<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom">
	<channel>
		<title>I'm not alone: phpbb.com gets hacked</title>
		<description>Discuss I'm not alone: phpbb.com gets hacked</description>
		<link>http://www.backupcentral.com/mr-backup-blog-mainmenu-47/13-mr-backup-blog/222-phpbb-hacked.html</link>
		<lastBuildDate>Fri, 10 Feb 2012 11:12:28 +0000</lastBuildDate>
		<generator>JComments</generator>
		<atom:link href="http://www.backupcentral.com/component/jcomments/feed/com_content/222/10.html" rel="self" type="application/rss+xml" />
		<item>
			<title>Wish I could</title>
			<link>http://www.backupcentral.com/mr-backup-blog-mainmenu-47/13-mr-backup-blog/222-phpbb-hacked.html#comment-466</link>
			<description><![CDATA[This whole site is run by PHP apps. Phpbb, joomla, wikipedia. The only non-PHP app we have is Mailman. Given that I'm running this site in my spare time, I don't even have the time to consider the possibility, let alone do the conversion of everything.]]></description>
			<dc:creator>W. Curtis Preston</dc:creator>
			<pubDate>Tue, 10 Feb 2009 13:25:05 +0000</pubDate>
			<guid>http://www.backupcentral.com/mr-backup-blog-mainmenu-47/13-mr-backup-blog/222-phpbb-hacked.html#comment-466</guid>
		</item>
		<item>
			<title>PHP</title>
			<link>http://www.backupcentral.com/mr-backup-blog-mainmenu-47/13-mr-backup-blog/222-phpbb-hacked.html#comment-465</link>
			<description><![CDATA[Don't use PHP. I know a lot of PHP fans out there will flame me for it but the only web apps I've ever had exploited were PHP apps. Despite running lots of Django, Plone, Zope, and various other kinds of apps. I have probably run equal shares of all of the above and PHP is the only one that gets exploited on a regular basis. It is debatable whether it is the technology itself (registered globals, no escaping SQL queries by default, etc) or simply the level of experience of those who implement it but the fact remains that it is a problem. phplist was not exploited because it was out of date. It was exploitable the day it was released. It isn't like software suddenly develops vulnerabilities over time and must therefore be refreshed eventually.]]></description>
			<dc:creator>Tracy Reed</dc:creator>
			<pubDate>Tue, 10 Feb 2009 13:09:47 +0000</pubDate>
			<guid>http://www.backupcentral.com/mr-backup-blog-mainmenu-47/13-mr-backup-blog/222-phpbb-hacked.html#comment-465</guid>
		</item>
	</channel>
</rss>

