luluhoste Posted July 21, 2023 Share Posted July 21, 2023 Salut Qui connais : UIISC https://uiisc.org/ Cela vous semble bien ? ---trad google--- Hi Who knows: UIISC https://uiisc.org/ Sounds good to you? Quote Link to comment Share on other sites More sharing options...
TinkerMan Posted July 21, 2023 Share Posted July 21, 2023 The client area looks suspiciously like MOFHY-Lite, an outdated and insecure client area that pre-dated Xera. If you don’t want to build your own solution, Xera/GenerateArea is going to be your only tested and somewhat secure option. Quote Link to comment Share on other sites More sharing options...
luluhoste Posted July 21, 2023 Author Share Posted July 21, 2023 ok 🙂 Quote Link to comment Share on other sites More sharing options...
Anyx Posted July 21, 2023 Share Posted July 21, 2023 2 hours ago, TinkerMan said: The client area looks suspiciously like MOFHY-Lite, an outdated and insecure client area that pre-dated Xera. If you don’t want to build your own solution, Xera/GenerateArea is going to be your only tested and somewhat secure option. UUISC predated MOFHY-Lite if I'm not mistaken... though I wasn't around the MOFHY era so I can't tell if the client area on http://demo.uiisc.com/ is similar to it. Quote Link to comment Share on other sites More sharing options...
SpookyKipper Posted July 21, 2023 Share Posted July 21, 2023 The registration looks like a standard MOFH Form The login is just to the vPanel I don't see how it's a "ClientArea" Quote Link to comment Share on other sites More sharing options...
luluhoste Posted July 22, 2023 Author Share Posted July 22, 2023 Dans la demo : http://demo.uiisc.com/clientarea/login.php cela ressemble a celui de https://app.tinkerhost.net/login?ref=home&type=click&placement=main-nav ---trad google--- In the demo : http://demo.uiisc.com/clientarea/login.php it looks like https://app.tinkerhost.net/login?ref=home&type=click&placement=main-nav Quote Link to comment Share on other sites More sharing options...
TinkerMan Posted July 22, 2023 Share Posted July 22, 2023 They both are just login forums? The internals are very different though. Quote Link to comment Share on other sites More sharing options...
SpookyKipper Posted July 23, 2023 Share Posted July 23, 2023 12 hours ago, luluhoste said: Dans la demo : http://demo.uiisc.com/clientarea/login.php cela ressemble a celui de https://app.tinkerhost.net/login?ref=home&type=click&placement=main-nav ---trad google--- In the demo : http://demo.uiisc.com/clientarea/login.php it looks like https://app.tinkerhost.net/login?ref=home&type=click&placement=main-nav⁸ that looks like the MOFHY login screen more 🤣 Quote Link to comment Share on other sites More sharing options...
luluhoste Posted July 24, 2023 Author Share Posted July 24, 2023 Alors pourquoi la zone client de @TinkerMan ressemble autant a MOFHY ? ---trad google--- So why does @TinkerMan's client area look so much like MOFHY? Quote Link to comment Share on other sites More sharing options...
TinkerMan Posted July 24, 2023 Share Posted July 24, 2023 Because my frontend is modified MOFHY. I kinda suck at frontend development, so I just downloaded MOFHY, kept the frontend with some modifications, and completely re-did the backend. This last update I did that had a bunch of frontend updates also included a ton more backend updates to make things work faster and all that. Basically, TH is a modified MOFHY frontend, with a totally new backend. Quote Link to comment Share on other sites More sharing options...
luluhoste Posted July 24, 2023 Author Share Posted July 24, 2023 Et MOFHY est il sécuriser tel quel, ou il faut renforcer sa sécurité ? ---trad google--- And is MOFHY secure as it is, or does it need to be strengthened ? Quote Link to comment Share on other sites More sharing options...
TinkerMan Posted July 24, 2023 Share Posted July 24, 2023 Everything can have its security strengthened, there is always something that can be done. Quote Link to comment Share on other sites More sharing options...
luluhoste Posted July 24, 2023 Author Share Posted July 24, 2023 Mais est il sécuriser par rapport a Xera ? ---trad google--- But is it secure compared to Xera ? Quote Link to comment Share on other sites More sharing options...
SpookyKipper Posted July 24, 2023 Share Posted July 24, 2023 (edited) 6 hours ago, luluhoste said: Mais est il sécuriser par rapport a Xera ? ---trad google--- But is it secure compared to Xera ? MOFHY is insecure Xera currently has no known vulnerabilities. TinkerHost's also currently has no known vulnerabilities. Xera is open source, so if it's just one or two vulnerability someone can fix it. TinkerHost has a bounty program (is that what it's called?) with their testers, which could encourage their testers to find vulnerabilities. Edited July 24, 2023 by SpookyKipper Quote Link to comment Share on other sites More sharing options...
luluhoste Posted July 25, 2023 Author Share Posted July 25, 2023 J'ai essayer Uiisc : Résultat : Apriori, c'est une copie de MOFHY (donc pas sécuriser), en plus, l'installation ne fonctionne pas... En tous cas pas facilement du tous ! J'ai essayer plusieurs truck pour l'installer, bidouiller le code... rien n'y a fait, en plus il y a des erreurs de partout ! Donc vraiment nul ! 😒 Utiliser plutôt ceci : Xera, GenerateArea... ---trad google--- I tried Uiisc: Result: Apriori, it's a copy of MOFHY (therefore not secure), in addition, the installation does not work... In any case, not easily at all! I tried several trucks to install it, tweak the code... nothing worked, plus there are errors everywhere! So really bad! 😒 Use this instead: Xera, GenerateArea... Quote Link to comment Share on other sites More sharing options...
luluhoste Posted July 25, 2023 Author Share Posted July 25, 2023 J'ai essayé Uiisc : Résultat : A priori, c'est une copie de MOFHY (donc pas sécurisée), en plus, l'installation ne marche pas... En tout cas, pas facilement du tout ! J'ai essayé plusieurs camions pour l'installer, peaufiner le code... rien n'y fait, en plus il y a des erreurs partout ! Donc vraiment mauvais ! 😒 Utilisez ceci à la place : Xera, GenerateArea... ---trad google--- I tried Uiisc: Result: Apriori, it's a copy of MOFHY (therefore not secure), in addition, the installation does not work... In any case, not easily at all! I tried several trucks to install it, tweak the code... nothing worked, plus there are errors everywhere! So really bad! 😒 Utilisez ceci à la place : Xera, GenerateArea... Quote Link to comment Share on other sites More sharing options...
TinkerMan Posted July 25, 2023 Share Posted July 25, 2023 14 hours ago, SpookyKipper said: could encourage their testers to find vulnerabilities “Could”? Quote Link to comment Share on other sites More sharing options...
SpookyKipper Posted July 25, 2023 Share Posted July 25, 2023 1 hour ago, TinkerMan said: “Could”? yes, I used could be cause there is a chance, but not 100% I like to play around stuff but not actually hunting any vulnerability or issues Quote Link to comment Share on other sites More sharing options...
TinkerMan Posted July 25, 2023 Share Posted July 25, 2023 True. I’ve gotten some from you guys (Thanks!) and two from random users (One of which who wanted like $100 for something that was not even a security issue) Quote Link to comment Share on other sites More sharing options...
MeTooIDK Posted July 26, 2023 Share Posted July 26, 2023 9 hours ago, SpookyKipper said: yes, I used could be cause there is a chance, but not 100% I like to play around stuff but not actually hunting any vulnerability or issues Sonarcloud 🥰 Quote Link to comment Share on other sites More sharing options...
MeTooIDK Posted July 26, 2023 Share Posted July 26, 2023 12 hours ago, luluhoste said: J'ai essayé Uiisc : Résultat : A priori, c'est une copie de MOFHY (donc pas sécurisée), en plus, l'installation ne marche pas... En tout cas, pas facilement du tout ! J'ai essayé plusieurs camions pour l'installer, peaufiner le code... rien n'y fait, en plus il y a des erreurs partout ! Donc vraiment mauvais ! 😒 Utilisez ceci à la place : Xera, GenerateArea... ---trad google--- I tried Uiisc: Result: Apriori, it's a copy of MOFHY (therefore not secure), in addition, the installation does not work... In any case, not easily at all! I tried several trucks to install it, tweak the code... nothing worked, plus there are errors everywhere! So really bad! 😒 Utilisez ceci à la place : Xera, GenerateArea... i think UIISC and MOFHY are different. i think they just structure are same like using same framework like codeigniter? Quote Link to comment Share on other sites More sharing options...
TinkerMan Posted July 26, 2023 Share Posted July 26, 2023 MOFHY is vanilla PHP, no frameworks. Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.