 | News Feed |
 | Jobs Feed |
Sections
|
| feed this: |  |
Community News: Mambo Lead Developer Quits
by Chris Cornutt May 08, 2006 @ 09:42:39
According to this post on his blog today, one of the board memebers from the Mambo project, Martin N Brampton is formally leaving his position.
I now feel it necessary to resign from the Board of the Mambo Foundation with immediate effect. Since joining the Board, a number of minor irregularities have been evident, and not all of them have been rectified even though I have sought to raise them. It is apparent that early decisions were taken by exchange of email and no records were kept. Present banking arrangements breach the Foundation's rules.
In terms of fundamental principles, there is a considerable concern in my mind that the Board is not informing itself about the members wishes, and not making decisions that fully take account of their interests. I see this as a breach of trust.
He goes on to talk about some of the ongoing issues that the Board faced, including misinformation about trademark issues and their change to allow the membership of the Foundation to suggest rule changes.
As the majority decisions being made by the Board conflict with my understanding of those obligations, I cannot continue as a Board member any longer. As there was no resolution to appoint me to the Board, I am unsure how you will handle my resignation. I will remain a member of the Foundation and continue with my work in Mambo development.
For the complete story, check out this official release...
voice your opinion now!
php mambo lead developer quit board bad decisions php mambo lead developer quit board bad decisions
Community News: Mambo Foundation Podcasts
by Chris Cornutt December 08, 2005 @ 08:42:30
The Mambo Foundation has released a series of podcasts lately covering all sorts of different subjects.
- Episode 1 - Mambo love, new team members, Mamboday in Italy, and the current state of development.
- Episode 2 - a Q&A session, Mastering Mambo, phpfreelancer.org, and an interview with two developers from mambohub.com
- Episode 3 - an interview with Christian Wenz, a template design contest, users survey, and the "Component Corner"
If you haven't gotten a chance to check them out yet, grab one and give it a listen. You can also subscribe to their feed to catch the latest...
voice your opinion now!
php podcast mambo foundation php podcast mambo foundation
Christopher Kunz's Blog: Mambo worm in the wild
by Chris Cornutt December 06, 2005 @ 06:50:24
According to this post on Christopher Kunz today, there's a Mambo-targeted worm out "in the wild" called Elxbot.
Well, it wasn't totally unexpected, I guess. The recently discovered remote code execution hole in Mambo has spawned a nifty little worm, called "Elxbot". I actually referred to the (then still fairly unknown) vulnerability and to the possibility that it might be abused by worm writers in my talk at the last PHP Conference.
I am already expecting a similar outbreak for the PHPKIT holes I recently reported. It has all of the features that I outlined above, although the install base is probably somewhat limited to german users (and there, mainly to gaming clans). Seeing this, I didn't actually publish a PoC for the remote code execution hole, but it is somewhat trivial to find and exploit anyway.
The worm itself searches Google for available targets, infects the system, and connects to an IRC server where the controlling party is waiting. From there things like arbitrary command execution, TCP floods, HTTP floods, and Portscans can be made. For complete information, check out this page on the Outpost24.com site...
voice your opinion now!
php mambo worm wild elxbot php mambo worm wild elxbot
|
Community Events
Don't see your event here? Let us know!
|