Skip to main content

Posts

Writing More Secure PHP Programs

Introduction PHP is a remarkably powerful open-source server-side scripting language. In very little code it is possible to do things which would be much more complex to do in other similar languages like Perl, ASP, JSP, ColdFusion, or C. However, the desire to hack together a quick solution can lead to insecure web applications which can place your data and, in some cases, your server at risk. This presentation will address some of these issues as they relate to PHP and offer some suggestions to get you thinking in a direction which will provide more security. PHP is neither inherintly secure nor insecure. It is the responsibility of the programmer of a web application, the database administrator and the system administrator to ensure that security is not compromised at several levels as described in Mark Nenadov's article Developing Secure Web Applications. Operating System/Web Server Layer (Red Hat Linux with Apache) General Application Layer (issues common to any web applicatio...

PHP 5.2.6 Released

PHP 5.2.6 Release Announcement The PHP development team would like to announce the immediate availability of PHP 5.2.6. This release focuses on improving the stability of the PHP 5.2.x branch with over 120 bug fixes, several of which are security related. All users of PHP are encouraged to upgrade to this release. Security Enhancements and Fixes in PHP 5.2.6: Fixed possible stack buffer overflow in the FastCGI SAPI identified by Andrei Nigmatulin. Fixed integer overflow in printf() identified by Maksymilian Aciemowicz. Fixed security issue detailed in CVE-2008-0599 identified by Ryan Permeh. Fixed a safe_mode bypass in cURL identified by Maksymilian Arciemowicz. Properly address incomplete multibyte chars inside escapeshellcmd() identified by Stefan Esser. Upgraded bundled PCRE to version 7.6 Key enhancements in PHP 5.2.6 include: Fixed two possible crashes inside the posix extension. Fixed bug #44069 (Huge memory usage with concatenation using . instead of .=) Fixed bug #44141 (privat...

Google Open handset

Building a better phone for consumers Today, there are 1.5 billion television sets in use around the world. 1 billion people are on the Internet. But nearly 3 billion people have a mobile phone, making it one of the world's most successful consumer products. Building a better mobile phone would enrich the lives of countless people across the globe. The Open Handset Alliance™ is a group of mobile and technology leaders who share this vision for changing the mobile experience for consumers. Innovating in the open Each member of the Open Handset Alliance is strongly committed to greater openness in the mobile ecosystem. Increased openness will enable everyone in our industry to innovate more rapidly and respond better to consumers' demands. Our first joint project as a new Alliance is Android™. Android was built from the ground up with the explicit goal to be the first open, complete, and free platform created specifically for mobile devices. Making the vision a reality Android is...

Adversity overtaken

Two poor students fought with their adversity to crack Civil Service and ranked 45 and 47. Ravikant Sing and Keshabendra Kumar both are Indian Railway employee. One is son of an ayurvedic doctor and another is son of a milkman has done their graduation from IGNOU . Wish them all the best.

Come out to help

Donations to Ramakrishna Mission, Belur Math,(Headquarters),for Permanent Fund All donations to Ramakrishna Mission, Belur Math, are exempt from Income Tax under Section 80G of the Income Tax Act, 1961 by Order No. DIT(E)/1240/8E/109/69-70 dated 31.1.2005 issued by the Director of Income Tax (Exemptions), Kolkata, and communicated through Memo No. DIT(E)8E/109/69-70/4712-14 dated 10.2.2005 by Income Tax Officer (Exemptions)-III, Kolkata, for the Director of Income Tax (Exemptions), Kolkata . Donations to Ramakrishna Mission, Belur Math, may be sent through cheques or demand drafts. Account payee cheques / demand drafts should be drawn in favour of Ramakrishna Mission, Belur Donations to Ramakrishna Mission, Belur Math, may be sent for any of the following purposes (a) Relief and rehabilitation (b) ...

How Rural life changing by IT in India

When we reach his home in Kandukur village in Andhra Pradesh, 21-year-old Nukathoti Kondaiah serves us bottled mineral water, freshly cut fruit and cold drinks in plastic cups. That may not seem such a big deal but earlier in the day Kondaiah had trudged a couple of hours in the sweltering heat to the nearest grocery store to buy these luxuries. Next month he will begin work with Wipro as a trainee in its software department, taking his mentally-challenged mother with him for treatment. We talk under the shade of a banyan tree surrounded by a crowd of villagers who treat Kondaiah like a celebrity. An eight-year-old fidgeting with the photographer's camera says he'd like to be Kondaiah when he grows up. The odds couldn't have been less in his favour when the teenager's father died young, followed as suddenly by the deaths of his siblings. "She went mad," he says of his mother's ill-health, "I'm her only hope." Life wasn't ki...

Unfortunate

Hello friends, My 2 cell phones has been theft from my Kolkata flat at night. Cell no. were 9432472083 [Cellone Anant] and 9883222432 [Smart]. I have already informed both of the customer care to immediately block there SIMs. So please do not try to contact me on these nos. Regards.