Newsgroups: php.internals Path: news.php.net Xref: news.php.net php.internals:51572 Return-Path: Mailing-List: contact internals-help@lists.php.net; run by ezmlm Delivered-To: mailing list internals@lists.php.net Received: (qmail 25641 invoked from network); 5 Mar 2011 11:28:15 -0000 Received: from unknown (HELO lists.php.net) (127.0.0.1) by localhost with SMTP; 5 Mar 2011 11:28:15 -0000 Authentication-Results: pb1.pair.com header.from=zulla@1blu.de; sender-id=unknown Authentication-Results: pb1.pair.com smtp.mail=zulla@1blu.de; spf=permerror; sender-id=unknown Received-SPF: error (pb1.pair.com: domain 1blu.de from 213.83.63.131 cause and error) X-PHP-List-Original-Sender: zulla@1blu.de X-Host-Fingerprint: 213.83.63.131 mail.1blu.de Linux 2.5 (sometimes 2.4) (4) Received: from [213.83.63.131] ([213.83.63.131:41662] helo=mail.1blu.de) by pb1.pair.com (ecelerity 2.1.1.9-wez r(12769M)) with ESMTP id 9E/50-23331-E4E127D4 for ; Sat, 05 Mar 2011 06:28:15 -0500 Received: from [85.178.40.152] (helo=sandra.localdomain) by mail.1blu.de with esmtpsa (TLSv1:AES128-SHA:128) (Exim 4.44) id 1Pvpec-0003tJ-K0 for internals@lists.php.net; Sat, 05 Mar 2011 12:28:11 +0100 Content-Type: multipart/alternative; boundary=Apple-Mail-5-1042272674 Date: Sat, 5 Mar 2011 12:28:56 +0100 Message-ID: <15403B7F-57BC-4089-AB32-BD872A8A2CFE@1blu.de> To: PHP Internals Mime-Version: 1.0 (Apple Message framework v1078) X-Mailer: Apple Mail (2.1078) X-Originating-IP: 85.178.40.152 Subject: PHP Tainted Support From: zulla@1blu.de (Daniel Zulla) --Apple-Mail-5-1042272674 Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset=us-ascii hi list, i'm working as a penetration tester and php developer for various german = webhosting companies. i just wanted to ask - what happened to the great idea of tainted-flags = in a development-mode php interpreter, after 2008? as far as i can see, there are two implementations: http://wiki.php.net/rfc/taint and coregrasp i nearly read all the discussions, but i haven't been able to find a = clear decision. -- dan= --Apple-Mail-5-1042272674--