PHP Anti-Hacker Suite by OSE Tool

Licence: GPL V2, you can install it into UNLIMITED websites FOREVER! No License Restrictions! No more IONCUBE!

* After you buy the software, you can use it FOREVER (INDEFINITELY)
* You can download all upgrades within 1 year.
* You can receive our support within 1 year.

Version 2.0 RC3 has the following main changes based on previous versions:

1. Fixed a minor bug of the "filter" function and pagination funtcion in the Anti-Hacker component.

2. Updated Signature for the Anti-Hacker component.

3. Added a "Custom Scan" function for the Anti-Virus Component.

4. Improved the virus patterns, signatures and scan engines for the Anti-Virus component.

5. Changed the function of File Audit in the System Guard, enabling it to scan the whole server but not only the Joomla root folder.

6. Added the component version notice and virus signature version notice in the System Guard.

Features in Version 2.0:

1. Double Firewall system providing Two Layers of protection:

Layer 1: Signature-based Detection System - detecting most common hacking behaviours.
a) Surface Scanning, once hacking behaviour is found, the activity and corresponding IP will be banned immediately.
Layer 2: Pattern-based Instruction Detection Systems - blocking all inbound malicious codes and hacking activities, including network-, application-, and operating system-level attacks.
a) Scans and monitors all URL, Form Fields, Cookies values.
b) If hacking is found and the Risk Score exceed the secure level, the IP will be banned immediately.

c) If Suspicious Hacking behaviour is found for Form Fields and Cookies hacking, the hacking strings in the Form / Cookies value will be stripped and sanitized.

2. Two Types of reactions:

a) Ban + Email Alert: If the hacking triggers Layer 1 protection or exceed the Risk Score in Layer 2 protection, the IP will be blocked, and the alert email will be sent to the administrator.

b) Log + Email Alert: If the Risk Score of the suspicious behaviour is lower than the global setting, the IP will be blocked for monitoring purpose, and the alert email will be sent to the administrator.

3. Embedded Anti-Virus application providing on-demand scanning of your source codes for malicious codes injections, cleaning of the malicious codes from the infected files, and generating complete scanning reports.

4. Form Field Filtering Enabled - allowing users to filter the content of the form fields in order to prevent XSS attacks.

5. Whitelist Setting Enabled – Unlike other security software which only provides IP whitelist function, OSE PHP Anti-Hacker also provides the whitelist function for your programs and form fields, so that it gives you the flexibility to user a wide range of software while maintaining a high level of protections.

6. Supports for Search Engine Optimized Websites – providing protection while maintaining your page ranking.

7. Instant emails alerts to administrators once suspicious h

Report

Editor's Note
  • This extension requires registration to download.
Images
byEcce on October 21, 2009
I'll start this review by saying sadly I am one of the many Joomla users that turned to OSE antihacker after 2 of my sites were hacked - don't wait until its too late! this tool has to be running on your site/s if your value all your hard work.

Luckily the sites were not badly attacked and I was soon up and running again and my first task was to upgrade from 1.15.12 to 1.5.14 (I'll never be slow upgrading again). Then, after a couple of days of following the security tips here I started looking for a single app that could help me and I found OSE Antihacker. At first I was wary about purchasing a product when I'd only seen the demo site but bit the bullet and purchased the standalone version (I have several sites). Its been mentioned in earlier reviews that proper installation is not an out of the box affair.

Now, I've downloaded many joomla extensions and have had some great service/support but helix and the team have been excellent, I didn't purchase the extended support but the response was always swift and friendly and after I'd upgraded my sites to PHP5 (another must both for OSE & general security)I was ready to start testing.

Some of you may use a variant of the system Gaurd (GuardXT) and this was a blessing to locate and fix folder/file permissions and perform various other security checks. Next I made sure the sites were virus scanned and clean (a couple of rogue notifications that Helix sorted for me). This was all done on a clone of my largest site and I was now ready to install the single line of code into my site. If you don't have a test site you should be carefull as the whitlist is not complete and mod dependant but again, by return Helix an co were there to help me whitelist legal requests.

Everything went live yesterday and no banning of legit users but have already banned 10 blacklisted IP addresses for XSS offences.

This is by far the most important addition to my sites and the standalone version will protect all of my sites from a single CP - easily worth the money for your piece of mind and I'd happily recommend this to all Joomla users.

btw, reading this back it reads a little like an advert and whilst I've no affiliation with the company I'm happy to promote it! 5 star + from me!
I suffered a PHP injection attack on a very important site and quickly became very concerned. I looked around for ways of dealing with the hack and came across the OSE products.

The software installed great on a 1.5 site but I did have some difficulty installing on a 1.0 site. Not to worry Helix was there to help me oversee the process.

I paid for an additional service to ensure the site was completely free of the hack and between Shawn and Helix the site was downloaded, swept and reinstated whilst I was away on a short vacation, I even received notifications when I was away.

The site is now reinstated and has the anti-hacker installed, it is taking a little time to achieve the proper level of protection so my valid users don't get hack messages but Shawn has been monitoring these as they come through and helping me achieve the correct balance.

Putting the software to one side I have to say that the thing that really impressed me was the high level of customer service and speed of response. These guys are on the ball and working really hard to ensure that they have happy customers.

I have no hesitation in recommending OSE and their products every time. Top drawer service and top drawer extensions. Amazing!

Thank you Shawn and Helix, super duper, 110%!!

Paul
Owner's reply

Thanks Paul and thanks to all others who financially support our works! It is our pleasure to help people to sort out these problems! :D

I'm using the s/a version of this product on two sites.

It does exactly what it claims, in the background, but always active. But much more impressive: this company's support is beyond any expectation. For the uninitiated installation can be a bit daunting and tricky, but absolutely nothing is too much for them to help you along, both "in the background", and interactively (by way of hand holding through chats).

They also solve any compatibility issues with other extensions fast, competently and without fuss.

Full marks!

Willem Overbeeke
Overbeeke & Partners BV
byjoomlancingweb on June 28, 2009
I am a BIG supporter of the Open Source Excellence Team. I have purchased OS Membership Control, PayPal Subscription Plugin, and the most recent, the Anti-Hack Suite 2.0 beta 3 Standalone.

Several of my clients websites were hacked, and in an immediate attempt to protect their sites and my own, I knew I can turn to the team who has continually produced excellent products and RELIABLE customer support.

I was having trouble installing because of the server I had, and as always, Helix comes to the rescue with lightning fast communication and REAL help with SOLUTIONS. We have exchanged well over 12 emails, because he believes in his product, and genuinely wanted to help me get the site running, and overcome the obstacles I kept running into.

Excellent support combined with an excellent product, is what every Joomla specialist seeks. I recommend Open Source Excellence, for your Joomla solutions.

Thanks Helix!

Tammy
That is one of the most fantastic developments that allow us to faith to hacking and injection Malicious code attacks!
- Easy installation and Superb Tech. support (Thanks a lot for all... Helix).
Stops with no doubt many hacking atenmps and improving daily.

I am really happy to be your customer and affiliate for this excelent must have tool!.

Keep up the good work!.
Rgrds,
GammX1
Owner's reply

Thank you all so much!!!

We will keep up the good works!! :D

Wow! Awsome protection for your Joomla Site or any php site! I hit a few snags but customer support was there, super fast and got me up and running 100% You must get this software for your site. Why did I get this package? My site was hacked and a deadly virus was installed on my site. I never want that to happen again! Thanx to Helix we are now 100% protected!
bymcitc on April 26, 2009
We haven’t run into a more helpful developer since we start to enhance our communication system. And here are our rates:
- Response = 5 Starts
- Support = 5 Stars
- Software Quality = 5 Starts
- Practicability = 5 Starts
- General Experience = 5 Stars

Program use: Anti-hacker Firewall = 5 Stars
Anti-hacker Firewall is one of the best in quality and money value in building a more secure website.

Program to consider: Membership Access Control

Thank you so much for creating this essential tool for humanity.

MC International
Nashville, TN 37205
bygvhoofst on April 18, 2009
Works as promised. I entered the wrong php code in the file I needed to protect. Support was fast, extremly helpull and issue was solved in a metter of minutes. One o the best Joomla components I have seen. This one is a must for all who want to add anti-hack! Well worth the money.
bymikeh00 on April 17, 2009
Works as promised. Had a problem getting a file to work but was very quickly helped by author and fixed.
bypuffermedia on March 20, 2009
As a security measure for your Joomla site this is an excellent investment. Not only is it open source with great licensing that is well priced, the support is some of the best I've encountered. They not only helped me getting it install and configured, they have helped me tighten up my overall joomla/server security.

I am very much looking forward to the continued development and future versions of this script. But even as it is this has helped me immeasurably.
bysherry74 on February 24, 2009
I am extremely pleased with this extension!! It works as advertised and I would recommend it to anyone who uses Joomla or any other PHP application. I had some trouble getting it configured, so I contacted the developer for support and within minutes I received a response. He helped me to get everything up and running and explained it all in great detail. I will most definitely use this extension for all existing (and future) websites that I create. Highly recommended!!!
This is a must have for all Joomla users!
The install is straight forward and easy to understand. The fact I can still be SEO friendly
is a major plus. The support is top notch! I had a server side error (not the script) when installing;
and got a reply within a few minutes. The fix he did was quick and he explained what was wrong so I can do this to other sites I install it on. Yes, that's right, you can install on more than one site, unlike some other scripts. The virus scan is my favorite feature, it scanned all my files and folders (quick) and let me know if any are infected. Shows the files too! He also updates the virus database regularly and lets you know when its available. Got one this morning :)
There is just too much to list in why I like this script. I highly recommend! TYVM for keeping my site safe!
byabls1 on February 5, 2009
The script work as promised.. Support is outstanding to say the least!! I'm extremely satisfied with the software & support
byDelliana on February 4, 2009
I could not have asked for better service or product from this guy, Period. I was intimidated to attempt the install myself, & he immediately put it in for me with no problems. I can not believe I did not have to pay more for this. I highly recommend this product if you do not want your site hakd. I highly recommend this product if you want respectable, timely and polite support from a developer.
byHerzwacht on February 3, 2009
This is a must have component for me now on the Joomla! sites I develop. The product was easy to install and so far has run very well. I just can say one thing, these people are excellent. They don’t let you alone if you have a problem. The right partners to work with! I just say thank you for your great software and excellent service. In this software is enormous potential. And because of the open source code: you will understand it, how it functions and is developed further. Experience the probably best solution for php security on the market. If you want to make sure your site is safe, then buy this product.
I think some differentiation between this and mod_security would be helpful. Right now I don't see much of an advantage in using this when mod_security has been doing the same thing now for years.... ?
Owner's reply

Thanks for your comment. Version 2 is under development, and more features are coming soon.

byJaysSoho on January 29, 2009
Good tool! Works as stated and easily installed. If they can add more functions to check the Joomla securities settings like GuardXT, then this can definitely goes to top ten.