|
Posted by Philip Ronan on 11/16/79 11:29
"Chung Leong" wrote:
> Philip Ronan wrote:
>>
>> A good place to start is <http://www.hudzilla.org/phpbook/read.php/17_0_0>,
>> which seems to cover most of the security issues in PHP.
>
> That's not a terribly good resource in my opinion. Everyone who calls
> hiding the presence of PHP a form of security measure should look up
> "security by obscurity" at Wikipedia. The section on register_globals
> misses the bigger issue as well. The fundamental problem is the
> reliance on global variables--a poor programming practice in general.
Actually I have to agree with you there. I bookmarked the site a long time
ago, but after I posted the link here I went back and read through a few
pages. Let me know if you find a better resource.
--
phil [dot] ronan @ virgin [dot] net
http://vzone.virgin.net/phil.ronan/
Navigation:
[Reply to this message]
|