Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
PHP apps: Security's Low-Hanging Fruit
Kelly Martin, 2007-01-08

PHP has become the most popular application language on the web, but common security mistakes by developers are giving PHP a bad name. Here's how PHP coding errors have become the new low-hanging fruit for attackers, contributing to the phishing problems on the web.

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 
Re: Don't forget basic file system security 2007-11-03
Catalin Hulea
Well... yes, the script user is supposed to be able to do INSERT, UPDATE, DELETE, how else is he supposed to post comments on a blog, for instance?...

Sorry, maybe I'm missing the point here... Maybe I am supposed to learn something, but how can you insert a comment on a post if you're not able t...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus