DaniWeb IT Discussion Community

DaniWeb IT Discussion Community (http://www.daniweb.com/forums/)
-   Existing Scripts (http://www.daniweb.com/forums/forum145.html)
-   -   Is phpBB easy to hack? (http://www.daniweb.com/forums/thread14397.html)

CAPSLOCK Nov 21st, 2004 5:57 pm
Re: Installing phpBB2
 
i've heard rumors said that phpbb is not safe and it's easy to hack?

cscgal Nov 21st, 2004 6:31 pm
Re: Is phpBB easy to hack?
 
There is a level of "hackability" with any open-source software, as anyone has access to the full source code, and therefore the ability to find flaws and loopholes in it. I wouldn't go so far to say that phpBB is not safe though - the development team keeps pretty current and addresses security holes fairly quickly. As you could imagine though, phpBB isn't as secure as forum software such as vBulletin, which has a $160 pricetag associated with it, therefore making it harder for hackers to obtain the code. In addition, due to the pricetag, the developers seem to have more of an obligation to address bugs quicker than phpBB developers, who are not monetarily compensated.

CAPSLOCK Nov 21st, 2004 6:40 pm
Re: Is phpBB easy to hack?
 
thank's for your explaination. that was quick!!! amazing!!!

Young Teck 06 Nov 21st, 2004 8:10 pm
Re: Is phpBB easy to hack?
 
Well, your correct Dani, but a new thing to the phpBB is that phpBB 2.0.11 has just been released, which fixes a major security exploit and cures a SQL Injection for changing usernames. Another thing is that phpBB 2.2 is going to be more stable and will be dynamically a more secure forum software. It will also be compatible to changing file permissions so they are not viewable and such. Whatever it is, its going to be good. Also, 2.0.11 also now officially has an implemented Robot Registration Flood mod, which needs a confirmation code to register, a bit more secure. Overall, I love phpBB, but vBulletin is my choice for security, 'eh atleast for now. :D

TKS Nov 22nd, 2004 12:17 am
Re: Is phpBB easy to hack?
 
I happen to like integramod quite well. It seems much more professional and secure than phpbb and it has many more features. Takes a bit of getting used to but is nice. I've got it running on my site (for about 7 days now) if you'd like to see it in action:

http://linuxportal.sytes.net

cscgal Nov 22nd, 2004 12:18 am
Re: Is phpBB easy to hack?
 
Basically, what IntegraMod is, is a phpBB installation that has a bunch of popular mods/hacks installed to it, so that you don't have to go hack extra features (such as those available at phpbbhacks.com) into it manually. Nevertheless, it's phpBB :)

Young Teck 06 Nov 22nd, 2004 7:40 am
Re: Is phpBB easy to hack?
 
Yes, it is phpBB basically, just with some added features. IntegraMod is basically like FullyModded phpBB, I forget, I think that's the name. So, basically it is phpBB, just with some added hacks and other security features. In my opinion when it comes down to it, IntegraMod is still at an even level, because with all the mods on there, it may not be secure much. You may also prove me wrong. Like Dani said, its phpBB nevertheless.

Scribbller Nov 29th, 2004 10:50 am
Re: Is phpBB easy to hack?
 
Technically speaking no forum software is hundred percent secure, new exploits are always discovered by hackers and are exploited quite alot before the developers fix it. I dont agree with csgal on one thing when she says VB code is difficult for hackers to obtain because pirated copies of VB are found all over the web. A simple search on google and you can get it. At the end of the day its the development that counts, VB and IPB are rapidly developing softwares thus security holes are sealed over and over as compared to open source like phpbb which hasnt really been developed much.

Young Teck 06 Nov 29th, 2004 2:52 pm
Re: Is phpBB easy to hack?
 
phpBB 2.0.11 was just released some time ago and fixes a secure exploit, but like the saying goes, once one thing is corrected, another problem is opened. You have to relize, these forum softwares say that they are secure, but when an exploit or something is fixed, another exploit or problem is started but not yet known. All forum softwares would agree.

MxHub Dec 3rd, 2004 4:36 am
Re: Is phpBB easy to hack?
 
Look like we had to upgrade phpbb again. :)


All times are GMT -4. The time now is 4:02 am.

Forum system based on vBulletin Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
©2003 - 2008 DaniWeb® LLC