|
- Readme First! - Read and follow the rules, otherwise your posts will be closed |
|
|
|
|
|
There are currently, 53 guest(s) and 1 member(s) that are online.
You are Anonymous user. You can register for free by clicking here |
|
|
|
|
|
|
lippylion writes "In helping all those with Nuke security issues and problems with spammers, comment spammers and other such people (the ones that post adverts on forums) and those that steal email addresses, I have discovered something I felt is really usefull and would benefit the whole of the Nuke community and others running websites.
The details are to long winded to go into here, but in short it is this, When someone registers for your site, a system that checks their ip against a dns record to see if they exist on a universal http blacklist, having been caught spamming etc. with that particular ip"
|
|
|
|
|
|
Free PHP Encoder and Obfuscator Online! |
|
kenetix writes "Hi everyone, I'm pleased to announce the opening of a new site and a free script here at http://www.freephpencoder.com. The site offers a free php code obfuscation and encoding service that allows people to distribute workable encoded php files for free.
Steps to encoding are extremely simple, simply upload the unencrypted file, download the encoded file, and you are ready to use the file (with the decryptor).
Many more features are planned to implemented with different encoding algorithms, but currently the free service currently utilizes the Zend engine for decoding. A byte encoding feature is currently being developed, and will be released shortly.
More information regarding this can be obtained from my community site:
HERE"
|
|
|
|
|
|
PHP-Nuke modules/Search/index.php SQL Bug |
|
Another security bug... all versions of phpNuke (Nuke Patched / Nuke Patched Core / RavenNuke) need to be patched.
For more information and code changes, see my site
Evaders Coding Squadron
|
|
|
|
|
|
|
dslserver writes "There are several ways to secure your phpNuke website. You can use addons like NukeSentinel, NukeCops security advise forum or .htaccess filtering. The simplest way to do this is .htaccess where you can filter some known bots so they will never gain access to your site, ban ip's, and spam bots (majority of attack attempts originate from scripts using a tool called libwww-perl).I analyze several web server logs each day and I put together several lines in .htaccess to block many of those script-kiddies from gaining access to my site. For anyone interested in securing your php website using .htaccess please visit new phpnuke code hacks section on our website."
|
|
|
|
|
|
A CMS With A Focus On Security |
|
forgotz writes "DaDaNuke is proud to announce that we have expanded our current inventory to offer products, service and support for Nuke-Evolution. Click here to see our new site! Nuke-Evolution is a variant of the CMS (Content Management System) PHP-Nuke, version 7.6. "Evo", as it is affectionately know, has it's roots in the former TechGFX project, PHP-Nuke Platinum. Although the continuation of that project under another development team may be found here. Consider partly, that Nuke-Evolution is a lessons learned exercise, as a result of the experience of former Platinum developers, who now make the core of the Nuke-Evolution development team. Read More... for complete story.
As with many people involved in the PHP-Nuke community-at-large may know, security has been questionable with this CMS (PHP-Nuke). I will not bother with that topic now, for it has been discussed ad nausea and better left to expand on this issue with it's own article. I will say this, the Nuke-Evolution Development Team has made a priority, security. Not just the core CMS itself, but all modules, addons, MODS, hacks and tweaks as well. They are committed to whichever script they use, anywhere in the system, that exploits, attacks and prevention are coded in. And, many of the modules and BBtoNuke MODS included, have been updated as well. This typically results in a better, more secure script than that which may still be available from the original author(s)!
A major part of the success of any platform that delivers content and functionality, is availability of third party software and backwards compatibility. At DaDaNuke Evolution we are committed to producing quality scripts and service for this ever growing community. Join us today, register here now and show your support for this great CMS. DaDaNuke Evolution is completely Donations driven."
|
|
|
|
|
|
Auto-Backup Your NUKE Database |
|
zulhar writes "Making backups is essential because problems inevitably occur and you need to be in a position to take action when disaster strikes. Are you maintaining your databases properly? Do you participate in a backup and recovery routine that checks on the health of the data? Are you prepared for worst thing that might happen to your website?
Read it more on how to auto-backup your nuke database at
http://zulkiplyharun.com"
|
|
|
|
|
|
GUIDE: HOW TO RENAME YOUR ADMIN.PHP |
|
zulhar writes "Recently, I wrote a guide on how to modify phpnuke captcha and has resulted in a flurry of comments and queries requesting me to write a guide on "how to change admin.php?"
This article is not intended to teach you how to hack into PHPNuke but how to secure it properly. Since most of hackers are targeting this critical file to achieve their mission, you have to camouflage the file and secure it properly.
Read the rest the article for some ideas on how to secure your PHPNuke against hackers..."
|
|
|
|
|
|
When it comes to site security, you are your first best line of defense |
|
forgotz writes "Do not rely on the government or someone else to protect what you have worked so hard to achieve. One vital component of an overall security strategy is the legal rights of both your site and its members. Be very clear right up-front, as to what you will, can and in some cases do that may be necessary to protect the information stored in your database(s).
One tool is available to assist and virtually cover every right and protection afforded to you and visitors to your site, Legal Module 1.0. Click here for screens and here for download (registration required).
When it comes to site security, you are your first best line of defense!
Legal Module 1.0 comes bundled with pre-configured settings as well as full customization from your PHP-Nuke administration panel. Use the included legal docs or supply your own. This add-on is a must have for every PHP-Nuke installation! Do not get caught with your pants down! Download Legal Module 1.0 today!"
|
|
|
|
|
|
php-nuke sql injection vulnerabilities in News Module!up to 7.9 |
|
doctornuke writes "Paisterist has discovered two vulnerabilities in PHP-Nuke, which can be exploited by malicious people to conduct SQL injection attacks....(from http://secunia.com/advisories/23128/)I am not sure the sentinel will be protective or not...doctornuke"
Evaders99's note:: This was already reported to chatserv and corrected in the latest Patched files. Please get the new modules/News/index.php file"
|
|
|
|
|
|
How to change GFX(image verify)in phpNUKE and Forums |
|
doctornuke writes "Hi nukers, This is a small mod to replace , so-so image verification in phpNUKE ,to be more beautiful,and add more security, see in action and get that code in thaihealth game zone forums
another idea of this image verification is to prevent spamming by bots in wherever textarea in your site , doctornuke has include this code in "
|
|
|
|
|
|
|
|
Syndication
| | | | | |