I go through the code, the configuration and what is visible from outside:
authentication and permissions, file uploads, APIs, nginx, PHP, TLS, database
access, exposed configuration files and backups.
For AWS or Azure, add IAM and roles, MFA and key management, networking,
logging and the audit trail.
Website and application from $360 · cloud depending on scope
What is in the output
Ongoing: system and application updates, firewall, automatic blocking of attacking
addresses, TLS, file permission checks, availability monitoring and an alert when
something goes down.
It includes a regular report — what happened, what got blocked, what needs
a decision from you.
From $32 a month
What gets watched
Incident recovery
A compromised site, spam going out from your domain, fake pages in search results,
encrypted data. I cut the attacker off, find and remove the backdoors, restore the
site from a clean backup and close the way they came in.
You also get the answer to the question that matters most in the end:
whether any data left, and which.
Depending on scope · we start with a phone call, not a form
+420 530 330 757
+420 774 509 038
Backups and restores
Backups off the server and in more than one place, with version history —
ransomware will encrypt any backup it can reach. Plus a watchdog that speaks up
when a backup does not run.
And above all: a restore that has been tried. Until someone has
restored it, you do not have a backup — you have files you believe in.
One-off setup, or part of ongoing care