Just finished this. I have a question

Xmas '08

Fireshard
10 years ago

0

Is this possible in real life? I mean, I’ve never heard or seen the last step in this level up to now. I mean it’s pretty obvious that it is not safe! Do people really do this?

And if yes, why? What are the advantages?

9replies
4voices
276views
[IAmDevil]
10 years ago | edited 10 years ago

0

Hmm i think this level is kind of close to reality but lacks some key factors like security issues , the web page lacks cosmetics !! But i don’t think that there are any sites like Real Xmas ?.
But i saw some bank sites with very poor security measures ! There are a lot of amatures on the WWW . ??


0

IAmDevil : fact !!!

Cyan Wind [freewind1012]
10 years ago | edited 10 years ago

0

@Fireshard: There’re some CMSs allowing regular users to edit files (scripts, stylesheets…) via web-based editor. So theorically, this level does exist in real life.


0

freewind1012 : May I know why are they kept this carelessly ???

Cyan Wind [freewind1012]
10 years ago | edited 10 years ago

1

It’s a trade-off between security and usability. Say, if you were a doctor and had a blog, would it be more convenient to edit CSS stylesheet via web-based editor, without knowing advanced knowledge (FTP / SSH, Apache…)?


0

freewind1012 : got it man !

Fireshard
10 years ago | edited 10 years ago

0

@freewind1012 But using FTP to upload a file on the server is more basic than knowing how to edit your own files… Total Commander under Windows is basically just inserting a user and pass and then using the FTP as if it was part of your own computer.

It’s a little scary to realize how easily a site can be defaced…

Thanks for the replies, guys!

Cyan Wind [freewind1012]
10 years ago | edited 10 years ago

0

@Fireshard: Yeah, it’s easy for us to upload a file via FTP because we know where and how to do that. But I believe there are a lot of people who don’t want to mess up another files.

An example is WordPress. If offers free hosting service for millions of bloggers. Each blogger after buying Custom Design pack can freely edit their theme (stylesheets, scripts…) via web-based editor. And no one among them has privilege to upload a single file to WordPress servers.

Fireshard
10 years ago

0

Hmm…ok. Thanks for all the replies. I’m gonna close this now!

Discussion thread has been locked. You can no longer add new posts.
1 of 10

This site only uses cookies that are essential for the functionality of this website. Cookies are not used for tracking or marketing purposes.

By using our site, you acknowledge that you have read and understand our Privacy Policy, and Terms of Service.

Dismiss