Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
PHP apps: Security's Low-Hanging Fruit
Kelly Martin, 2007-01-08

PHP has become the most popular application language on the web, but common security mistakes by developers are giving PHP a bad name. Here's how PHP coding errors have become the new low-hanging fruit for attackers, contributing to the phishing problems on the web.

Comments Mode:
PHP apps: Security's Low-Hanging Fruit 2007-01-09
Anonymous (2 replies)
Re: PHP apps: Security's Low-Hanging Fruit 2007-01-10
Anonymous
Rewirding this:
"Placing blame on the Microsoft is like blaming the handgun manufactures or the tool makers if someone hurts themselves or someone else with that gun or tool. That's just lame."

When all those users work with administrative privileges, download all kinds of creepy coftware, browse all kinds of websites, is it really Microsoft fault that Windows computers got compromised?

Perhaps we'd all be better served by enahnced, available, low cost, programmer education. Place the responsibility where it truly belongs."


[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/427/34251#34251
PHP apps: Security's Low-Hanging Fruit 2007-01-12
Kevin Waterson
Don't blame PHP, it's the newbies 2007-11-03
Catalin Hulea







 

Privacy Statement
Copyright 2009, SecurityFocus