TCLUG Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TCLUG:9821] ICQ



The last issue of phrack had a good article on how perl is easily
exploited when passing a path in the query string. I believe that's how
the crack Linux/NT contest was won.

Justin Coyne <jcoyne@software.umn.edu>

______________________________________
Office of Information Technology
Shepherd Labs Suite 106
100 Union Street SE
University of Minnesota
Minneapolis, MN 55455
612-301-5591
______________________________________

On Fri, 5 Nov 1999, Carl Wilhelm Soderstrom wrote:

> Clay wrote:
> >Actually I'm pretty much done on it. Just need to clean up some code and
> >check for security holes. It's written in php3 (and some perl), and uses
> >a MySQL database. I originally wrote it to allow for TCLUG members to
> >post their screenshots on the web site, but am expanding it to include
> >much more. I'm going to be out of town this weekend, but maybe I can get
> >it finished early next week.
>         maybe you could give a presentation on it sometime; explain how it
> works, and explain how you checked the security on it.
>         program security is something I barely begin to understand, and I
> think we're all at least vaguely interested in it. :)
> 
> Carl Soderstrom
> System Administrator	307 Brighton Ave. 
> Minnesota DHIA		Buffalo, MN	
> carls@agritech.com	(612) 682-1091
> 
> 
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: tclug-list-unsubscribe@mn-linux.org
> For additional commands, e-mail: tclug-list-help@mn-linux.org
> 
>