Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

almost everyone have all the things required for those exploits disabled.

why would i accept performance penalty if i don't allow open('https://google.com') to begin with?

the correct action would be to remove all the stupid features everyone serious disable to begin with.



It seems hard to "disable" the issues mentioned at https://dustri.org/b/upcoming-hardening-in-php.html




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: