Professional Webmasters Community
Would you like to react to this message? Create an account in a few clicks or log in to continue.

A Multi-Perspective View of PHP Remote File Include Attacks

Go down

A Multi-Perspective View of PHP Remote File Include Attacks Empty A Multi-Perspective View of PHP Remote File Include Attacks

Post  andry Mon Dec 20, 2010 4:16 am

SANS Institute InfoSec Reading Room

If you look at the logs of just about any production web server, you are bound to find signs of a remote file include (RFI) attack. It is easy to disregard them as low hanging Internet broadscan noise, but attackers would not be scanning the Internet for vulnerable hosts if they were not also successfully exploiting them.
This paper describes the mechanics of a RFI attack by doing a code analysis and an attack walk through on a vulnerable application. Detecting an attack is discussed by writing sample IDS signatures an...

This paper will take a multi-perspective view of remote file include attacks,specifically those exploiting weaknesses in PHP web applications--as the scripting language has allowed a large number of vulnerabilities to be created. We will cover the mechanics of RFI attacks before detailing the perspective of both analysts and attackers.

Download PDF
andry
andry
Moderator
Moderator

Posts : 467
Join date : 2010-05-07

Back to top Go down

Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum