Intrusion Detection System
trialnick Offline
Junior Member
**
Posts: 13
Joined: Oct 2010
Post: #13
RE: Intrusion Detection System
(02-08-2011 02:52 PM)ZiNgA BuRgA Wrote:  I do not recommend using the above.


why not?

Let's say that one installs a plugin that has a security issue.
Majority of users won't ever notice and find eg. XSS in plugin code, so htaccess will protect the forum no matter of the sec hole. Surely, these queries may be bypassed, but better any protection than nothing.

There are many sites with sqli. Some of them, when one tries to put the query just loop and never end wih loading even they are vulnerable. Or, even there's a visible sql error, the query can't be executed because htaccess forbidds it.
(This post was last modified: 02-08-2011 08:39 PM by trialnick.)
02-08-2011 08:37 PM
Find all posts by this user Quote this message in a reply

« Next Oldest | Next Newest »

Messages In This Thread
Intrusion Detection System - techu - 11-01-2010, 11:49 PM
RE: Intrusion Detection System - RateU - 11-02-2010, 04:27 AM
RE: Intrusion Detection System - MattR - 11-02-2010, 04:48 AM
RE: Intrusion Detection System - RateU - 11-02-2010, 04:58 AM
RE: Intrusion Detection System - techu - 11-02-2010, 12:19 PM
RE: Intrusion Detection System - 1master1 - 11-02-2010, 05:52 PM
RE: Intrusion Detection System - trialnick - 11-07-2010, 02:28 AM
RE: Intrusion Detection System - trialnick - 02-08-2011, 11:14 AM
RE: Intrusion Detection System - trialnick - 02-08-2011 08:37 PM
RE: Intrusion Detection System - trialnick - 02-10-2011, 05:16 AM
RE: Intrusion Detection System - trialnick - 02-12-2011, 09:22 AM

 Standard Tools
Forum Jump: