<?xml version="1.0"?>
<rss version="2.0">
  <channel>
    <title>PHPDeveloper.org</title>
    <link>http://www.phpdeveloper.org</link>
    <description>Up-to-the Minute PHP News, views and community</description>
    <language>en-us</language>
    <pubDate>Wed, 19 Jun 2013 20:35:55 -0500</pubDate>
    <ttl>30</ttl>
    <item>
      <title><![CDATA[SecurityFocus.com: PHP Security From The Inside (Interview with Stefan Esser)]]></title>
      <guid>http://www.phpdeveloper.org/news/7239</guid>
      <link>http://www.phpdeveloper.org/news/7239</link>
      <description><![CDATA[<p>
Over on the SecurityFocus website, there's <a href="http://www.securityfocus.com/columnists/432">an interview</a> posted with <i>Stefan Esser</i> of the Hardened-PHP Project (as interviewed by <i>Federico Biancuzzi</i>.
</p>
<blockquote>
Federico Biancuzzi discussed with him how the PHP Security Response Team works, why he resigned from it, what features he plans to add to his own hardening patch, the interaction between Apache and PHP, the upcoming "Month of PHP bugs" initiative, and common mistakes in the design of well-known applications such as WordPress.
</blockquote>
<p>
Some of the topics <a href="http://www.securityfocus.com/columnists/432">discussed</a> include
<ul>
<li>the Hardened-PHP Project
<li>Suhosin
<li>the PHP Security Response Team (his role in it and why he left)
<li>PHP5's security focus versus PHP4's
<li>and more...
</ul>
Check out <a href="http://www.securityfocus.com/columnists/432/">the full interview</a> to have all of your questions answered.
</p>]]></description>
      <pubDate>Wed, 07 Feb 2007 11:36:00 -0600</pubDate>
    </item>
  </channel>
</rss>
