?hl=en&amp;answer=95617\" target=\"_blank\" rel=\"noopener noreferrer\">Some indicators on site safety if you are using Google Chrome<\/a><\/li>\n<\/ul>\n<p><strong>Suggestions are welcome!<\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>I hope that educational institutes such as colleges, schools or universities in Nepal (or anywhere as a matter of fact) are into education rather than selling sex drugs. Also, that the government offices do their assigned jobs rather than selling Viagra. The point I am raising here is security issues of educational and government websites [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3,5],"tags":[75,99],"class_list":["post-818","post","type-post","status-publish","format-standard","hentry","category-internet","category-nepal","tag-security","tag-website"],"_links":{"self":[{"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/posts\/818","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/comments?post=818"}],"version-history":[{"count":0,"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/posts\/818\/revisions"}],"wp:attachment":[{"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/media?parent=818"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/categories?post=818"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/roshanjoshi.com.np\/web\/wp-json\/wp\/v2\/tags?post=818"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}