Slashdot Mirror


Hardened PHP

Frank Kreuzbach writes "Yesterday the Hardened-PHP Project has announced its existence on the PHP-general mailinglist. It is the first public patch for PHP which adds security hardening features. It is meant as a proactive approach to protect servers against known and unknown weaknesses within PHP scripts or the engine itself. It enforces restrictions on include statements, adds canary protection to allocated memory and other internal structures and protects against internal format string vulnerabilities. It has syslog support and logs every attack together with the originating ip."

3 of 187 comments (clear)

  1. Re:Already in use by Espectr0 · · Score: 0, Offtopic

    do some development and site administration work for a high traffic porn site, and I can tell you that we've been using Hardened PHP

    I can see it now. Hardened PHP is the new "manly-patch" for 2004. Gets you "hard"!

  2. Re:Anyone else giggling? by kunudo · · Score: 0, Offtopic

    Nope.

  3. Re:I dont get this by Lord+Bitman · · Score: 0, Offtopic

    somebody isnt a programmer :)

    --
    -- 'The' Lord and Master Bitman On High, Master Of All