To those of you running web servers…

… you may want to double-check your PHP-using programs, such as phpBB. There is a worm going around the Internet which uses Google to search for phpBB-using sites and then deface them automatically. The security flaw itself is a mixture of the recent major PHP vulnerabilities and the so-called highlight bug in versions of phpBB prior to 2.0.11.

The PHP bugs themselves are serious enough that you should double-check any PHP scripts you’ve written that are accessible to the Internet, especially if they use the unserialize() or realpath() functions.


Also, some people have e-mailed me about my recent DV to DVD post. The author of Kino has informed me that it can do most of what I need to do (I’ll get it installed one way or another, I promise!), while someone else has mentioned a program someone wrote to encode any mplayer-playable movie to DVD, called mkdvd. I haven’t been able to try either one, but it’s probably better than using my long and boring walkthrough of failure. ;-)