Is there an easy way I can disable write permissions on my directories?
The reason I ask, is because a hacker is currently attacking WebWizForums by uploading a number of files (when upload is accessible on WWF) which saves and replaces the following files in every directory it can;
That is very common, a number of people have been hit by it, always a turkish hacker group is doing it.
There is not really any safe way to “disable” write permissions wihtout having major adverse effects, the best thing to do is to prevent ASP pages from being uploaded by the uploader.
I have seen one zip file that was able to be extracted somehow, and I can not promise you they have not found a way around the file extension limits.
Most of the time they have a file called tool.asp that is a script that just places those files in every folder with the specified content.