Join us at IRC!
Understanding is the answer, hatred is the problem, and hackers are the slaves abused and destroyed in the process of peace online - Deshouleres
Thursday, May 24, 2012
Navigation
Members Online
Total Online: 30
Web Spiders: 14
Guests Online: 28
Members Online: 2

Registered Members: 70188
Newest Member: nuk3d
Latest Articles
View Thread

HellBound Hackers | Computer General | Webmasters Lounge

Author

Hey HBH need a good guide

Mb0742
Member



Posts: 189
Location:
Joined: 26.11.07
Rank:
Hacker Level 2
Posted on 13-11-11 13:06
Anybody got a decent tutorial on building a secure file upload page in php? (Can't do https). Namely preventing some dickhead uploading a 20 gb file etc.

Bit tough being a member on this site and setting out to do something like this following your typical online guides.

On a totally irrelevant point: is anybody else considering buying a plus membership just so they can see the site upgrade?


Mb

Edited by Mb0742 on 13-11-11 13:25
javascript:alert("hi")
Author

RE: Hey HBH need a good guide

Mb0742
Member



Posts: 189
Location:
Joined: 26.11.07
Rank:
Hacker Level 2
Posted on 14-11-11 02:04
thanks, that was my main concern, however what about limiting to files, null byte etc.?


Mb
javascript:alert("hi")
Author

RE: Hey HBH need a good guide

spyware
Member



Posts: 4190
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 14-11-11 17:30
MoshBat wrote:
Type of file??? Check the file name


No! Check the file header! PHP and Unix-like system have some built-in functions to do this. File uploads are tricky though, especially if you're trying to account for fringe cases and attacks.




"The chowner of property." - Zeph
“Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.”
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
http://bitsofspy.net
Guest
Username

Password

Remember Me


Bookmark This Page
Affiliates
Adverts

 

 

Links
By using, viewing or obtaining any information contained on this site, you agree to the disclaimer.

© HellBound Hackers 2008- 2009. Since 3rd December 2004.