Bugtraq mailing list archives

Re: Re: Back door trojan in acajoom-3.2.6 for joomla


From: Jeffrey Walton <noloader () gmail com>
Date: Thu, 23 Jul 2009 16:02:30 -0400

... or the developers were stupid enough to develop with old code.
Stupid may be a bit harsh. I find 'Software Security' is also a frame
of mind that *must* be backed by education. Perhaps the developers
lack the knowledge they need to model the threats and incorporate a
secure architecture.

Jeff

- Hide quoted text -

On 7/23/09, chris.boergermann () wawerko de <chris.boergermann () wawerko de> wrote:
An early release of 4.0.0 has the same problem!

So Acajoom has a general security issue or the developers
were stupid enough to develop with old code.



Current thread: