<?xml version="1.0"?>
<rss version="2.0">
  <channel>
    <title>PHPDeveloper.org</title>
    <link>http://www.phpdeveloper.org</link>
    <description>Up-to-the Minute PHP News, views and community</description>
    <language>en-us</language>
    <pubDate>Sat, 06 Sep 2008 18:31:04 -0500</pubDate>
    <ttl>30</ttl>
    <item>
      <title><![CDATA[PHP Security Consortium: New Product Launch - PHPSecInfo]]></title>
      <guid>http://www.phpdeveloper.org/news/6543</guid>
      <link>http://www.phpdeveloper.org/news/6543</link>
      <description><![CDATA[<p>
<i>Chris Shiflett</i> has announced (via the phpsec.org mailing list) a new project to help make PHp installations safer in a simple, easy-to-use package - <a href="http://phpsec.org/projects/phpsecinfo/">PHPSecInfo</a>.
</p>
<blockquote>
<p>
Ed Finkler of the PHP Security Consortium has launched a new project to
help developers and system administrators audit PHP environments.
PHPSecInfo  provides a simple-to-use security audit system for the PHP
environment, with a look and feel similar to that of the phpinfo()
function.
</p>
<p>
PHPSecInfo currently has a suite of 16 tests. Interested PHP developers
are encouraged to propose and write new tests for consideration as well
as help refine the existing test suite. You can find contact information
for Ed Finkler and any member of the PHP Security Consortium online at <a href="http://phpsec.org/contact/">http://phpsec.org/contact/</a>.
</p>
</blockquote>
<p>
The development of the project is being partially sponsored by CERIAS at Purdue University. There's <a href="http://phpsec.org/projects/phpsecinfo/">an example</a> of the output from the script and a download dated for the beginning of August. Contributions are welcome and accepted, especially in certain areas like documentation, test writing, suggestions, and feedback.
</p>]]></description>
      <pubDate>Fri, 20 Oct 2006 10:30:08 -0500</pubDate>
    </item>
    <item>
      <title><![CDATA[PHP Security Consortium: SecurityFocus Newsletters Posted (#328, #327, #320, #319)]]></title>
      <guid>http://www.phpdeveloper.org/news/4553</guid>
      <link>http://www.phpdeveloper.org/news/4553</link>
      <description><![CDATA[The <a href="http://www.phpsec.org">PHP Security Consortium</a> has published more SecurityFocus Newsletters today:
<ul>
<li><a href="http://phpsec.org/projects/vulnerabilities/securityfocus320.html">#320</a> - issues with phpMyAdmin, PHPWebSite, Complete PHP Counter, and Zeroblog
<li><a href="http://phpsec.org/projects/vulnerabilities/securityfocus319.html">#319</a> - issues with PHP-Fusion, MyBloggie, OSCommerce, and Utopia News
<li><a href="http://phpsec.org/projects/vulnerabilities/securityfocus327.html">#327</a> - issues with Drupal, PHPGreetz, PHPWordPress, NiceCoder iDesk, WebCalendar, and PHPAlbum (large list)
<li><a href="http://phpsec.org/projects/vulnerabilities/securityfocus328.html">#328</a> - issues with phpMyAdmin, Web4Future, PHPForumPro, Cars Portal Index, and MyBB
</ul>
<p>
As always, the items mentioned above are only a small taste of the contents of <a href="http://phpsec.org/projects/vulnerabilities/securityfocus.html">the newsletters</a>, so be sure to check them out <a href="http://phpsec.org/projects/vulnerabilities/securityfocus.html">in full</a> to see if one of your applications is listed...]]></description>
      <pubDate>Fri, 23 Dec 2005 07:50:55 -0600</pubDate>
    </item>
    <item>
      <title><![CDATA[PHP Security Consortium: Five SecurityFocus Summaries Posted]]></title>
      <guid>http://www.phpdeveloper.org/news/4347</guid>
      <link>http://www.phpdeveloper.org/news/4347</link>
      <description><![CDATA[The PHP Security Consortium has posted several <a href="http://phpsec.org/projects/vulnerabilities/securityfocus.html">SecurityFocus summaries</a> today - #324, #323, #322, #317, #316.
<p>
<ul>
<li>Applications in <a href="http://phpsec.org/projects/vulnerabilities/securityfocus324.html">#324</a> include: Invision Power Board, PHPList, YaBB, TikiWiki, phpAdsNew, and PHPWebThings.
<li>Applications in <a href="http://phpsec.org/projects/vulnerabilities/securityfocus323.html">#323</a> include: PHP errors with parse_str and phpinfo, Invision Gallery, PHPCafe, EyeOS, Simple PHP Blog, PHP Handicappe, and vBulletin.
<li>Applications included in <a href="http://phpsec.org/projects/vulnerabilities/securityfocus322.html">#322</a> include: phpMyAdmin, PHPNuke, Platinum DBoardGear, PHP-Fusion, XOOPS, MyBulletinBoard, Mantis, and PHP Advanced Transfer Manager
<li>Applications included in <a href="http://phpsec.org/projects/vulnerabilities/securityfocus317.html">#317</a> include: CutePHP, VBulletin, PunBB, PHPMyFAQ, Simplog, and Land Down Under
<li>Applications included in <a href="http://phpsec.org/projects/vulnerabilities/securityfocus316.html">#316</a> include: PunBB, PHP-Nuke, PHPTagCool, ATutor, CutePHP, and AEwebworks.
</ul>
<p>
If you are using any of the above applications, it's suggested that you update immediately. Also, if this not by far a complete listing of the applications listed in <a href="http://phpsec.org/projects/vulnerabilities/securityfocus.html">these simmaries</a>. Be sure to check out the listing on each to see if your application is effected...]]></description>
      <pubDate>Mon, 21 Nov 2005 06:31:56 -0600</pubDate>
    </item>
  </channel>
</rss>
