Marcel Koßin's activity
From 01/08/2010 to 02/06/2010
02/06/2010
- 05:13 PM Glastopf Webinterface Bug #129: glasif.cfg location
- In Ticket #150 it is suggested, that there might be a problem, if the webserver is not configured to deny access to *.cfg files as well. IMHO it makes sense, to not put the config file elsewhere than the DocRoot. But it makes sense to make sure it...
- 05:02 PM Glastopf Webinterface Bug #149 (Closed): File INSTALL and directory install/ dowsn't work on Windows
- 05:00 PM Glastopf Webinterface Bug #150 (Closed): connect.php is not loaded automatically
- We already have a duplicate of this bug. Please use #129 to discuss on this topic. Furthermore please don't use connect.php. It is deprecated (its from the old version of glastopf-wi) and will be removed.
- 04:26 PM Glastopf Webinterface Revision 50: Added new installer path
- Added new installer path
- 04:15 PM Glastopf Webinterface Revision 49: Fixed Issue #149
- Fixed Issue #149
- 04:10 PM Glastopf Webinterface Bug #149: File INSTALL and directory install/ dowsn't work on Windows
- Windows doesn't allow this combination. We should move ../install to ../installer, or something like that...
- 12:23 PM Glastopf Webinterface Revision 48: no licensing information
- no licensing information
- 12:20 PM Glastopf Webinterface Feature #143 (Closed): Days without attacks
- ...but it shouldn't be a too bad ides to test it once more.
- 12:19 PM Glastopf Webinterface Revision 47: Fixed Issue #143
- Fixed Issue #143
- 10:37 AM Glastopf Webinterface Bug #147 (Feedback): search_log.php table width
- 10:36 AM Glastopf Webinterface Bug #147: search_log.php table width
- Hi Lukas, I attached an image from the current implementation on Firefox. If I understood correctly, the request String runs out of the table instead of being wrapped? This might be an issue related to a specific browser. Can you add informatio...
- 10:22 AM Glastopf Webinterface Bug #145 (Closed): users.php?func=users&edit=*
- 10:21 AM Glastopf Webinterface Bug #146 (Closed): unable to add user
- 10:20 AM Glastopf Webinterface Revision 46: Fixed Issue #146
- Fixed Issue #146
- 09:45 AM Glastopf Webinterface Bug #148 (Closed): Changing password doesn't work
- 09:44 AM Glastopf Webinterface Revision 45: Fixed Issue #148
- Fixed Issue #148
- 09:15 AM Glastopf Webinterface Bug #148: Changing password doesn't work
- Seems to be a whitleist issue.
01/24/2010
- 04:17 PM Glastopf Webinterface Bug #129 (Feedback): glasif.cfg location
- 04:16 PM Glastopf Webinterface Feature #142: Show number of unique IP addresses on the victims page
- It is possible tha a RFI on a host is used from different attacking ip addresses. At the moment we only show how often the vitims URL was used, but not by how many different IP addresses.
- 04:07 PM Glastopf Webinterface Feature #141: Attach notes functionality to the Logfiles
- While analyzing requests in the glasif Logfile it might be interesting to attach notes to them.
01/23/2010
- 07:48 PM Glastopf Webinterface Wiki edit: Version_unstable (#8)
- 07:38 PM Glastopf Webinterface Wiki edit: Prerequisites (#3)
- 07:18 PM Glastopf Webinterface Revision 44: removed whois query from victims page
- removed whois query from victims page
- 07:16 PM Glastopf Webinterface Bug #140 (Closed): Log Searching is not working
- 07:15 PM Glastopf Webinterface Revision 43: Fixed Issue #140
- Fixed Issue #140
- 07:01 PM Glastopf Webinterface Bug #140: Log Searching is not working
- Need to adapt whitelist filter for the log_search interface
- 06:55 PM Glastopf Webinterface Bug #124 (Closed): Trap MySQL error messages
- Due to the whielisting of parameters we are no longer throwing sensitive MySQL errors. Nevertheless for the furture we should perhaps deactivate logging to the screen completely.
- 06:30 PM Glastopf Webinterface Bug #139 (Closed): Last 5 remote files
- 06:29 PM Glastopf Webinterface Revision 42: Fixed Issue #139
- Fixed Issue #139
- 06:13 PM Glastopf Webinterface Bug #138 (Closed): Bars to large on dashboard
- Lukas Rist wrote: > The bars from the two first graphs on the dashboard are a bit too large (see picture). The size of the bars is dependant on the expected array size. If there is too less data available within a fresh database this happens. ...
- 06:09 PM Glastopf Webinterface Revision 41: Fixed Issue #138
- Fixed Issue #138
- 04:29 PM Glastopf Webinterface Bug #139: Last 5 remote files
- > The fileurl column gets filled by an optional plug-in. I think it would be better if you use for example req and split it on the first "=". Or you have to add the fileurl plug-in to the prerequisites. This Feature as well as the Feature Raw...
- 04:15 PM Glastopf Webinterface Bug #129: glasif.cfg location
- I definitely understand why it shouldn't be located within the document root and from a security point of view I agree. But on the other hand this isn't as easy as it sounds :-( First of all the installer writes the file itself. We have no guar...
- 04:06 PM Glastopf Webinterface Feature #120: Use code viewer for files gathered by the glastopf
- Richard Mueller wrote: > May the php-function highlight_string is enough. Smarty allready have an string modifier |highlight I chose GeSHi because of its vast support of programming languages. While it is true, that ATM the glasif only parse...
01/09/2010
- 04:30 PM Glastopf Webinterface Bug #134 (Closed): RFI code viewer is not working
- 04:29 PM Glastopf Webinterface Revision 40: Fixed Issue #134
- Fixed Issue #134
- 04:28 PM Glastopf Webinterface Feature #137: Provide caching for already parsed RFI
- ATM we try to download and parse a RFI every time the sourcecode viewer is fired. We need caching for already downloaded and parsed RFI. This means: * Safe the HTML code of parsed and highlighted code securley within the database * Add another...
- 04:00 PM Glastopf Webinterface Feature #132 (Closed): Setup pages footer
- Indeed. New header and footer templates weren't included
- 03:59 PM Glastopf Webinterface Revision 39: Fixed Issue #132
- Fixed Issue #132
- 03:48 PM Glastopf Webinterface Bug #133 (Closed): Chartcreation is not working
- 03:48 PM Glastopf Webinterface Revision 38: Fixed Issue #133
- Fixed Issue #133
- 03:40 PM Glastopf Webinterface Bug #135 (Closed): PHPwhois is not working
- 03:40 PM Glastopf Webinterface Revision 37: Fixed Issue #135
- Fixed Issue #135
- 03:34 PM Glastopf Webinterface Bug #136 (Closed): display.php is not working correctly
- 03:33 PM Glastopf Webinterface Revision 36: Fixes Issue #136
- Fixes Issue #136
- 02:02 PM Glastopf Webinterface Bug #136: display.php is not working correctly
- weems to be a whitelist problem.
- 01:59 PM Glastopf Webinterface Bug #135: PHPwhois is not working
- Since we implemented whitelist filtering phpwhois is not working any more.
- 01:58 PM Glastopf Webinterface Bug #134: RFI code viewer is not working
- Seems to be a problem with whitelist filtering as well. Instead of submitting the url which should be loaded to showrfi.php it might be netter to submit the id of the request.
- 01:55 PM Glastopf Webinterface Bug #133: Chartcreation is not working
- seems to be a problem with the whitelist filter.
Also available in: Atom