Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
PHP apps: Security's Low-Hanging Fruit
Kelly Martin, 2007-01-08

PHP has become the most popular application language on the web, but common security mistakes by developers are giving PHP a bad name. Here's how PHP coding errors have become the new low-hanging fruit for attackers, contributing to the phishing problems on the web.

Comments Mode:
PHP apps: Security's Low-Hanging Fruit 2007-01-11
Anonymous (2 replies)
"It would be nice to have a global way for a script to ignore all variables in the URL"

register_globals was switched off by default years ago..

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/427/34255#34255
PHP apps: Security's Low-Hanging Fruit 2007-01-12
Kevin Waterson
Don't blame PHP, it's the newbies 2007-11-03
Catalin Hulea







 

Privacy Statement
Copyright 2009, SecurityFocus