Because of its low cost nature of many companies now prefer to use open source web products. As open source means that they either free or cost relatively less than their individual counterparts. The open-source web products not only wins in the price but also for the variety of plug-ins and extensions available that can provide easy integration with your website visitors more features and functionality that otherwise favoredexpensive.
Developers tend to work better with open source systems. Makes installation simple, the setting and change it to a developer preference for an individual solution, where the code from scratch.
Despite the many advantages presented, which may require the use of open-source solution for one of their biggest drawback is security.
Open source, by its nature makes its code is available for download from the world. This means that developers not onlythese codes can be used to modify and customize the solution to their customers, but hackers can use these codes to identify problems and gaps in order to penetrate the system.
Most open-source solutions using a standard database table name with the possibility to change it during installation, for example, uses jos_ Joomla, WordPress uses wp_, using OsCommerce os_ table prefix. This table name prefixes by default makes the database vulnerable to hackers, the multiple usesMechanism to bomb the database for a successful connection. Once the connection is free to publish or hackers to steal data from your website or even replace the contents of your site with content of their choice.
Another area of weakness is that not all the files that are used by all sites with the package. I recently had a shop e-commerce web client is known. His complaint was that he somehow has tons of e-mail from the site, wasBy blocking its mailbox. Upon investigation I discovered that he had used the solution to the seller a question button in the product description page that has been disabled by the developers. Then you should say it was an open-source and negligence of the developer know that even if the code of the button has been disabled, the page ends up button has not changed. The spammer could see what was open-source solution with the customer, then you know there is a fileSpammers went directly to the page of the application and sending thousands of emails from them every hour or part thereof.
Even if they offer an open-source web can save you thousands of advantages if you decide to use them be sure that you are aware of the risks and ensure that all vulnerabilities are protected to do.
0 comments:
Post a Comment