<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: phpbb and security</title>
	<atom:link href="http://www.phpied.com/phpbb-and-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.phpied.com/phpbb-and-security/</link>
	<description>Stoyan&#039;s blog about &#60;a href=&#34;/category/xhtml&#34; class=&#34;tag-minor&#34;&#62;(x)html(5)&#60;/a&#62;, &#60;a href=&#34;/category/ajax&#34; class=&#34;tag-major&#34;&#62;ajax&#60;/a&#62;, &#60;a href=&#34;/category/bookmarklets&#34; class=&#34;tag-major&#34;&#62;bookmarklets&#60;/a&#62;, &#60;a href=&#34;/category/browsers&#34; class=&#34;tag-minor&#34;&#62;browsers&#60;/a&#62;, &#60;a href=&#34;/category/css&#34; class=&#34;tag-normal&#34;&#62;css&#60;/a&#62;, &#60;a href=&#34;/category/firebug&#34; class=&#34;tag-minor&#34;&#62;firebug&#60;/a&#62;, &#60;a href=&#34;/category/javascript&#34; class=&#34;tag-numero-uno&#34;&#62;javascript&#60;/a&#62;, &#60;a href=&#34;/category/json&#34; class=&#34;tag-normal&#34;&#62;json&#60;/a&#62;, &#60;a href=&#34;/category/mdb2&#34; class=&#34;tag-minor&#34;&#62;mdb2&#60;/a&#62;, &#60;a href=&#34;/category/mysql&#34; class=&#34;tag-normal&#34;&#62;mysql&#60;/a&#62;, &#60;a href=&#34;/category/pear&#34; class=&#34;tag-numero-uno&#34;&#62;pear&#60;/a&#62;, &#60;a href=&#34;/category/performance&#34; class=&#34;tag-major&#34;&#62;performance&#60;/a&#62;, &#60;a href=&#34;/category/php&#34; class=&#34;tag-numero-uno&#34;&#62;php&#60;/a&#62;, &#60;a href=&#34;/category/phpbb&#34; class=&#34;tag-major&#34;&#62;phpbb&#60;/a&#62;, &#60;a href=&#34;/category/tools&#34; class=&#34;tag-normal&#34;&#62;tools&#60;/a&#62;, &#60;a href=&#34;/category/yslow&#34; class=&#34;tag-minor&#34;&#62;yslow&#60;/a&#62;, &#60;a href=&#34;/category/yui&#34; class=&#34;tag-normal&#34;&#62;yui&#60;/a&#62;, &#60;a href=&#34;/category/writing&#34; class=&#34;tag-minor&#34;&#62;writing&#60;/a&#62;, &#60;a href=&#34;/category/music&#34; class=&#34;tag-major&#34;&#62;music&#60;/a&#62;,... &#60;a href=&#34;/category/life-and-everything&#34; class=&#34;tag-normal&#34;&#62;life and everything&#60;/a&#62;.</description>
	<lastBuildDate>Sat, 11 Feb 2012 14:07:43 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
	<item>
		<title>By: valkevark</title>
		<link>http://www.phpied.com/phpbb-and-security/#comment-80115</link>
		<dc:creator>valkevark</dc:creator>
		<pubDate>Wed, 23 Nov 2011 19:18:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.phpied.com/phpbb-and-security/#comment-80115</guid>
		<description>ya</description>
		<content:encoded><![CDATA[<p>ya</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: humanetigor</title>
		<link>http://www.phpied.com/phpbb-and-security/#comment-77748</link>
		<dc:creator>humanetigor</dc:creator>
		<pubDate>Wed, 18 May 2011 13:10:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.phpied.com/phpbb-and-security/#comment-77748</guid>
		<description>Road to the Truth can be found at the following address: truenewworld.com          
(attention, it is not the ad of the site - it is the ad of the Truth).</description>
		<content:encoded><![CDATA[<p>Road to the Truth can be found at the following address: truenewworld.com<br />
(attention, it is not the ad of the site &#8211; it is the ad of the Truth).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: LorencoLeF</title>
		<link>http://www.phpied.com/phpbb-and-security/#comment-75168</link>
		<dc:creator>LorencoLeF</dc:creator>
		<pubDate>Sat, 11 Dec 2010 21:26:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.phpied.com/phpbb-and-security/#comment-75168</guid>
		<description>Dont touch WIKILEAKS, faked DEMOCRACY!!! 
Hope for answer</description>
		<content:encoded><![CDATA[<p>Dont touch WIKILEAKS, faked DEMOCRACY!!!<br />
Hope for answer</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: terry chay</title>
		<link>http://www.phpied.com/phpbb-and-security/#comment-8813</link>
		<dc:creator>terry chay</dc:creator>
		<pubDate>Fri, 01 Sep 2006 03:08:49 +0000</pubDate>
		<guid isPermaLink="false">http://www.phpied.com/phpbb-and-security/#comment-8813</guid>
		<description>All good points. Some differences.

1) Actually I was invoking Meltcalf’s Law as a defense sarcastically. I hope that is clear.

2) PEAR’s XML_RPC exploit just shows that PEAR has the same deficiencies as any other project. I’m quick to make fun of it too. BTW, XML_RPC was just a straight port of another XMLRPC library to fit it into PEAR, I don’t think a code audit was done. After that, Stig had nothing to do with it and I distinctly remember it and the SOAP library languishing forever.

3) My issue with phpbb was how they handled what was clearly a regression on their end. The fact that it has “PHP” in their name causes a confusion in enterprises between the applications build on the language and the language itself. Note, I’m not advocating that phpbb change it’s name…Pandora’s box is open. Deal.

4) As for the blog posting of omissions in the Security Guide from the PHP Security Consortium, I remember it well and thinking that it should be addressed if true. In fact, my point in general is that the community should take security more seriously and act quicker on problems because the language is going to encourage sloppy coding.

However, Stefan Esser has his own agenda, and he’s a bitter young man at times. He’d get more bees with honey than with his abrasive manner.</description>
		<content:encoded><![CDATA[<p>All good points. Some differences.</p>
<p>1) Actually I was invoking Meltcalf’s Law as a defense sarcastically. I hope that is clear.</p>
<p>2) PEAR’s XML_RPC exploit just shows that PEAR has the same deficiencies as any other project. I’m quick to make fun of it too. BTW, XML_RPC was just a straight port of another XMLRPC library to fit it into PEAR, I don’t think a code audit was done. After that, Stig had nothing to do with it and I distinctly remember it and the SOAP library languishing forever.</p>
<p>3) My issue with phpbb was how they handled what was clearly a regression on their end. The fact that it has “PHP” in their name causes a confusion in enterprises between the applications build on the language and the language itself. Note, I’m not advocating that phpbb change it’s name…Pandora’s box is open. Deal.</p>
<p>4) As for the blog posting of omissions in the Security Guide from the PHP Security Consortium, I remember it well and thinking that it should be addressed if true. In fact, my point in general is that the community should take security more seriously and act quicker on problems because the language is going to encourage sloppy coding.</p>
<p>However, Stefan Esser has his own agenda, and he’s a bitter young man at times. He’d get more bees with honey than with his abrasive manner.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

