vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   Modification Requests/Questions (Unpaid) (https://vborg.vbsupport.ru/forumdisplay.php?f=112)
-   -   i need some security mods or scripts (https://vborg.vbsupport.ru/showthread.php?t=204863)

Alexey? 02-10-2009 08:52 AM

i need some security mods or scripts
 
hey all.
i need some firewall scripts or mods do defence my vbullen.
i already used vBfirewall and i didnt like it.

do you have some other scripts?
mybi even for php or something else.

Marco van Herwaarden 02-10-2009 10:28 AM

What do you need to defend your board against?

Alexey? 02-10-2009 10:36 AM

i want to defenD against sql inj

my vb version is 3.8.0

Marco van Herwaarden 02-10-2009 10:52 AM

Use the latest stable version of vB without modifications and you should not have a problem with SQL injections. You can only suffer from this if you are using insecure modifications.

tafreeh 02-10-2009 01:04 PM

all the modifications from vb.org have been tested by someone ? if not then where do we get secure modification as u said above..

Brandon Sheley 02-10-2009 01:08 PM

Quote:

Originally Posted by tafreeh (Post 1739763)
all the modifications from vb.org have been tested by someone ? if not then where do we get secure modification as u said above..

Marco said to use the latest version of vBulletin (vbulletin.com)

all the mods here are NOT tested, they are made from those wanting to share their mods

If you want the most secure board, than update and don't use any mods ;)

Alexey? 02-10-2009 01:12 PM

Quote:

Originally Posted by Loco.M (Post 1739765)
Marco said to use the latest version of vBulletin (vbulletin.com)

all the mods here are NOT tested, they are made from those wanting to share their mods

If you want the most secure board, than update and don't use any mods ;)

all the mods i had i delete e left only 2-3.
and i will upgrade to 3.8.1 like all of you said here

vbplusme 02-10-2009 01:26 PM

Most of the MODs that are here are "as-is" and at your own risk as far as I know. The ones that you need to be really critical of are the ones that accept user input. They represent the most risk if they are not filtering and sanitizing user input which may be most of them that collect user data. Forms are most often the vehicles for sql injections but not always. They can be passed through the browser as well. You should be really concerned with mods that request data in any event. BTW, I have been running 3.8.1 since the day it was released and it was upgraded from 3.7.5 with no problems and only minor custom style changes, fyi.

HTH

tafreeh 02-10-2009 02:19 PM

so it means.. mod from vb.org are not really secure.. it just like downloading it from vb.org or any other warez forum.... there is no difference....hmm interesting....


All times are GMT. The time now is 01:28 AM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01129 seconds
  • Memory Usage 1,726KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (2)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (9)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete