• For our 10th anniversary on May 9th, 2024, we will be giving out 15 GB of free, off-shore, DMCA-resistant file storage per user, and very possibly, public video hosting! For more details, check a look at our roadmap here.

    Welcome to the edge of the civilized internet! All our official content can be found here. If you have any questions, try our FAQ here or see our video on why this site exists at all!

Meanwhile At The Escapist...

Guilion

♪El mariachi fennec quiere bailar♪
Messages
57
Arnox said:
Guilion said:
Here is an unpopular opinion on Wordpress from an information security auditor: Fucking don't.

Wordpress is an extremely popular platform for lazy people and organizations that don't want to spend their cash or their time in building their own customized platform while adhering to strict security standards, and as such it's ground zero for trying to dig up exploits and hack multiple websites via botnets at once in a single day.

But hey, surely the people over at the escapist know this and they are going to take the proper defense mechanisms in order to avoid having all of their users databases exposed. Am I right?
Out of curiosity, how would you say SMF's security is?
SMF? Simple Machines Forum?

Honestly it's a farily unpopular platform and as a result there is very little to concern yourself about.

As long as a site running SMF is updated constantly, the usual PHP risks and known vulnerabilities that apply pretty much everywhere have been addressed and the site is protected against MitM attacks via TLS you have very little to worry about as long as your hosting provider has appropriate perimeter security.
 
Top