|
||||
|
I would like to declare that this is not a genuine post, so i already posted it on an other forum as well, but now i know that i should have post it here firstly.
This script arsenal will help to fight against hacker, won't make your script more secure so if it is open for a certain attack this won't solve the programing bug, but will make the entrance more difficoult. ![]() Let's see what are the functions:
This is the core code called security.php PHP Code:
Very important part of the solution is the index.php file with the following code PHP Code:
Attaching you may find the whole archived folder (with Hungarian comments in the files). In order to implement the trap all you need to do is to upload the files into an optional folder let's name it core for instance and place this code to the very front of the files you would like to protect. PHP Code: PHP Code:
I warrant nothing but this works very well at my site. I regularly check the requested-string.txt to see if somebody had been banned accidentally. But i regularly smile on the catchings. Thanks ps. today i realized that at my Hungarian blog some very strange URLs has been restricted for instance /Databases/vicndatadata.mdb or /Reg/User_Reg.asp. I though that is something that i don't need it and since i know that WP is written in php and i use permalinks i completed my sql-injection.txt file with this two lines: Quote:
![]() I'm going to ask Cyrus to help me extend the protection covering leeching and xss attacks as well, but don't tell him, he knows nothing about my purpose ![]() |
|
||||
|
Great post Bagi - rep added
![]()
__________________
|
|
||||
|
Useful post bagi. Thanks for sharing it with us.
DON.
__________________
Web Hosting Rating | Websites For Sale | Web Hosting Reviews
Start a directory and start making money with PHP Link Directory |
|
||||
|
It is my pleasure to read your responses.
![]() |
|
||||
|
Bagi, you should begin a security consulting service! Serious!!!!
I'll be your first client. PM me bro!!! |
|
||||
|
Lovely, sadly i don't know as much about how to identify viruses with php but sadly my toolkit is limited only on server side scripts. As far as i know viruses are not really able to catch via script, but secure gateways such as zorp, which identify the unnatural package transmissions.
Martin, thank you for your kind words i am thinking on this, but i need to learn hacking as first. Of course i am thinking on ethical hacking, but you must know how to attack a script/server to know how to defend it, so it will be a long way and i am only at the startline at the monent. My sister work for an information security company called Kurt, i guess you have never heard about it, but there works one of the biggest hackers on the whole planet. He was disqualified from the hacker world champion because he used some tool which was not allowed I want him to be my mentor. Sweet dreams![]() I would like to release only FREE defending scripts in the future which cover wider area of web based attacks that might be installaed easily for everyone. |
|
||||
|
This is a schame that you use our nation as user member and got banned. Next time you should choose something else when you go spammming.
|
![]() |
| Useful Resources & Sites |
| • Search Engine Marketing Company • UK Web Hosting • Build One Way Links |
![]() |
| Thread Tools | |
| Display Modes | |
|
|
| UK Webmaster World Forums - Internet marketing, web development, domain names, SEO contest and discussuons. |
| Subscribe to our feeds |