Posted by Ian on 12/06/05 09:28
bio-anomoly wrote:
> I'm not sure how relevant it is. Should I be able to read the home
> directories of every other user?
>
That depends on how the server is setup, doesn't it?
I never run web applications in the same zone as any user data.
> If their code is crap, an attacker can read everything on the server,
> including any files I've tried to hide.
>
Then use a server that can isolate you form the other mugs.
Ian
[Back to original message]
|