I hope this is in the appropriate forum.
I currently have a website written with Dreamweaver and using
php quite extensively.
This is hosted on a UK ISP.
I have recently had rogue websites "added" to my disc space
by someone unknown to me, these sites are fake paypal type sites, I
assume someone is sending phishing emails to attract people to
them.
I have deleted the sites and changed my access password 3 or
4 times but the rogue sites still appear.
My ISP says that there is most likely a security hole in the
php scripting - this is where I am getting lost.
I have written the site myself, is is not a complicated site,
but I was under the impression that Dreamweaver created simple text
code which was in php language and this was parsed by the ISP host
computer running the php program. In my mind therefore the security
updates would need to be done by the ISP. I have been told twice
that I am wrong but my ISP does not support php programing so I am
alone on this.
Do I need to update something, if so how? I have the most
recent php release running on my PC here but this won't help my
ISP.
I would be gratful for any help or pointing in the right
direction.