General Community > Chit Chat

How can an image be a security risk?

<< < (2/3) > >>

BigMike:
I fully understand this now and I appreciate your help in answering all my questions! :D

Thanks!!
Mike

K@:
If you'd like to see what havoc it CAN do, have a look at this lot:

http://www.google.co.uk/search?rls=en-GB&q=krisbarteo

He hacked a LOT of SMF sites, way back when, and it's still referred to, as you can see.

Arantor:
No... the krisbarteo incident was not about an image vulnerability. That was with a vulnerability in the attachment system not doing its job properly and allowing files to be saved without a proper safety barrier, so that the attachments folder could be hit up directly - which is a problem in the case of malicious PHP files.

BigMike:
Interesting reads. I checked and I don't have any members of that username :) Security and stopping hackers has always interested me but I've never had the time to be serious and learn about it all. Reading the forum here has always been a lot of help. Thanks guys!

Mike

K@:
Ah. I got that round my neck. I thought it was the single pixel avatar thing.

Navigation

[0] Message Index

[#] Next page

[*] Previous page

Go to full version