New on LowEndTalk? Please Register and read our Community Rules.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.
Comments
Yes.
@PremiumN
Its a must to implement symlink protection
Suppose one of your cilent website is vulnerable to SQL injection or suffers from file upload vulnerability.Then a hacker can upload a malicious php (know as a shell).From there he/she will try to symlink so as to get access to all your cilents data on the node.
Once a symlink attack is successful then mass deface is possible
In a matter of mins , hundred if not thousands of websites can get defaced , their database stolen.
And its just the beginning....
@AlexanderM @khav
Thanks for your reply
The more I get my php sites hacked the more I hate php. Seems quite primitive in this day and age to be running websites where browsers can access the files directly. Newer languages like python work so much more securely for this. Not letting browsers access the files directly goes a LONG way to making things more secure.
Please apply your own hand to your face. Yeah... thanks.
Instead of making smart ass remarks how about elaborating. Or are you just talking out of your ass?
Where is index.php or equivalent in python? Rhetorical question. You obviously don't know what you are talking about.
I'm not going to derail this guys post. I'm not going to satisfy your obvious troll.
Yea, pointing out there is an index.php file is an obvious troll...lol. Have you ever even set up a web page before?
index.php?? Really???
Seriously??
PHP is not visible in the browser, the output is. (sometimes)