<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Hacked osCommerce?  Here&#039;s some essential reading&#8230;</title>
	<atom:link href="http://www.clubosc.com/hacked-oscommerce-essential-reading.html/feed" rel="self" type="application/rss+xml" />
	<link>http://www.clubosc.com/hacked-oscommerce-essential-reading.html</link>
	<description>Showcasing osCommerce...the good, the bad and the ugly!</description>
	<lastBuildDate>Mon, 30 Jan 2012 16:32:29 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.5</generator>
	<item>
		<title>By: Mark Y</title>
		<link>http://www.clubosc.com/hacked-oscommerce-essential-reading.html/comment-page-1#comment-6272</link>
		<dc:creator>Mark Y</dc:creator>
		<pubDate>Fri, 20 Jan 2012 08:48:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.clubosc.com/?p=270#comment-6272</guid>
		<description>A fix for the security issues in osCommerce versions of the 2.2 range can be found here: http://addons.oscommerce.com/info/8283</description>
		<content:encoded><![CDATA[<p>A fix for the security issues in osCommerce versions of the 2.2 range can be found here: <a href="http://addons.oscommerce.com/info/8283" rel="nofollow">http://addons.oscommerce.com/info/8283</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gary</title>
		<link>http://www.clubosc.com/hacked-oscommerce-essential-reading.html/comment-page-1#comment-4885</link>
		<dc:creator>Gary</dc:creator>
		<pubDate>Wed, 19 Jan 2011 15:18:48 +0000</pubDate>
		<guid isPermaLink="false">http://www.clubosc.com/?p=270#comment-4885</guid>
		<description>My opinion only;;;

Security Pro - Use the very latest one (r7).

Sitemonitor - rubbish coded piece of crap, but somewhat useful.  Suggest FWR Filesafe instead.

IP Trap - pointless

.htaccess Protection - inbuilt one is fine

Anti-XSS - pointless as SPr7 takes care of it.

So, yes to Security Pro and protecting admin via inbuilt htaccess.  Maybe to Site Monitor.  No to IP Trap and AntiXSS - based on securing 2.3.1.

Would say yes to it all, other than IP trap, for securing 2.2</description>
		<content:encoded><![CDATA[<p>My opinion only;;;</p>
<p>Security Pro &#8211; Use the very latest one (r7).</p>
<p>Sitemonitor &#8211; rubbish coded piece of crap, but somewhat useful.  Suggest FWR Filesafe instead.</p>
<p>IP Trap &#8211; pointless</p>
<p>.htaccess Protection &#8211; inbuilt one is fine</p>
<p>Anti-XSS &#8211; pointless as SPr7 takes care of it.</p>
<p>So, yes to Security Pro and protecting admin via inbuilt htaccess.  Maybe to Site Monitor.  No to IP Trap and AntiXSS &#8211; based on securing 2.3.1.</p>
<p>Would say yes to it all, other than IP trap, for securing 2.2</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Java Roasters</title>
		<link>http://www.clubosc.com/hacked-oscommerce-essential-reading.html/comment-page-1#comment-4884</link>
		<dc:creator>Java Roasters</dc:creator>
		<pubDate>Wed, 19 Jan 2011 15:02:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.clubosc.com/?p=270#comment-4884</guid>
		<description>These five mods;

Step Three: further securing your shop

Install the following security mods:

Security Pro
Sitemonitor
IP Trap
.htaccess Protection
Anti-XSS</description>
		<content:encoded><![CDATA[<p>These five mods;</p>
<p>Step Three: further securing your shop</p>
<p>Install the following security mods:</p>
<p>Security Pro<br />
Sitemonitor<br />
IP Trap<br />
.htaccess Protection<br />
Anti-XSS</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gary</title>
		<link>http://www.clubosc.com/hacked-oscommerce-essential-reading.html/comment-page-1#comment-4882</link>
		<dc:creator>Gary</dc:creator>
		<pubDate>Wed, 19 Jan 2011 09:59:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.clubosc.com/?p=270#comment-4882</guid>
		<description>&quot;Would you recommend the 5 security mods for all versions of osC shops including the 2.3 series?&quot;

What 5 security mods are you talking of?  The chosen few might be ones that I never use anyway lol  Let me know and I&#039;ll advise what I use.</description>
		<content:encoded><![CDATA[<p>&#034;Would you recommend the 5 security mods for all versions of osC shops including the 2.3 series?&#034;</p>
<p>What 5 security mods are you talking of?  The chosen few might be ones that I never use anyway lol  Let me know and I&#039;ll advise what I use.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Java Roasters</title>
		<link>http://www.clubosc.com/hacked-oscommerce-essential-reading.html/comment-page-1#comment-4881</link>
		<dc:creator>Java Roasters</dc:creator>
		<pubDate>Wed, 19 Jan 2011 03:05:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.clubosc.com/?p=270#comment-4881</guid>
		<description>@Xpajun

Don&#039;t put your new admin name in your main robots.txt file but create a new one in your admin folder and place the following lines in it;

User-agent: *
Disallow: /

It can be found in this contribution http://addons.oscommerce.com/info/2162


@Gary Would you recommend the 5 security mods for all versions of osC shops including the 2.3 series?</description>
		<content:encoded><![CDATA[<p>@Xpajun</p>
<p>Don&#039;t put your new admin name in your main robots.txt file but create a new one in your admin folder and place the following lines in it;</p>
<p>User-agent: *<br />
Disallow: /</p>
<p>It can be found in this contribution <a href="http://addons.oscommerce.com/info/2162" rel="nofollow">http://addons.oscommerce.com/info/2162</a></p>
<p>@Gary Would you recommend the 5 security mods for all versions of osC shops including the 2.3 series?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

