idiot
- Red Squirrel
- Posts: 29209
- Joined: Wed Dec 18, 2002 12:14 am
- Location: Northern Ontario
- Contact:
idiot
yeah lol.
He does not realize all the processing that would be required to reparse the logs to block html. Have to replace < with < and > with > which requires the use of a php function twice. That's for one field, there's more then one field.
I tested it on my server and it ain't pretty, get's pretty slow. Sometimes you just have to sacrifice "security" for performance.
Archived topic from Iceteks, old topic ID:2731, old post ID:22379
He does not realize all the processing that would be required to reparse the logs to block html. Have to replace < with < and > with > which requires the use of a php function twice. That's for one field, there's more then one field.
I tested it on my server and it ain't pretty, get's pretty slow. Sometimes you just have to sacrifice "security" for performance.
Archived topic from Iceteks, old topic ID:2731, old post ID:22379
Honk if you love Jesus, text if you want to meet Him!
idiot
LOL yeah Seems like someone don't know Java or flash scrips either.
Sorry red to see "Idiot" problems are still trying their best to give everyone here high blood presser.
Archived topic from Iceteks, old topic ID:2731, old post ID:22380
Sorry red to see "Idiot" problems are still trying their best to give everyone here high blood presser.
Archived topic from Iceteks, old topic ID:2731, old post ID:22380
- Red Squirrel
- Posts: 29209
- Joined: Wed Dec 18, 2002 12:14 am
- Location: Northern Ontario
- Contact:
idiot
The way I look at it, the worse thing that can happen is that someone requests a string that has html to an image to fetch my IP. But if someone hacks my lan, they really have nothing to do.
I'm trying to find a way to kill html in those logs though, but it's not easy to do if I want it to be efficient.
Archived topic from Iceteks, old topic ID:2731, old post ID:22381
I'm trying to find a way to kill html in those logs though, but it's not easy to do if I want it to be efficient.
Archived topic from Iceteks, old topic ID:2731, old post ID:22381
Honk if you love Jesus, text if you want to meet Him!
- Red Squirrel
- Posts: 29209
- Joined: Wed Dec 18, 2002 12:14 am
- Location: Northern Ontario
- Contact:
idiot
Well I fixed the issue so he won't be able to try and hack me anymore, not that his attempts were successful in first place.
htmlspecialchars() is what I used. Gets rid of < and > in HTTP headers as they are put in logs.
Archived topic from Iceteks, old topic ID:2731, old post ID:22382
htmlspecialchars() is what I used. Gets rid of < and > in HTTP headers as they are put in logs.
Archived topic from Iceteks, old topic ID:2731, old post ID:22382
Honk if you love Jesus, text if you want to meet Him!
- Red Squirrel
- Posts: 29209
- Joined: Wed Dec 18, 2002 12:14 am
- Location: Northern Ontario
- Contact:
idiot
Just gave him full access, under high supervision of course.
I'll watch a 2 hour movie and come back to see what happends. I'll get popup notifications on my PC if I get scada emails hough so not to worry since I'll check 'em to see if it's him.
Archived topic from Iceteks, old topic ID:2731, old post ID:22383
I'll watch a 2 hour movie and come back to see what happends. I'll get popup notifications on my PC if I get scada emails hough so not to worry since I'll check 'em to see if it's him.
Archived topic from Iceteks, old topic ID:2731, old post ID:22383
Honk if you love Jesus, text if you want to meet Him!
- Red Squirrel
- Posts: 29209
- Joined: Wed Dec 18, 2002 12:14 am
- Location: Northern Ontario
- Contact:
idiot
Yep, so far nothing too interesting though...
Archived topic from Iceteks, old topic ID:2731, old post ID:22387
Archived topic from Iceteks, old topic ID:2731, old post ID:22387
Honk if you love Jesus, text if you want to meet Him!
- Triple6_wild
- Posts: 1389
- Joined: Sat Sep 06, 2003 5:58 pm
idiot
you might get some sort of revenge
that image is gonna be on google and the world will have access to that IP lol
Archived topic from Iceteks, old topic ID:2731, old post ID:22396
that image is gonna be on google and the world will have access to that IP lol
Archived topic from Iceteks, old topic ID:2731, old post ID:22396
Wait what?
- Red Squirrel
- Posts: 29209
- Joined: Wed Dec 18, 2002 12:14 am
- Location: Northern Ontario
- Contact:
idiot
Haha. Or sabotagé.
Yeah that IP will eventually get spidered on google. Interesting really.
Still no sign of him though, only 2 alarms for that other IP, which is just a referrer spammer that I blocked months ago, just a cheap status 2 alarm.
Archived topic from Iceteks, old topic ID:2731, old post ID:22402
Yeah that IP will eventually get spidered on google. Interesting really.
Still no sign of him though, only 2 alarms for that other IP, which is just a referrer spammer that I blocked months ago, just a cheap status 2 alarm.
Archived topic from Iceteks, old topic ID:2731, old post ID:22402
Honk if you love Jesus, text if you want to meet Him!
- Red Squirrel
- Posts: 29209
- Joined: Wed Dec 18, 2002 12:14 am
- Location: Northern Ontario
- Contact:
idiot
Well how fun is this.
http://www.google.ca/search?hl=en&q=%2224....le+Search&meta=
Archived topic from Iceteks, old topic ID:2731, old post ID:22473
http://www.google.ca/search?hl=en&q=%2224....le+Search&meta=
Archived topic from Iceteks, old topic ID:2731, old post ID:22473
Honk if you love Jesus, text if you want to meet Him!