articlecrossroad.com articlecrossroad.com
   Home Page :> About Us :> Privacy Policy :> ToS :> Add Your Link :> Submit Article
Search:   
Get Free Links
 
   

Garden & Home

   

Cooking & Drinking

   

Business & Services

   

Automobiles

   

Relationship & Lifestyle

   

Policies & Law

   

Finance & Banking

   

Education & Reference

   

Internet & Computers

   

Society & Issues

   

Self Enhancement

   

Sports & Adventure

   

Property & Agents

   

Technology & Science

   

Fitness & Health

   

Tour & Travel

   

Healthcare & Treatment

   

Issues & News

   

Jobs & Careers

   

Recreation

   

Culture & Art

   

Teens & Kids

   

Malls & Shopping

   

Online & Board Games

 

Home Page › Internet & Computers › Web Design & Development
 

Webspell Major Security Leaks

 

Author:

Today I'm writing about webspell, this script is an advanced (but leak) script for clans and can be downloaded from http://cms.webspell.org, which I advice you NOT to do!

I used this script for a few years for customers but this all changed when my host started bugging me about spam sent with the mail script from my site, which I of course didn't know. The mail script was hacked so that no-one saw the hacked version, the only way to see it is in your stats which I did with Extremetracking.

The spam mails are sent to the main email-account of your domain-name account so they can easily be accessed by the hacked mail script. I had to look at an account of a customer and he reached his disk space with 50mb web space used on his web space, so I started sniffing around in the control-panel and saw the main-mailbox used up 500mb space!! I didn't know what all the email messages were, it couldn't be all plain text images because you'll need ALOT of emails to reach 500mb, so there had to be spam mails with images/files too.

But this is not all what's lacking of security in Webspell, also the user-system and the script overall can be easily hacked with a mysql injection. The hack that seems the most popular on webspell is to hack the user-system thus knowing the admin log in and screwing around with the templates!

At the webspell team they made some changes to the code but they never fix the security leaks! At least not the big ones, all they focus on is to have more functions. Oh right.. the thing that is pretty nice in the new version is the security image on forms (Guestbook, comments etc). But this doesn't stop the mail-spam I told you earlier, which is MUCH bigger problem.

If you got a dodgy host you won't have problems with your host bugging you because they just don't know they are victims of spam! So if you get a good host, get someone to code a site for you or download a good CMS, something like joomla or phpnuke.

Author Bio:
is a popular columnist. likes to pen down articles about this area.
You can also reach this article by using: web site development, web design & development, website development tampa
 
 
 

Related Articles

 
Webspell Major Security Leaks
 
Software For Trucking Industry
 
Network Traffic Monitors
 
Google Offers Free Spreadsheet on the Web
 
Keyphrase Research and Keyphrase Selection Tools
 
5 Profitable Home Based Business Ideas
 
Principles of web Design: Content, Accessibility, Presentation.
 
Pop-Under Windows - The Latest Pop-Window Trend
 
HP Lovecraft: A Postcard Dated April 12, l927
 
Long Term Profits from Joint Ventures!
 
 
 

Related Links
(If you have a website related to this article, we would be happy to add it for free in this section.)

 
Consult for ecommerce web site design
Good ecommerce website design is vital to your online presence and success for your business. At RedAlkemi, we specialize in creating unique and functional websites for ecommerce. we work with clients throughout the country and around the world.
 
 
Home Page :> Privacy Policy :> ToS  
Copyright © 2008 www.articlecrossroad.com