Flames Posted October 30, 2008 Share Posted October 30, 2008 Well on my site i would like people to test the security of the site, get to my site by pressing the link (globe symbol) underneath my display picture. Its currently got a login page, a user page which has some basic information about your user, and for admins an add news page. i've set up 3 test users but please dont break the site, i dont have any backups for mysql. test users (username / password). admin / test moderator / test test / test any suggestions for improvements post them here, thanks edit: the page for adding news is add_news.php i want you to see if anyone who isnt logged in as an admin can access it. also if you go to cookie.php then it will set the username cookie on its own, and then you can go to try and login or go to the user page and it should prompt you to add the password (going to be used with the remember feature which stills needs adding) adding news will fail, i've made sure it will fail by commenting out the query that lets you add news. if you find any major flaws pm me do not post them here as then people will exploit it. Link to comment https://forums.phpfreaks.com/topic/130743-test-my-sites-security-for-logging-in/ Share on other sites More sharing options...
dezkit Posted November 5, 2008 Share Posted November 5, 2008 add_news.php Looks reallyyy bad Link to comment https://forums.phpfreaks.com/topic/130743-test-my-sites-security-for-logging-in/#findComment-682719 Share on other sites More sharing options...
Flames Posted November 5, 2008 Author Share Posted November 5, 2008 as in appearance? In what way is that a flaw... Ill give you the answer... It's Not... I posted this to find out security flaws that some people find that are incredibly easy for hackers to hack... Link to comment https://forums.phpfreaks.com/topic/130743-test-my-sites-security-for-logging-in/#findComment-683116 Share on other sites More sharing options...
Recommended Posts