Entry No: 64
Sorry, not nearly as promising as the title, this article is about another hack attempt on me, this one aimed at wthax.org.
Thanks to an extremely poorly written (but pretty) image hosting script, wthax.org turned out to be susceptible to script execution.
Fortunately for me I discovered it before, it seems, any damage was done, and I've patched the code myself accordingly.
This is a very real threat though for anyone who uses the Mihalism image uploading software.
I've spend the guts of two hours poring through the code, adding and removing bits to make it a hell of a lot more secure than it was.
Heh, I'll either release it here as a culted-up version of Mihalism, or just give the code to Mihalism after I'm done.