2016-08-30 |
Roland Häder | Added "detection" of open_basedir and php:// protocol: |
commit | commitdiff | tree | snapshot |
2016-08-22 |
Roland Häder | Fixed parser error |
commit | commitdiff | tree | snapshot |
2016-08-22 |
Roland Häder | Sorted a bit + removed '.js' as this was to much and... |
commit | commitdiff | tree | snapshot |
2016-08-10 |
Roland Häder | Some fixes: |
commit | commitdiff | tree | snapshot |
2016-08-05 |
Roland Häder | Also block request methods such as CONNECT as they... |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Also __CALLBACKPARAM needs blocking |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Checking against GET parameters is for the user-agent... |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Only for testing purposes the string is being sanitized... |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Updated database |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Renaming season has started: |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Sanitize request strings (also serialized POST data... |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Continued: |
commit | commitdiff | tree | snapshot |
2016-07-28 |
Roland Häder | Continued improving: |
commit | commitdiff | tree | snapshot |
2016-07-27 |
Roland Häder | Updated a lot: |
commit | commitdiff | tree | snapshot |
2016-07-26 |
Roland Häder | Index on count column to improve SUM queries |
commit | commitdiff | tree | snapshot |
2016-07-26 |
Roland Häder | This column should be after remote_addr to have both... |
commit | commitdiff | tree | snapshot |
2016-07-26 |
Roland Häder | Can be combined and makes code look nicer. |
commit | commitdiff | tree | snapshot |
2016-07-25 |
Roland Häder | Added MySQL internal-use-only function |
commit | commitdiff | tree | snapshot |
2016-07-25 |
Roland Häder | Also log request method |
commit | commitdiff | tree | snapshot |
2016-07-20 |
Roland Häder | One to much ... |
commit | commitdiff | tree | snapshot |
2016-07-20 |
Roland Häder | More PHP function calls (I don't like such RPCs) blocked |
commit | commitdiff | tree | snapshot |
2016-02-13 |
Roland Haeder | Added .gitattributes |
commit | commitdiff | tree | snapshot |
2015-09-12 |
Roland Haeder | Opps ... |
commit | commitdiff | tree | snapshot |
2015-09-12 |
Roland Haeder | Rewrote to MySQLi |
commit | commitdiff | tree | snapshot |
2014-11-03 |
Roland Häder | Fixed |
commit | commitdiff | tree | snapshot |
2014-11-01 |
Roland Haeder | Added proc/self/environ |
commit | commitdiff | tree | snapshot |
2014-11-01 |
Roland Haeder | Added 'safe_mode' (php.ini setting). |
commit | commitdiff | tree | snapshot |
2014-11-01 |
Roland Haeder | Don't continue if the cookie has been set + ticket... |
commit | commitdiff | tree | snapshot |
2013-10-18 |
Roland Haeder | Added some php.ini settings to block |
commit | commitdiff | tree | snapshot |
2013-08-12 |
Roland Haeder | Opps, did forget the fetch :( |
commit | commitdiff | tree | snapshot |
2013-08-12 |
Roland Haeder | No more ORDER BY required, cool. |
commit | commitdiff | tree | snapshot |
2013-08-12 |
Roland Haeder | Added index + optimized query |
commit | commitdiff | tree | snapshot |
2013-08-11 |
Roland Haeder | Reverted removal, maybe now working? |
commit | commitdiff | tree | snapshot |
2013-08-11 |
Roland Haeder | Opps :( |
commit | commitdiff | tree | snapshot |
2013-08-11 |
Roland Haeder | :( Not good enough |
commit | commitdiff | tree | snapshot |
2013-08-11 |
Roland Haeder | Added logging/detection of proxy IP address |
commit | commitdiff | tree | snapshot |
2013-08-11 |
Roland Haeder | server_name and script_name can now be NULL and set... |
commit | commitdiff | tree | snapshot |
2013-08-09 |
Roland Haeder | %20 was to much here |
commit | commitdiff | tree | snapshot |
2013-07-26 |
Roland Haeder | Just '/group' was to restrictive (e.g. breaks StatusNet) |
commit | commitdiff | tree | snapshot |
2013-07-25 |
Roland Haeder | Added 'Autocomplete' as known-incompatible plugin |
commit | commitdiff | tree | snapshot |
2013-07-20 |
Roland Haeder | Updated TODOs.txt |
commit | commitdiff | tree | snapshot |
2013-07-20 |
Roland Haeder | Fix for parser error :( |
commit | commitdiff | tree | snapshot |
2013-07-20 |
Roland Haeder | Resorted almost all pattern checks + used more single... |
commit | commitdiff | tree | snapshot |
2013-07-20 |
Roland Haeder | Wrappers like data://, tcp:// et cetera now blacklisted |
commit | commitdiff | tree | snapshot |
2013-07-20 |
Roland Haeder | Use constants instead of keywords |
commit | commitdiff | tree | snapshot |
2013-07-18 |
Roland Haeder | Fixes (opps) for bad check, blocked all |
commit | commitdiff | tree | snapshot |
2013-07-18 |
Roland Haeder | Experimental commit: |
commit | commitdiff | tree | snapshot |
2013-06-27 |
Roland Haeder | Added incompatible notice |
commit | commitdiff | tree | snapshot |
2013-06-04 |
Roland Haeder | Excluded secure_session=1 from mantis |
commit | commitdiff | tree | snapshot |
2013-04-18 |
Roland Haeder | Now use str_ireplace() |
commit | commitdiff | tree | snapshot |
2013-03-30 |
Roland Haeder | Better use this? |
commit | commitdiff | tree | snapshot |
2013-03-11 |
Roland Haeder | Extended is correct |
commit | commitdiff | tree | snapshot |
2013-02-26 |
Roland Haeder | Remove even more |
commit | commitdiff | tree | snapshot |
2013-02-26 |
Roland Haeder | unsetCtrackerData() introduced |
commit | commitdiff | tree | snapshot |
2012-12-20 |
Roland Haeder | Docu updated, detection array resorted a little |
commit | commitdiff | tree | snapshot |
2012-10-24 |
Roland Haeder | Blocked also %27 (') |
commit | commitdiff | tree | snapshot |
2012-10-24 |
Roland Haeder | Detection of attempt of SQL injections added |
commit | commitdiff | tree | snapshot |
2012-09-29 |
Roland Haeder | Taken care of possible missing elements |
commit | commitdiff | tree | snapshot |
2011-09-27 |
Roland Haeder | 'cmd=' broke to many legtime requests, cmd.exe should... |
commit | commitdiff | tree | snapshot |
2011-09-14 |
Roland Haeder | .pl harms also legitime requests |
commit | commitdiff | tree | snapshot |
2011-08-27 |
Roland Haeder | Now all forms of '0x' are detected |
commit | commitdiff | tree | snapshot |
2011-08-27 |
Roland Haeder | DOCUMENT_ROOT and _SERVER added (avoid these things... |
commit | commitdiff | tree | snapshot |
2011-07-29 |
Roland Haeder | Block also these |
commit | commitdiff | tree | snapshot |
2011-07-29 |
Roland Haeder | init also this |
commit | commitdiff | tree | snapshot |
2011-07-29 |
Roland Haeder | Fix for missing 'ctracker_post_track' |
commit | commitdiff | tree | snapshot |
2011-06-24 |
Roland Haeder | Detection of hexa-decimal encoded (0xXXXXX) strings... |
commit | commitdiff | tree | snapshot |
2011-04-20 |
Roland Haeder | svn:eol-style set to 'native' |
commit | commitdiff | tree | snapshot |
2011-04-10 |
Roland Haeder | Duplicate entries removed, typo fixed |
commit | commitdiff | tree | snapshot |
2011-03-06 |
Roland Haeder | Copyright updated |
commit | commitdiff | tree | snapshot |
2011-03-06 |
Roland Haeder | Some obsolete comment removed |
commit | commitdiff | tree | snapshot |
2011-02-09 |
Roland Haeder | Fixed error reporting for debug mode |
commit | commitdiff | tree | snapshot |
2010-11-26 |
Roland Haeder | Default value of 'count' needs to be 1 |
commit | commitdiff | tree | snapshot |
2010-10-05 |
Roland Haeder | Configuration entry 'ctracker_debug' renamed to 'ctrack... |
commit | commitdiff | tree | snapshot |
2010-09-23 |
Roland Haeder | Some code blocks moved, detection of '..//' added,... |
commit | commitdiff | tree | snapshot |
2010-09-14 |
Roland Haeder | SVN properties globally set |
commit | commitdiff | tree | snapshot |
2010-08-20 |
Roland Haeder | 'Based on' added, /proc/ will now be detected, do not... |
commit | commitdiff | tree | snapshot |
2010-07-18 |
Roland Haeder | Fixes for missing config if no database link is provided |
commit | commitdiff | tree | snapshot |
2010-07-08 |
Roland Haeder | TODOs.txt updated ... |
commit | commitdiff | tree | snapshot |
2010-07-08 |
Roland Haeder | Documentation does now make a notice about database... |
commit | commitdiff | tree | snapshot |
2010-07-08 |
Roland Haeder | Updated to allow database-less operation |
commit | commitdiff | tree | snapshot |
2010-06-20 |
Roland Haeder | Renamed |
commit | commitdiff | tree | snapshot |
2010-05-16 |
Roland Haeder | Log of first attempt fixed |
commit | commitdiff | tree | snapshot |
2010-05-16 |
Roland Haeder | Fix |
commit | commitdiff | tree | snapshot |
2010-05-15 |
Roland Haeder | This should also not be used in URLs |
commit | commitdiff | tree | snapshot |
2010-05-11 |
Roland Haeder | Missing form elements handled |
commit | commitdiff | tree | snapshot |
2010-05-11 |
Roland Häder | Fix #4 from root... |
commit | commitdiff | tree | snapshot |
2010-05-11 |
Roland Haeder | Fix #3 |
commit | commitdiff | tree | snapshot |
2010-05-11 |
Roland Haeder | Fix #2 |
commit | commitdiff | tree | snapshot |
2010-05-11 |
Roland Haeder | Fixes... :( |
commit | commitdiff | tree | snapshot |
2010-05-11 |
Roland Haeder | Complete rewrite: |
commit | commitdiff | tree | snapshot |
2010-05-04 |
Roland Haeder | Added more flexible options |
commit | commitdiff | tree | snapshot |
2010-05-04 |
Roland Haeder | Updated |
commit | commitdiff | tree | snapshot |
2010-05-04 |
Roland Haeder | Updated |
commit | commitdiff | tree | snapshot |
2010-01-07 |
Roland Haeder | Renamed to bypass naming conflicts |
commit | commitdiff | tree | snapshot |
2010-01-05 |
Roland Haeder | Now detects proxy usage |
commit | commitdiff | tree | snapshot |
2009-12-31 |
Roland Haeder | Mails updated |
commit | commitdiff | tree | snapshot |
2009-12-31 |
Roland Haeder | A lot spaces removed, array with server_name extended... |
commit | commitdiff | tree | snapshot |
2009-12-31 |
Roland Haeder | Unmodified GET data (query string) added |
commit | commitdiff | tree | snapshot |
2009-12-31 |
Roland Haeder | Fix for warning |
commit | commitdiff | tree | snapshot |
2009-12-31 |
Roland Haeder | Some nice improvements: |
commit | commitdiff | tree | snapshot |
next |