Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




bugtraq logo Bugtraq mailing list archives

Re: PHP as a secure language? PHP worms? [was: Re: new linux malware]
From: Kevin Waterson <kevin () oceania net>
Date: Sun, 31 Dec 2006 09:00:23 +1100

This one time, at band camp, Gadi Evron <ge () linuxbox org> wrote:


Indeed, the most annoying thing about the PHP worms today is that these 
PHP vulnerabilities being exploited are everywhere.

These are not PHP vulnerabilities, these are application vulnerabilities.
 

2. Developing secure applications in PHP is difficult, as one of PHP's 
creators said recently - even to him after years of trying.

Who said this? do you have a source?

3. Staying on top of new PHP vulnerabilities has become impossible, 
popping around everywhere.

Application vulnerabilities...
 
kevin

-- 
"Democracy is two wolves and a lamb voting on what to have for lunch. 
Liberty is a well-armed lamb contesting the vote."


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]