Looking for more information on how to do PHP the right way? Check out PHP: The Right Way

PHP Security Blog:
Suhosin 0.9.15 comes with Transparent phpinfo() Protection
Nov 29, 2006 @ 16:43:00

According to this new post on the PHP Security Blog, there's a new META tag the Suhosin extension includes in the output of a phpinfo page to help resolve some of the issues with Google (and buddies) storing the contents of the page, giving a potential attacker information they could exploit.

[The] extra META TAG to the HTML output of phpinfo() that forbids indexing and archiving by robots. For fairness reasons following the embedded links is still allowed to robots, because a lot of projects [...] to get at least a few backlinks for their work, that might result in a better search engine positioning.

The patch can be downloaded from their site.

tagged: suhosin extension transparent phpinfo protection suhosin extension transparent phpinfo protection

Link:


Trending Topics: