[nylug-talk] PHP Security

Michael B Allen mba2000 at ioplex.com
Sat Dec 30 18:52:28 EST 2006


On Sat, 30 Dec 2006 18:46:31 -0500
Ruben Safir <ruben at mrbrklyn.com> wrote:

> On Sat, Dec 30, 2006 at 02:12:41PM -0500, Michael B Allen wrote:
> > On Sat, 30 Dec 2006 13:45:05 -0500
> > Ruben Safir <ruben at mrbrklyn.com> wrote:
> > 
> > > BTW - PHP ITSELF is insecure, both in its design, its promotion, and in the
> > > community which designed it.
> > 
> > Back that up. No more vague claims. Give me a specific example of
> > something about "PHP ITSELF" that is insecure.
> 
> 
> No I won't  Intelligent people who are doing world access administration can do their
> own research and google the security alerts yourself.

Erm, yeah.

> I have a better question.  Why would someone do something as insecure as run
> root based admin servers over the web?

You mean the ones written in Perl or Python?

Mike

-- 
Michael B Allen
PHP Active Directory SSO
http://www.ioplex.com/


More information about the nylug-talk mailing list