Re: Paper of insecure in PHP... and doubt in SQL-Injection

From: Arturo \ (buanzo@buanzo.com.ar)
Date: 02/21/03

  • Next message: Christian Kratzer: "Re: Apache 2.x leaked descriptors"
    Date: Fri, 21 Feb 2003 17:27:19 -0300 (ART)
    From: "Arturo \"Buanzo\" Busleiman" <buanzo@buanzo.com.ar>
    To: sekure@hadrion.com.br
    
    

    On Thu, 20 Feb 2003 sekure@hadrion.com.br wrote:

    > Hi,
    HI!

    > I'm searching a good paper or collection of papers that describe
    > problems of PHP with real examples and eploitations. Like
    > SQL-Injection, danger funcionts, buffer overflow, ...

    If you can read Spanish (if you're in need enough), you can wait for the
    RareGaZz's Security Team SQL Injection & Server Side Scripting Languages
    Vulnerabilities paper.

    http://www.raregazz.org

    There will be a whole English translation of it ASAP.

    Elsewhere, wait for other replies here, which will probably be more useful
    for you.

    --
    Arturo "Buanzo" Busleiman
    System Security & Administration
    DaleClick.com - http://www.daleclick.com/
    http://www.buanzo.com.ar - http://www.linux.org.ar