XSS documented

William Muriithi william.muriithi-Re5JQEeQqe8AvxtiuMwx3w at public.gmane.org
Thu Aug 5 21:30:11 UTC 2010


Afternoon


http://blogs.apache.org/infra/entry/apache_org_04_09_2010

You guys might be interested reading about an attack against Apache
last April. I just saw it and kind of felt it was interesting..

A couple of things come up as a bad idea:

- Do not use the root password for web services.

- Tinyurl is evil

Is anybody here using one time passwords by any chance?  How have you
implemented them?

William
--
The Toronto Linux Users Group.      Meetings: http://gtalug.org/
TLUG requests: Linux topics, No HTML, wrap text below 80 columns
How to UNSUBSCRIBE: http://gtalug.org/wiki/Mailing_lists





More information about the Legacy mailing list