News Feed
Sections




News Archive
Looking for more information on how to do PHP the right way? Check out PHP: The Right Way

Jemjabella.co.uk:
Spotting Insecure Scripts
August 19, 2006 @ 15:36:59

On Jemjabella.co.uk, there's a quick post with a few helpful hints of spotting the insecurity inside of some scripts.

With the current surge in "hackings" (or rather: script kiddies exploiting known holes to deface websites that don't support their view on the war) I've been going through a lot of scripts to find common and easy to fix vulnerabilities. With my fingers crossed, and perhaps a naive hope that people don't release scripts with massive holes anymore, I've been sorely disappointed.

They list out a few different things to watch out for, including potential SQL injection points and the unchecked inclusion of files via include(). It's some pretty basic stuff, so don't expect much new from the post, but it's a good reminder of some of the simple things we all, as developers, need to watch out for.

1 comment voice your opinion now!
insecure scripts sql injection include filter input insecure scripts sql injection include filter input


blog comments powered by Disqus

Similar Posts

CodePoets.co.uk: A Quickstart to using PEAR with PHP

Gonzalo Ayuso's Blog: Building a simple SQL wrapper with PHP. Part 2.

Jemjabella.co.uk: Spotting Insecure Scripts

Ibuildings techPortal: DPCRadio: Real World Dependency Injection

Paul Jones: Aura Has New Releases: Input, Sql, and View


Community Events





Don't see your event here?
Let us know!


symfony2 opinion unittest interview testing introduction series api laravel list install threedevsandamaybe refactor release framework podcast community code developer language

All content copyright, 2014 PHPDeveloper.org :: info@phpdeveloper.org - Powered by the Solar PHP Framework