Not-Noticeably.net

Skip navigation

All posts tagged with "Message Boards"

PHPAskIt is insecure!1!1!zomg!11

I came across a couple of websites discouraging the use of PHPAskIt because it uses a database and therefore absolutely must be insecure.

One such example states:

PHPAskIt isn't completely secure, either. It uses a database so I woulda thought that was more INsecure than the flat file of Waks Ask & Answer script.

Another says:

PHPAskit is just as insecure [as Wak's Ask&Answer] only people think it's secure because it's not flat file.

And so on, and so forth.

For the record, there is no difference in security in using one method or another, as long as they are both done properly. Wak's Ask&Answer and CuteNews (flat file scripts) aren't. PHPFanBase and SimpleDir (MySQL scripts) aren't either. Jem's Bella~ series and FlatPress however, are flat file scripts and they are fine. Similarly, WordPress and PHPAskIt are MySQL scripts and they are absolutely fine.

Yes, it's true that hackers discover more and more vulnerabilities in scripts and programming languages all the time, so those scripts may not always be secure in their current versions so it is very important to keep your scripts up to date. But to say a script is insecure because of the method of storage that they use is stupid and shows complete ignorance. If you are going to say a script is insecure, don't just back it up with "well I looked it up online and it said it was insecure". People seem to like publishing fake reports of insecurities (probably where all this is coming from, actually... PHPAskIt had a nice security hoax published about it - and in case you're still living in the dark ages it was wrong) so "looking it up online" isn't always the answer.

If in doubt, ask someone who knows what they're talking about. :)

Download day!

Today is Firefox 3 Download Day - go and get it! ...if it's out. At the moment I'm still getting the page for FF2 and RC builds of 3.0... Hmmm.

Oh and in case you're wondering why I've disappeared off the face of the internet, it's because I have none at home at the moment (moving house). So there you go.

IE8

8th March 2008 / 17:48

15 comments on "IE8"

Tagged: Browsers, Geekiness, Internet Explorer

So, the first beta of IE8 is out... Looks no different to IE7 but apparently it passed the acid test and it's standards compliant!1!11 WOW!!1! So obviously I had to try it and review it just like I did for IE7.

Well first of all I can't spot any of the old CSS bugs (OMG I can't have been looking properly, seriously) but there are a few general bugs. If you view this site in it, the title of the page or blog entry kind of jumps when you hover over the navigation. Also, dropdown menus can't seem to decide whether they are as wide as the text inside them or as wide as the CSS says they should be. It seems if you click the menu, it is the correct width (i.e. that of the CSS) but if you click inside another field, it goes back to the width of the text inside.

Other than that, I couldn't find anything majorly wrong. I highly doubt I tested it fully, but still: could this be the end of IE hacks and having to make a separate stylesheet for IE because it interprets everything differently? Well, that certainly seems like an exciting prospect. The only thing I wonder is why Microsoft haven't done it before now.

Oh, and it has a handy "emulate IE7" button which is good only really for cross-browser checking... Can't easily install more than one IE on a computer so that's kind of useful. :P

Older Entries