Question for the ADMIN of DigitalPoint - XSS or SQL injection

Discussion in 'Security' started by boa8888, Jun 13, 2009.

  1. #1
    I see many have had concerns about the subject of SECURITY and numerous questions.


    So after reading for days I thought to myself.

    Why not ask the question for the ADMIN of DigitalPoint - XSS or SQL injection

    FORUM
    1. what plugin are used?
    2. What steps has the forum DigitalPoint taken to secure the site and the software vBulletin.
    It seems that NOT available is a step by step. A document that outlines each step involved to clean and correct any XSS or SQL injection issues. I am hoping some members on this site can or will be able to convey clear directions to help with the cleaning up of a database and protect from SQL injection in a website.


    Anyone can offer a security list of plugins or step by step to secure a site and vBulletin.

    "Top10 List"
     
    boa8888, Jun 13, 2009 IP
  2. SSANZ

    SSANZ Peon

    Messages:
    861
    Likes Received:
    10
    Best Answers:
    0
    Trophy Points:
    0
    #2
    mod_security within apache stops a large majority of these types of attacks.
     
    SSANZ, Jun 14, 2009 IP
  3. wh0

    wh0 Banned

    Messages:
    146
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #3
    Any basic firewall will prevent injections, & rfi/lfi. So DP's web apps are likely pretty secure. On the other hand, only updates will patch vulnerable software for the usage of heap/buffer overflows, race conditions, and kernel root exploits.

    I'm sure their security staff is on the ball.
     
    wh0, Jun 14, 2009 IP