NYCPHP Meetup

NYPHP.org

[nycphp-talk] analysis of php attacks

Chris Snyder chsnyder at gmail.com
Thu Oct 20 17:10:50 EDT 2011


On Thu, Oct 20, 2011 at 4:16 PM, Matthew Kaufman <mkfmncom at gmail.com> wrote:
>
> Quite a bit of ways and way too many to list

Yes, exactly.

All of those things we saw back in 2004 that were unbelievably sloppy
are still around. The bad guys are just getting better at finding and
exploiting them. Aided by easy access to stolen credit card info, no
doubt. How secure is a shared web host against attack by a customer?
Not very.

It would be more interesting to find out that these attacks are
happening in VPSes or private servers, which would indicated a real
exploit, rather than on GoDaddy or Dreamhost or some other shared
system.



More information about the talk mailing list