Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > comp.databases.ms-sqlserver > #1556

Re: Help With Secutity

Newsgroups comp.databases.ms-sqlserver
Date 2013-08-24 09:51 -0700
References <fa2be760-0b01-4681-8c00-b177f14cde33@googlegroups.com> <1a605a7e-ba87-4303-a32f-20b3bcd55cc2@googlegroups.com>
Message-ID <82f460d6-77f0-48ff-a87e-f583d87ae21b@googlegroups.com> (permalink)
Subject Re: Help With Secutity
From rja.carnegie@gmail.com

Show all headers | View raw


On Saturday, 24 August 2013 17:15:56 UTC+1, bradbury9  wrote:
> El sábado, 24 de agosto de 2013 09:23:10 UTC+2, chirag sharma  escribió:
> > Help with Security
> > 
> > I have created an online PHP code executor at http://web.guru99.dontgothere 
> > 
> > Though I have checked all security aspects … do you experts see
> > any major flaw that I need to care of?
> 
> This is a sql server related group, maybe not the best place to ask
> for php security.

I regret to say that to me it sounds more like a device to lure
gullible users with a certain area of responsibility to visit
a web address that performs a severe test of /their/ security.

SQL experts with an inflated sense of their PHP skills would be 
very good targets for hacking.

And, does it make sense to be invited to visit a web site's 
front page - an address ending in / ?

Even some of the data that I use at work would probably sell for
quite a good price to criminals, to exploit, if some hacker got 
their hands on it.

So I suspect it's nasty...

Some years ago, my boss got an e-mail with attachment ILOVEYOU.EXE.
He suspected it was a dangerous virus.  So he forwarded it to me,
to see if I thought the same.  It was, and I'd already heard of it.
Thanks, boss, and nice try but you don't get me that easily.
(He's not my boss any more, by the way.)

Back to comp.databases.ms-sqlserver | Previous | NextPrevious in thread | Next in thread | Find similar


Thread

Re: Help With Secutity bradbury9 <ray.bradbury9@gmail.com> - 2013-08-24 09:15 -0700
  Re: Help With Secutity rja.carnegie@gmail.com - 2013-08-24 09:51 -0700
    Re: Help With Secutity Erland Sommarskog <esquel@sommarskog.se> - 2013-08-24 19:21 +0200

csiph-web