Jump to content

Edit Posting Please


Recommended Posts

He changed it. Since he was not capable of removing the link, he just altered the contents of add.php to die.

 

So, I would assume he had a script to add records that should be secured in some manner and wasn't. Seems like it was probably a good thing that he did that. Will teach a lesson to always secure pages appropriately.

Link to comment
https://forums.phpfreaks.com/topic/275575-edit-posting-please/#findComment-1418693
Share on other sites

More like not to post a link to your actual production server.

 

Real estate agencies have a rule where they do not publish (or only partly publish) real estate info to lure more interested parties (how that works, no idea). I am guessing the add.php, in some way, exposed/removed the properties they have.

Link to comment
https://forums.phpfreaks.com/topic/275575-edit-posting-please/#findComment-1418696
Share on other sites

  • 2 weeks later...

More like not to post a link to your actual production serve

 

If it is a production server - then it is already out there. If the data should not be publicly accessible then it needs to be secured behind a login or some other process. Obfuscation is never a replacement for security.

Link to comment
https://forums.phpfreaks.com/topic/275575-edit-posting-please/#findComment-1421615
Share on other sites

Archived

This topic is now archived and is closed to further replies.

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.