View Single Post
Old 12-08-2003, 06:10 PM  
Krome
Confirmed User
 
Join Date: Jul 2001
Location: London - UK
Posts: 2,851
Quote:
Originally posted by pantymaniac
Best Software is you ..

Very Simple : dont make you site bruteforcable !


First Change your members are name

xxx.com/members

xxx.com/whatever/blala/yourin.htm

Because someone can brute force somewhere he knows

like

xxx.com/members/blabla.jpg (this always pop a login pass window)



After ...

Put Form based login with random image displayer !


Member must enter this randomly displayed numbers - letters

+

user pass and he enter his password


Make your 403 - 401 with .htaccess redirect to dialer its done !
That is a very cool idea...
Krome is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote