Re: free tool to encrypt php?



Gary L. Burnore wrote:
On Mon, 22 Oct 2007 01:49:44 +0100, The Natural Philosopher <a@xxx>
wrote:

Jerry Stuckle wrote:
The Natural Philosopher wrote:
Jerry Stuckle wrote:
The Natural Philosopher wrote:
Jerry Stuckle wrote:

Security is not about prevention, just like there is no way to prevent someone from breaking into your home. There is no such thing. What it is is about identifying undesired ways of accessing your files and limiting the effect of exposure. It's just like locking your valuables in a bank vault to limit your exposure if someone breaks into your house.

It may go no further than simply living quietly, so that no one knows or cares where you live, and never looking like you have anything worth stealing.


Nope. Security by obscurity is no security at all.

Oh, indeed it is.

Not at all. It is false security.

It works.
Call it what you like, it works.

That's why passwords should not be on a dictionary search. Be obscure.

That's prevention. Obscurity is hiding and hoping no one notices you
don't have a password.

No is not prevention . All passwords can be cracked.

The secret is to make the password secret. AND obscure, so that scanning every passwrd in the dictionary doesn't result in a match.

No different from scanning every port in a machine, or every machine on the internet.

And the robots do not do this anyway: looking at muy firewall reveals that a very few ports are occasionally probed. No one has done a systematic scan on it. Is been up with a public website for over a year now.


.



Relevant Pages

  • [TOOL] WeBrute - Directory Brute Forcer
    ... Get your security news from a reliable source. ... # Scan 127.0.0.1 port 80, Use wordlist and admin as start path ... # Scan 127.0.0.1 port 80, Use wordlist, and traverse scanning and verbose ... sub catchInterrupt { ...
    (Securiteam)
  • Re: Need urgent help regarding security
    ... Peter Jeremy wrote: ... |>>traffic from a higher public port down to port 22 on the server, ... don't rely on it as your only security. ... Someone doing that sort of targeted scanning ...
    (FreeBSD-Security)
  • Re: Network abuse report
    ... that's why you should try to improve your security every ... And don't think they are specificly scanning your network ... Whether you like it or not, port scanning is not ilegal. ...
    (Security-Basics)
  • comp.security.unix and comp.security.misc frequently asked questions
    ... Can I turn off identd? ... to learn about computer security? ... Niles and Jyrki Havia for tripwire bug details as posted to the newsgroup. ... connecting from port 20546 on your machine to port 25 on 205.238.143.33. ...
    (comp.security.unix)
  • comp.security.unix and comp.security.misc frequently asked questions
    ... Can I turn off identd? ... to learn about computer security? ... Niles and Jyrki Havia for tripwire bug details as posted to the newsgroup. ... connecting from port 20546 on your machine to port 25 on 205.238.143.33. ...
    (comp.security.unix)