Marcel Koßin's activity

From 01/08/2010 to 02/06/2010

02/06/2010

05:13 PM Glastopf Webinterface Bug #129: glasif.cfg location
In Ticket #150 it is suggested, that there might be a problem, if the webserver is not configured to deny access to *.cfg files as well. IMHO it makes sense, to not put the config file elsewhere than the DocRoot. But it makes sense to make sure it... Marcel Koßin
05:02 PM Glastopf Webinterface Bug #149 (Closed): File INSTALL and directory install/ dowsn't work on Windows
Marcel Koßin
05:00 PM Glastopf Webinterface Bug #150 (Closed): connect.php is not loaded automatically
We already have a duplicate of this bug. Please use #129 to discuss on this topic. Furthermore please don't use connect.php. It is deprecated (its from the old version of glastopf-wi) and will be removed. Marcel Koßin
04:26 PM Glastopf Webinterface Revision 50: Added new installer path
Added new installer path Marcel Koßin
04:15 PM Glastopf Webinterface Revision 49: Fixed Issue #149
Fixed Issue #149 Marcel Koßin
04:10 PM Glastopf Webinterface Bug #149: File INSTALL and directory install/ dowsn't work on Windows
Windows doesn't allow this combination. We should move ../install to ../installer, or something like that... Marcel Koßin
12:23 PM Glastopf Webinterface Revision 48: no licensing information
no licensing information Marcel Koßin
12:20 PM Glastopf Webinterface Feature #143 (Closed): Days without attacks
...but it shouldn't be a too bad ides to test it once more. Marcel Koßin
12:19 PM Glastopf Webinterface Revision 47: Fixed Issue #143
Fixed Issue #143 Marcel Koßin
10:37 AM Glastopf Webinterface Bug #147 (Feedback): search_log.php table width
Marcel Koßin
10:36 AM Glastopf Webinterface Bug #147: search_log.php table width
Hi Lukas, I attached an image from the current implementation on Firefox. If I understood correctly, the request String runs out of the table instead of being wrapped? This might be an issue related to a specific browser. Can you add informatio... Marcel Koßin
10:22 AM Glastopf Webinterface Bug #145 (Closed): users.php?func=users&edit=*
Marcel Koßin
10:21 AM Glastopf Webinterface Bug #146 (Closed): unable to add user
Marcel Koßin
10:20 AM Glastopf Webinterface Revision 46: Fixed Issue #146
Fixed Issue #146 Marcel Koßin
09:45 AM Glastopf Webinterface Bug #148 (Closed): Changing password doesn't work
Marcel Koßin
09:44 AM Glastopf Webinterface Revision 45: Fixed Issue #148
Fixed Issue #148 Marcel Koßin
09:15 AM Glastopf Webinterface Bug #148: Changing password doesn't work
Seems to be a whitleist issue. Marcel Koßin

01/24/2010

04:17 PM Glastopf Webinterface Bug #129 (Feedback): glasif.cfg location
Marcel Koßin
04:16 PM Glastopf Webinterface Feature #142: Show number of unique IP addresses on the victims page
It is possible tha a RFI on a host is used from different attacking ip addresses. At the moment we only show how often the vitims URL was used, but not by how many different IP addresses. Marcel Koßin
04:07 PM Glastopf Webinterface Feature #141: Attach notes functionality to the Logfiles
While analyzing requests in the glasif Logfile it might be interesting to attach notes to them. Marcel Koßin

01/23/2010

07:48 PM Glastopf Webinterface Wiki edit: Version_unstable (#8)
Marcel Koßin
07:38 PM Glastopf Webinterface Wiki edit: Prerequisites (#3)
Marcel Koßin
07:18 PM Glastopf Webinterface Revision 44: removed whois query from victims page
removed whois query from victims page Marcel Koßin
07:16 PM Glastopf Webinterface Bug #140 (Closed): Log Searching is not working
Marcel Koßin
07:15 PM Glastopf Webinterface Revision 43: Fixed Issue #140
Fixed Issue #140 Marcel Koßin
07:01 PM Glastopf Webinterface Bug #140: Log Searching is not working
Need to adapt whitelist filter for the log_search interface Marcel Koßin
06:55 PM Glastopf Webinterface Bug #124 (Closed): Trap MySQL error messages
Due to the whielisting of parameters we are no longer throwing sensitive MySQL errors. Nevertheless for the furture we should perhaps deactivate logging to the screen completely. Marcel Koßin
06:30 PM Glastopf Webinterface Bug #139 (Closed): Last 5 remote files
Marcel Koßin
06:29 PM Glastopf Webinterface Revision 42: Fixed Issue #139
Fixed Issue #139 Marcel Koßin
06:13 PM Glastopf Webinterface Bug #138 (Closed): Bars to large on dashboard
Lukas Rist wrote: > The bars from the two first graphs on the dashboard are a bit too large (see picture). The size of the bars is dependant on the expected array size. If there is too less data available within a fresh database this happens. ... Marcel Koßin
06:09 PM Glastopf Webinterface Revision 41: Fixed Issue #138
Fixed Issue #138 Marcel Koßin
04:29 PM Glastopf Webinterface Bug #139: Last 5 remote files
> The fileurl column gets filled by an optional plug-in. I think it would be better if you use for example req and split it on the first "=". Or you have to add the fileurl plug-in to the prerequisites. This Feature as well as the Feature Raw... Marcel Koßin
04:15 PM Glastopf Webinterface Bug #129: glasif.cfg location
I definitely understand why it shouldn't be located within the document root and from a security point of view I agree. But on the other hand this isn't as easy as it sounds :-( First of all the installer writes the file itself. We have no guar... Marcel Koßin
04:06 PM Glastopf Webinterface Feature #120: Use code viewer for files gathered by the glastopf
Richard Mueller wrote: > May the php-function highlight_string is enough. Smarty allready have an string modifier |highlight I chose GeSHi because of its vast support of programming languages. While it is true, that ATM the glasif only parse... Marcel Koßin

01/09/2010

04:30 PM Glastopf Webinterface Bug #134 (Closed): RFI code viewer is not working
Marcel Koßin
04:29 PM Glastopf Webinterface Revision 40: Fixed Issue #134
Fixed Issue #134 Marcel Koßin
04:28 PM Glastopf Webinterface Feature #137: Provide caching for already parsed RFI
ATM we try to download and parse a RFI every time the sourcecode viewer is fired. We need caching for already downloaded and parsed RFI. This means: * Safe the HTML code of parsed and highlighted code securley within the database * Add another... Marcel Koßin
04:00 PM Glastopf Webinterface Feature #132 (Closed): Setup pages footer
Indeed. New header and footer templates weren't included Marcel Koßin
03:59 PM Glastopf Webinterface Revision 39: Fixed Issue #132
Fixed Issue #132 Marcel Koßin
03:48 PM Glastopf Webinterface Bug #133 (Closed): Chartcreation is not working
Marcel Koßin
03:48 PM Glastopf Webinterface Revision 38: Fixed Issue #133
Fixed Issue #133 Marcel Koßin
03:40 PM Glastopf Webinterface Bug #135 (Closed): PHPwhois is not working
Marcel Koßin
03:40 PM Glastopf Webinterface Revision 37: Fixed Issue #135
Fixed Issue #135 Marcel Koßin
03:34 PM Glastopf Webinterface Bug #136 (Closed): display.php is not working correctly
Marcel Koßin
03:33 PM Glastopf Webinterface Revision 36: Fixes Issue #136
Fixes Issue #136 Marcel Koßin
02:02 PM Glastopf Webinterface Bug #136: display.php is not working correctly
weems to be a whitelist problem. Marcel Koßin
01:59 PM Glastopf Webinterface Bug #135: PHPwhois is not working
Since we implemented whitelist filtering phpwhois is not working any more. Marcel Koßin
01:58 PM Glastopf Webinterface Bug #134: RFI code viewer is not working
Seems to be a problem with whitelist filtering as well. Instead of submitting the url which should be loaded to showrfi.php it might be netter to submit the id of the request. Marcel Koßin
01:55 PM Glastopf Webinterface Bug #133: Chartcreation is not working
seems to be a problem with the whitelist filter. Marcel Koßin
« Previous
Next »
 

Also available in: Atom