{"id":24971,"date":"2017-03-20T00:00:00","date_gmt":"2017-03-20T00:00:00","guid":{"rendered":"https:\/\/alienroad.com\/google-bilgi-bankasi\/nohacked-a-year-in-review\/"},"modified":"2017-03-20T00:00:00","modified_gmt":"2017-03-20T00:00:00","slug":"nohacked-a-year-in-review","status":"publish","type":"ar_kb","link":"https:\/\/alienroad.com\/google-bilgi-bankasi\/nohacked-a-year-in-review\/","title":{"rendered":"#NoHacked: A year in review"},"content":{"rendered":"<p class=\"gargardate\">Monday, March 20, 2017<\/p>\n<p>\n  We hope your year started out safe and secure! We wanted to share with you a summary of our 2016<br \/>\n  work as we continue our #NoHacked campaign. Let&#8217;s start with some trends on hacked sites from the<br \/>\n  past year.\n<\/p>\n<p><img decoding=\"async\" alt=\"\"\n     src=\"https:\/\/alienroad.com\/wp-content\/uploads\/kb-gorsel\/g-f2c860705b01.png\" loading=\"lazy\"\/><\/p>\n<h2 id=\"state-of-website-security-in-2016\" tabindex=\"-1\">State of Website Security in 2016<\/h2>\n<p>\n  First off, some unfortunate news. We&#8217;ve seen an increase in the number of hacked sites by<br \/>\n  approximately 32% in 2016 compared to 2015. We don&#8217;t expect this trend to slow down. As hackers<br \/>\n  get more aggressive and more sites become outdated, hackers will continue to capitalize by<br \/>\n  infecting more sites.\n<\/p>\n<p>\n  On the bright side, 84% webmasters who do<br \/>\n  <a href=\"https:\/\/support.google.com\/webmasters\/answer\/35843\" class=\"external-link\">apply for reconsideration<\/a><br \/>\n  are successful in cleaning their sites. However, 61% of webmasters who were hacked never received<br \/>\n  a notification from Google that their site was infected because their sites weren&#8217;t verified in<br \/>\n  Search Console. Remember to register for<br \/>\n  <a href=\"https:\/\/google.com\/webmasters\/tools\" class=\"external-link\">Search Console<\/a><br \/>\n  if you own or manage a site. It&#8217;s the primary channel that Google uses to communicate site health alerts.\n<\/p>\n<h2 id=\"more-help-for-hacked-webmasters\" tabindex=\"-1\">More Help for Hacked Webmasters<\/h2>\n<p><img decoding=\"async\" alt=\"\"\n     src=\"https:\/\/alienroad.com\/wp-content\/uploads\/kb-gorsel\/g-7143d0dff0f4.png\" loading=\"lazy\"\/><\/p>\n<p>\n  We&#8217;ve been listening to your feedback to better understand how we can help webmasters with<br \/>\n  security issues. One of the top requests was easier to understand documentation about hacked<br \/>\n  sites. As a result we&#8217;ve been hard at work to make our documentation more useful.\n<\/p>\n<p>\n  First, we created new documentation to give webmasters more context when their site has been<br \/>\n  compromised. Here is a list of the new help documentation:\n<\/p>\n<ul>\n<li>\n    <a href=\"https:\/\/developers.google.com\/web\/fundamentals\/security\/hacked\/top_ways_websites_get_hacked_by_spammers\" class=\"external-link\">Top ways websites get hacked by spammers<\/a>\n  <\/li>\n<li>\n    <a href=\"https:\/\/developers.google.com\/web\/fundamentals\/security\/hacked\/glossary_for_hacked_sites\" class=\"external-link\">Glossary for Hacked Sites<\/a>\n  <\/li>\n<li>\n    <a href=\"https:\/\/developers.google.com\/web\/fundamentals\/security\/hacked\/FAQs_for_hacked_sites\" class=\"external-link\">FAQs for Hacked Sites<\/a>\n  <\/li>\n<li>\n    <a href=\"https:\/\/developers.google.com\/web\/fundamentals\/security\/hacked\/how_do_I_know_if_site_hacked\" class=\"external-link\">How do I know if my site is hacked?<\/a>\n  <\/li>\n<\/ul>\n<p>\n  Next, we created clean up guides for sites affected by known hacks. We&#8217;ve noticed that sites often<br \/>\n  get affected in similar ways when hacked. By investigating the similarities, we were able to<br \/>\n  create clean up guides for specific known type of hack. Below is a short description of each of<br \/>\n  the guides we created:\n<\/p>\n<h3 id=\"gibberish-hack:\" tabindex=\"-1\">Gibberish Hack:<\/h3>\n<p>\n  The gibberish hack automatically creates many pages with non-sensical sentences filled with<br \/>\n  keywords on the target site. Hackers do this so the hacked pages show up in Google Search. Then,<br \/>\n  when people try to visit these pages, they&#8217;ll be redirected to an unrelated page, like a porn<br \/>\n  site.<br \/>\n  <a href=\"https:\/\/developers.google.com\/web\/fundamentals\/security\/hacked\/fixing_the_gibberish_hack\" class=\"external-link\">Learn more on how to fix this type of hack.<\/a>\n<\/p>\n<h3 id=\"japanese-keywords-hack:\" tabindex=\"-1\">Japanese Keywords Hack:<\/h3>\n<p>\n  The Japanese keywords hack typically creates new pages with Japanese text on the target site in<br \/>\n  randomly generated directory names. These pages are monetized using affiliate links to stores<br \/>\n  selling fake brand merchandise and then shown in Google search. Sometimes the accounts of the<br \/>\n  hackers get added in Search Console as site owners.<br \/>\n  <a href=\"https:\/\/developers.google.com\/web\/fundamentals\/security\/hacked\/fixing_the_japanese_keyword_hack\" class=\"external-link\">Learn more on how to fix this type of hack.<\/a>\n<\/p>\n<h3 id=\"cloaked-keywords-hack:\" tabindex=\"-1\">Cloaked Keywords Hack:<\/h3>\n<p>\n  The cloaked keywords and link hack automatically creates many pages with non-sensical sentence,<br \/>\n  links, and images. These pages sometimes contain basic template elements from the original site,<br \/>\n  so at first glance, the pages might look like normal parts of the target site until you read the<br \/>\n  content. In this type of attack, hackers usually use cloaking techniques to hide the malicious<br \/>\n  content and make the injected page appear as part of the original site or a <code>404<\/code> error<br \/>\n  page.<br \/>\n  <a href=\"https:\/\/developers.google.com\/web\/fundamentals\/security\/hacked\/fixing_the_cloaked_keywords_hack\" class=\"external-link\">Learn more on how to fix this type of hack.<\/a>\n<\/p>\n<h2 id=\"prevention-is-key\" tabindex=\"-1\">Prevention is Key<\/h2>\n<p><img decoding=\"async\" alt=\"\"\n     src=\"https:\/\/alienroad.com\/wp-content\/uploads\/kb-gorsel\/g-aee11dc2a550.png\" loading=\"lazy\"\/><\/p>\n<p>\n  As always it&#8217;s best to take a preventative approach and secure your site rather than dealing with<br \/>\n  the aftermath. Remember a chain is only as strong as its weakest link. You can read more about how<br \/>\n  to identify vulnerabilities on your site in our<br \/>\n  <a href=\"https:\/\/web.dev\/articles\/hacked\" class=\"external-link\">hacked help guide<\/a>. We also recommend<br \/>\n  staying up-to-date on releases and announcements from your Content Management System (CMS)<br \/>\n  providers and software\/hardware vendors.\n<\/p>\n<h2 id=\"looking-forward\" tabindex=\"-1\">Looking Forward<\/h2>\n<p>\n  Hacking behavior is constantly evolving, and research allows us to stay up to date on and combat<br \/>\n  the latest trends. You can learn about our latest research publications in the<br \/>\n  <a href=\"https:\/\/research.google.com\/pubs\/SecurityPrivacyandAbusePrevention\" class=\"external-link\">information security research site<\/a>.<br \/>\n  Highlighted below are a few specific studies specific to website compromises:\n<\/p>\n<ul>\n<li>\n    <a href=\"https:\/\/research.google.com\/pubs\/pub45365\" class=\"external-link\">Cloak of Visibility: Detecting When Machines Browse a Different Web<\/a>\n  <\/li>\n<li>\n    <a href=\"https:\/\/research.google.com\/pubs\/pub45487\" class=\"external-link\">Investigating Commercial Pay-Per-Install and the Distribution of Unwanted Software<\/a>\n  <\/li>\n<li>\n    <a href=\"https:\/\/research.google.com\/pubs\/pub45597\" class=\"external-link\">Users Really Do Plug in USB Drives They Find<\/a>\n  <\/li>\n<li>\n    <a href=\"https:\/\/research.google.com\/pubs\/pub43346\" class=\"external-link\">Ad Injection at Scale: Assessing Deceptive Advertisement Modifications<\/a>\n  <\/li>\n<\/ul>\n<p>\n  If you have feedback or specific questions about compromised sites, the<br \/>\n  <a href=\"https:\/\/support.google.com\/webmasters\/community\/\" class=\"external-link\">Webmaster Help Forums<\/a><br \/>\n  has an active group of Googlers and technical contributors that can address your questions and provide additional technical support.\n<\/p>\n<p class=\"byline-author\">\n  Posted by Wafa Alnasayan, Trust and Safety Analyst and Eric Kuan,<br \/>\n  Webmaster Relations<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Monday, March 20, 2017 We hope your year started out safe and secure! We wanted to share with you a summary of our 2016 work as we continue our #NoHacked campaign. Let&#8217;s start with some trends on hacked sites from the past year. State of Website Security in 2016 First off, some unfortunate news. We&#8217;ve [&hellip;]<\/p>\n","protected":false},"menu_order":82755,"template":"","meta":{"footnotes":""},"ar_kb_kategori":[665],"ar_kb_etiket":[],"class_list":["post-24971","ar_kb","type-ar_kb","status-publish","has-post-thumbnail","hentry","ar_kb_kategori-blog"],"_links":{"self":[{"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/ar_kb\/24971","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/ar_kb"}],"about":[{"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/types\/ar_kb"}],"version-history":[{"count":0,"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/ar_kb\/24971\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/media\/27133"}],"wp:attachment":[{"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/media?parent=24971"}],"wp:term":[{"taxonomy":"ar_kb_kategori","embeddable":true,"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/ar_kb_kategori?post=24971"},{"taxonomy":"ar_kb_etiket","embeddable":true,"href":"https:\/\/alienroad.com\/wp-json\/wp\/v2\/ar_kb_etiket?post=24971"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}