You are missing our premiere tool bar navigation system! Register and use it for FREE!

NukeCops  
•  Home •  Downloads •  Gallery •  Your Account •  Forums • 
Readme First
- Readme First! -

Read and follow the rules, otherwise your posts will be closed
Modules
· Home
· FAQ
· Buy a Theme
· Advertising
· AvantGo
· Bookmarks
· Columbia
· Community
· Donations
· Downloads
· Feedback
· Forums
· PHP-Nuke HOWTO
· Private Messages
· Search
· Statistics
· Stories Archive
· Submit News
· Surveys
· Theme Gallery
· Top
· Topics
· Your Account
Who's Online
There are currently, 36 guest(s) and 0 member(s) that are online.

You are Anonymous user. You can register for free by clicking here
Nuke Cops :: View topic - Admin Secure Is Security [ ]
 Forum FAQ  •  Search  •   •  Memberlist  •  Usergroups   •  Register  •  Profile •    •  Log in to check your private messages  •  Log in

 
This forum is locked: you cannot post, reply to, or edit topics.  This topic is locked: you cannot edit posts or make replies.printer-friendly view
View previous topic Log in to check your private messages View next topic
Author Message
gnaunited
Corporal
Corporal


Joined: Jun 22, 2003
Posts: 66

Location: Northglenn, Colorado

PostPosted: Sat May 29, 2004 6:52 pm Reply with quoteBack to top

Normally a hacking attempt, in my opinion, is kind of a fun experience. You get to see people who have wasted their time to "point out" (most of the time) that PHP-Nuke in insecure. I was hacked twice that I know of with countless more that are logged. I saw today that "Admin Secure" 1.7 is available. Being that today was the first time I heard about it I decided to give it a try. I a very impressed with every aspect about it. I really wish that this could be incorporated into PHP-Nuke itself but we all know that will never happen. I give this program 2 thumbs up for two reasons: one because this took dedication and time to make and two, it is one of the most useful add-ons for PHP-Nuke. I say keep up the good work.
Find all posts by gnaunitedView user's profileSend private messageVisit poster's websiteAIM AddressYahoo MessengerMSN MessengerICQ Number
Zhen-Xjell
Nuke Cops Founder
Nuke Cops Founder


Joined: Nov 14, 2002
Posts: 5939


PostPosted: Sat May 29, 2004 7:44 pm Reply with quoteBack to top

That is very high praise.

_________________
Paul Laudanski, Microsoft MVP Windows-Security
CastleCops: [de] [en] [wiki]
Find all posts by Zhen-XjellView user's profileSend private messageSend e-mailVisit poster's website
madman
Support Mod
Support Mod


Joined: Feb 15, 2004
Posts: 806


PostPosted: Sun May 30, 2004 9:33 am Reply with quoteBack to top

Thank you, gnaunited.

However, it still advisable to always patch your PHP-Nuke scripts, like one provided by the hard-working of Chatserv. Admin Secure also does not protect you against path disclosure methods which reveal your physical path on the server (often displayed on PHP warnings or errors). Admin Secure also does not covers entire PHP-Nuke components unless they call/connected to mainfile.php file. One for example was an e_myGallery security issue where poople can inject XSS method by calling to the script file directly.

You might still need another security products for PHP-Nuke; Fortress, Nuke HackerTraps, Protector System, Sentinel, etc, where offering features not included in Admin Secure.

_________________
I'm Image
Find all posts by madmanView user's profileSend private messageVisit poster's websiteYahoo MessengerMSN Messenger
Display posts from previous:      
This forum is locked: you cannot post, reply to, or edit topics.  This topic is locked: you cannot edit posts or make replies.printer-friendly view
View previous topic Log in to check your private messages View next topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



Powered by phpBB © 2001, 2005 phpBB Group

Ported by Nuke Cops © 2003 www.nukecops.com
:: FI Theme :: PHP-Nuke theme by coldblooded (www.nukemods.com) ::
Powered by · TOGETHER TEAM srl ITALY http://www.togetherteam.it · DONDELEO E-COMMERCE http://www.DonDeLeo.com
Web site engine's code is Copyright © 2002 by PHP-Nuke. All Rights Reserved. PHP-Nuke is Free Software released under the GNU/GPL license.
Page Generation: 0.542 Seconds - 426 pages served in past 5 minutes. Nuke Cops Founded by Paul Laudanski (Zhen-Xjell)
:: FI Theme :: PHP-Nuke theme by coldblooded (www.nukemods.com) ::