Recently my internal company site got defaced, is it self hosted site on a VPS, I suspect it has something to do with outdated program we use (e. g. php-5.5.9 and apache 2.4), and also it ran off Ubuntu 14.04.
Weirdly it doesn't occur on the main page, rather the deface page shows up when I tried to submit form. I have check fail2ban
and ufw
and it doesn't seem there was any strange activity.
What the best way to proceed the problem ? Is there any website vulnerability scanner I can use ?