4 ms·
Its not about PHP, any vulnerable software may be used for infection. PS You're safe if you have no server :)
by vmiroshnikov 12y ago
Its not about PHP, any vulnerable software may be used for infection.
PS You're safe if you have no server :)
- nitrogen 12y agoThe malware described in the article uses PHP.
- milkshakes 12y agothe php dropper discussed is the least interesting part of the article. it could be implemented in any language.
- shitlord 12y agoFurthermore, if your web server (or database server, or any other interet-facing service) is vulnerable, it won't matter which programming language you are using. Assume that all input is hostile.
- mintplant2 12y agoOnly as the dropper. Presumably the other parts of the malware (libworker.so, etc.) could be repurposed and coupled with a different infection system.
- nitrogen 12y agoGood crap, 4 downvotes for a factual statement with no hints of aggression or disdainfulness?
- girvo 12y agoI'm assuming the down votes are because you missed the point of your parent. The example uses a PHP script for uploading the payload, but that can be swapped out for nearly any language on a server. They all require an exploit to get the dropper on there anyway, so that's a barrier. PHP isn't the point here though, it's the interesting damage the exploit that gets pulled down by the dropper can achieve, without needing to use privilege escalation.