 | News Feed |
 | Jobs Feed |
Sections
|
| feed this: |  |
Ars Technica: Questions abound as malicious phpMyAdmin backdoor found on SourceForge site
by Chris Cornutt September 26, 2012 @ 09:45:59
As Ars Technica reports, there was a recent exploit found on the SourceForce website's installation of phpMyAdmin that allowed an attacker to POST anything to the site to be executed.
Developers of phpMyAdmin warned users they may be running a malicious version of the open-source software package after discovering backdoor code was snuck into a package being distributed over the widely used SourceForge repository. The backdoor contains code that allows remote attackers to take control of the underlying server running the modified phpMyAdmin, which is a Web-based tool for managing MySQL databases. The PHP script is found in a file named server_sync.php, and it reads PHP code embedded in standard POST Web requests and then executes it. T
The backdoor was somehow snuck into the code of phpMyAdmin on one of the mirrors and distributed to those downloading version 3.5.2.2. They think that the only downloads that were tainted with this issue were on the "cdnetworks" mirror site. You can find out more about the issue in this advisory - be sure you check your installation for a "server_sync.php" file and remove it if it exists.
voice your opinion now!
phpmyadmin sourceforge malicious eval serversync backboor
PHPBuilder.com: PHPBuilder.com Founder Passes Away, Leaves Indelible Legacy in FLOSS Development
by Chris Cornutt October 12, 2011 @ 10:41:44
Sad news today from PHPBuilder.com - Tim Perdue, the founder of the PHPBuilder.com site and contributor to the SourceForge project as one of the original developers has passed away at 37.
The PHPBuilder staff was saddened to learn that the founder of our site, Tim Perdue, passed away on September 16 , 2011, after a battle with cancer. At only 37 years of age, Tim's passing came much too soon, but his contributions to the PHP and open source communities assure him a lasting legacy.
Related posts include this tribute from his company, GForge and this article from Jake Ludington on LockerGnome. Digging through our own archives, I found this interview with him back in 2002 (an archive.org link, the original is no longer there).
voice your opinion now!
opensource death timperdue phpbuilder sourceforge floss
Community News: PHPUnit Web Interface (Ajax)
by Chris Cornutt June 11, 2009 @ 21:43:51
Popescu Valentin has submitted a tool that he and and Radu Gasler have created to help you run your PHPUnit tests via a web interface.
I made a web interface for runing PHPUnit test suites and seeing the results in a cool environment of AJAX.
Features Runing speciffic tests or whole suite, seeing the errors and thrown exceptions connected to the test that thrown them, ability to see the code coverage result for the test suite.
All these done in an interactive interface allowing run of the tests where the user can not interract with the system command line (web server). The software is totally free.
You can find complete details about the tool (and downloads) on its SourceForge page (as well as donate if you like it!)
voice your opinion now!
sourceforge interface phpunit
Community News: SourceForge Community Choice Awards 2009 Nominations
by Chris Cornutt May 15, 2009 @ 09:32:15
SourceForge is holding their Community Choice Awards again this year and they've opened it up so that you can nominate your favorite project, PHP or not, to be considered for an award.
The awards program allows the community to recognize open source software projects that are built with the highest quality, creativity and ingenuity. [...] Nominations will be accepted until May 29th, and the ten projects with the most nominations in each category will become finalists. The winners will be announced at a party, held at the Agenda Lounge in San Jose, CA, starting at 6:00 pm PT on the night of July 23rd, during the week of OSCON.
PHP-related nominations include the web2project web-based project management solution and the Symfony framework (in a few different categories).
voice your opinion now!
nominate sourceforge award choice community
Andi Gutmans' Blog: ZF Well Represented at SourceForge Awards
by Chris Cornutt July 17, 2008 @ 07:56:16
In a new post to his blog Andi Gutmans mentions how the Zend Framework was "well represented" in this year's SourceForge Awards.
The Zend Framework team will be watching closely, since no fewer than two (!) new ZF-based projects have made it in to the finals: Magento and Tine 2.0.
Magento is a very popular eCommerce application that makes setting up an online shop quick and easy. It's well designed and has been nominates to several community spots like "Best Project for the Enterprise" and "Most Likely to Change the World".
Time 2.0 is focused on intranet collaboration and is a rewrite of the eGroupWare project (a collaboration suite allowing for instant access of any data from just about anywhere there's an internet connection).
You can cast your vote for these and other great community projects by logging in to SourceForge and selecting your favorites from the lists.
voice your opinion now!
zendframework sourceforge award community magento time20
Zend Developer Zone: SourceForge Uses Zend Framework to Implement OpenID
by Chris Cornutt May 14, 2008 @ 07:51:31
The Zend Developer Zone has come across an interesting face about the SourceForge website - it uses the Zend Framework to add OpenID functionality to its pages.
According to the press release from SF about their OpenID support:
OpenID is getting tremendous traction and we're happy to be jumping into it. it's bringing us back in touch with fresh web (2.0) technology. [...] We've spent the past couple weeks on it - integrating the Zend Framework OpenID component into our site code. we like the framework as a whole and I personally hope to use more of it in the future.
There might be a few kinks in the process, so if you're seeing issues with your OpenID working on their site, check out the FAQ they've posted to help.
voice your opinion now!
sourceforge zendframework openid support release component
|
Community Events
Don't see your event here? Let us know!
|