Technosailor.com Readers! Donate today to assist the VIDA/COADHA Haiti Medical Response in their efforts.

5 January 2007 12 Comments

How to Handle Security Flaws

Yesterday, over at Blog Herald, the new management demonstrated the entirely wrong way of handling security flaws. (The flaw I detailed here)
WordPress celebrated it’s 500,000 install last month and cheers to them. The platform is stable, fast, easy to use. It has no cumbersome plugin architecture (like Textpattern). That’s not to say that it has [...]

7 February 2005 Comments Off

Lessons in Web Security: The Bane of FTP

Web Security is a major issues with web developers. Somethings apply more than others. For instance, in previous entries, we looked at the way global variables can affect PHP scripts as well as closing the PHP remote file execution loophole. Today I want to shift gears a bit and look at a much more common [...]

2 February 2005 27 Comments

Lessons in Web Security: PHP and Remote File Execution

Yesterday, we looked at one of the older and well known issues in web security: PHP and register_globals. Today, let’s get a little more scary, shall we? Again, I’ll get specific enough to make my point, but you will have to get creative to figure out how a hacker could actually utilize this exploit.
Today, let’s [...]