Re: [mod-security-users] xmlrpc.php
Brought to you by:
victorhora,
zimmerletw
|
From: <mi...@go...> - 2005-09-08 22:48:59
|
Yes. I have rules to just block the xmlrpc attacks. http://www.gotroot.com/modsecurity+rules -----Original Message----- From: Hugh Beaumont <hbe...@ya...> Subj: [mod-security-users] xmlrpc.php Date: Thu Sep 8, 2005 5:17 pm Size: 1K To: mod...@li... Has anyone came up with a good rule for blocking xmlprc.php (used by drupal and wordpress I believe among others). It has some exploits for it. I am trying to get a good ruleset to block the file but still allow access for users who have updated their file to a good/patched version. Any ideas? I'm curious if anyone else has put an effective block on it. ______________________________________________________ Click here to donate to the Hurricane Katrina relief effort. http://store.yahoo.com/redcross-donate3/ ------------------------------------------------------- SF.Net email is Sponsored by the Better Software Conference & EXPO September 19-22, 2005 * San Francisco, CA * Development Lifecycle Practices Agile & Plan-Driven Development * Managing Projects & Teams * Testing & QA Security * Process Improvement & Measurement * http://www.sqe.com/bsce5sf _______________________________________________ mod-security-users mailing list mod...@li... https://lists.sourceforge.net/lists/listinfo/mod-security-users |