phpBB Weekly #126: We Really Need to Find Some Better Titles
Audio clip: Adobe Flash Player (version 9 or above) is required to play this audio clip. Download the latest version here. You also need to have JavaScript enabled in your browser.
Download AAC Episode (31.1 MB) | Download MP3 Episode (60.5 MB)
Download Episode Chat Log
Episode Duration: 1:03:01
On This Episode: Douglas Bell (Fountain of Apples) and Micheal Cottingham (Techie-Micheal)
(Or maybe what we really need is an editor with a faster turnaround time. But I digress…)
David missed out on this episode of phpBB Weekly because he accidentally set his alarm clock for PM instead of AM. (We’ve all been there.) However, we’re joined once again by our old friend Micheal Cottingham, who has started a new video series called “Webapp Breakage” (and subtitled “I really need to find a better title”). In the video, he demonstrates how series XSS vulnerabilities (also known as HTML injection vulnerabilities) are by actually demonstrating in a test environment how an attacker could use XSS to take control of a victim’s computer. Yeah, it’s pretty scary.
Douglas and Micheal have a long discussion in this episode about the video and about the seriousness of XSS vulnerabilities, and Micheal explains some of the many potential problems that can result from being hacked through XSS. As part of the discussion, we spend some time discussing some safe browsing techniques that you can follow when you’re surfing the web to help keep you computer safe from sites that may be hacked via methods like this (and yes, Mac users, that goes for you too).
Other relevant links mentioned:
Injection Vulnerabilities Blog Post (from February)
NoScript Browser Plugin
Our Poll Question, “If you were to add a step to the MOD validation workflow, what would it be?” continues until Saturday. If you haven’t yet, go vote in the poll!
The MOD of the Week is Crazy Maths CAPTCHA Plugin by eviL<3 and the Style of the Week is static by spyka.
Be sure to join us live on Saturday for our exciting, spooky, and fun Halloween episode!






