• Home
  • Index
  • Search
  • Download
  • Server Rules
  • House Roleplay Laws
  • Player Utilities
  • Player Help
  • Forum Utilities
  • Returning Player?
  • Toggle Sidebar
Interactive Nav-Map
Interactive DarkMap
Tutorials
New Wiki
ID reference
Restart reference
Players Online
Player Activity
Faction Activity
Player Base Status
Discord Help Channel
DarkStat
Server public configs
POB Administration
Missing Powerplant
Stuck in Connecticut
Account Banned
Lost Ship/Account
POB Restoration
Disconnected
Member List
Forum Stats
Show Team
View New Posts
View Today's Posts
Calendar
Help
Archive Mode




Hi there Guest,  
Existing user?   Sign in    Create account
Login
Username:
Password: Lost Password?
 
  Discovery Gaming Community The Community Real Life Discussion
« Previous 1 … 32 33 34 35 36 … 246 Next »
[Rant] Forum safety in general.

Server Time (24h)

Players Online

Active Events - Scoreboard

Latest activity

[Rant] Forum safety in general.
Offline Corile
05-13-2016, 12:01 PM,
#1
C::iemka pl
Posts: 3,248
Threads: 267
Joined: Apr 2014

So after the recent incident with XSSTC-vulnerable bbcode on the forums (this, which is now fortunately fixed thanks to @Alley, so I can talk about it) I really have to ask what precautions are done in the way of forum information security.

I have been here for just over two years now and on two separate occasions I've witnessed flaws that could have brought the forums down entirely and the only reason they didn't is because in both cases there was a responsible person (the same in both instances) on the hotline that could fix them.

The first one was the infamous forum rollback, during which there even were questions flying around about a possible restart of the entire Discovery if no backups were found (and as far as I understand they were found only because Alley had some laying around by chance), the second one was the aforementioned XSS vulnerability which was open to attack for about two months (and if you don't believe me, have a read: this and this should give you an idea).

So now, we have people in the community that are versed with web development ( @Alley is god, @Error coded the navmap, yours truly has administrated two long-lasting MyBB boards for a while) so why is stuff done even without going through those people? Some of this is potentially destructive if you don't know what you're doing.




Reflections on the Revolution in Gallia
Custodi // High City of Heraklion // The Cult of Archangels
Log Filter // Post Creator // Manhattan
  Reply  


Messages In This Thread
[Rant] Forum safety in general. - by Corile - 05-13-2016, 12:01 PM
RE: [Rant] Forum safety in general. - by Alley - 05-13-2016, 12:52 PM
RE: [Rant] Forum safety in general. - by Error - 05-13-2016, 01:10 PM
RE: [Rant] Forum safety in general. - by DragonLancer - 05-13-2016, 01:55 PM
RE: [Rant] Forum safety in general. - by Error - 05-13-2016, 02:01 PM
RE: [Rant] Forum safety in general. - by Corile - 05-13-2016, 01:58 PM
RE: [Rant] Forum safety in general. - by Corile - 05-13-2016, 03:12 PM
RE: [Rant] Forum safety in general. - by Error - 05-13-2016, 05:33 PM
RE: [Rant] Forum safety in general. - by DragonLancer - 05-13-2016, 05:43 PM
RE: [Rant] Forum safety in general. - by Corile - 05-13-2016, 07:55 PM

  • View a Printable Version
  • Subscribe to this thread


Users browsing this thread:
1 Guest(s)



Powered By MyBB, © 2002-2026 MyBB Group. Theme © 2014 iAndrew & DiscoveryGC
  • Contact Us
  •  Lite mode
Linear Mode
Threaded Mode