Re: [misc-sec] Re: Ten least secure programs

From: Jon Zobrist (jzobrist_at_contentwatch.com)
Date: 07/02/03

  • Next message: Dave: "Re: What is this port? is it a trojan?"
    To: Richard Bennett <r.v.bennett@sms.ed.ac.uk>
    Date: 02 Jul 2003 10:01:52 -0600
    
    
    

    Along the same lines, if PHP were available for inclusing (being a
    programming language) couldn't we just cut to the root of the problem
    and list C?

    -Jon

    On Mon, 2003-06-30 at 18:31, Richard Bennett wrote:
    > I wouldn't include PHP as a program. Even though it's interpreted it's
    > essentially the person who writes it who causes the insecurities, and it is
    > very possible to write secure code. Main cause of insecure PHP apps are
    > unsanitised variables which can be passed to the script through the GET
    > request.
    > Also - wireless networking is a little generalising ;)
    >
    > -- Richard

    -- 
    Jon Zobrist <jzobrist@contentwatch.com>
    
    



  • Next message: Dave: "Re: What is this port? is it a trojan?"

    Relevant Pages

    • Re: Websites 101
      ... > I am presently attempting my first commercial site and was hoping I ... Google Groups, and search the archive of this group, for example ... PHP is, uhm, a very bad designed programming language which has its ... Altough learning a programming language takes a lot of time, ...
      (alt.internet.search-engines)
    • Re: JAVA and PHP
      ... requests to a server running PHP ... and return some parsable data to the Java program. ... I see nothing there that would exclude PHP from being a "programming language". ... you would probably have to say that "scripting languages" are ...
      (comp.lang.java.programmer)
    • Re: How to make mod_lisp faster than php?
      ... EW> slow because someone used the wrong programming language. ... ABCL isn't very fast by ... PHP scripts start from scratch for each request ... PHP was used to process data and upload it into SQL database. ...
      (comp.lang.lisp)
    • Re: Some confusion on self and the like....
      ... Class Cat Extends Animal ... In PHP, what would happen is if you used "self" in Animal.eat, it would always resolve the class to be Animal. ... These are important things to know about a programming language. ...
      (comp.lang.ruby)
    • Re: C++ Compiler On FreeBSD
      ... PHP isn't really a programming language. ... for me it's just funny thing that needs several megs of RAM to display the ... and common footer. ...
      (freebsd-questions)

    Loading