Random ramblings about web2py, python,
Zope and (sometimes) bit of Windows.
Home | web2py | Who am I? | Contact Me | Lenguaje: Espanol |   

Last 10
Older Posts
External Links

[Back to the Homepage]

Added Aug 01 2011 , Modified Aug 01 2011 - 02:37 AM
There's been some heat lately merely by several "researchers" from Russia and South Korea (one bona fide and the other plain extortion, I have the emails if you want them) about pyForum.org containing several "Vulnerabilities", the bad guy has even gone to sec lists.org, cvedetails.org, etc to publish his findings, etc, by no means I take all security related issues seriously, but these "security issues" would do no more than annoy a registered user with a password request change. Since email sending functionality is purposely off on the server, this issue becomes moot.

There was another, more serious security flaw that a good samaritan russian fellow developer found and he was courteously in pointing it out to me, which was patched immediately and the official download link was taken out as a result.

So, what will come out of all this? - A stronger pyForum.org :) none the less. I plan to release a "major" update of the application probably during August if time permits, the UI will most likely not change too much, with the exception of the hideous logo and logo's typeface, which will get a "pro" work done, and the "mobile" version, so desperately needed these days of smartphone use.

So there you have it, if you have any questions or comments, you can reach me here, or in the google groups on web2py, peace out.

c o m m e n t s    f o r
pyForum.org re-design

Add a Comment | Back to the Homepage

 

TechFuel.net | Web Standards xhtml 1.1 and css 2.1 | Rel 16