<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>securite — Forum de PluXml</title>
        <link>https://forum.pluxml.org/index.php?p=/</link>
        <pubDate>Fri, 03 Apr 2026 21:06:48 +0000</pubDate>
        <language>fr</language>
            <description>securite — Forum de PluXml</description>
    <atom:link href="https://forum.pluxml.org/index.php?p=/discussions/tagged/securite/feed.rss" rel="self" type="application/rss+xml"/>
    <item>
        <title>[RESOLU]Attention sujet pouvant heurter votre sensibilité</title>
        <link>https://forum.pluxml.org/index.php?p=/discussion/7565/resolu-attention-sujet-pouvant-heurter-votre-sensibilite</link>
        <pubDate>Tue, 28 Nov 2023 08:32:14 +0000</pubDate>
        <category>Modifications</category>
        <dc:creator>petitpouyo</dc:creator>
        <guid isPermaLink="false">7565@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Hello hello à tous et toutes,<br />
voila en tant que bidouilleur professionnel  <img src="https://forum.pluxml.org/plugins/emojiextender/emoji/twitter/wink.png" title=";)" alt=";)" height="18" /> je me suis posé une question sur la modification du nom d'utilisateur servant à se connecter à l'administration.</p>

<p>Seulement cela est-il possible ? J'ai regarder l'architecture de PluXml je suis bien tombé sur mon mot de passe qui est crypté donc logiquement décryptible ?</p>

<p>Attention je rassure les novices, lorsque je dis que j'ai regarder l'architecture ce n'est pas accessible en ligne mais en transférant le blog complet sur PC et le désosser.</p>

<p>Faisons un cas de figure:</p>

<p>Admettons demain je me fais "hacker" différents comptes sur divers sites et que je souhaites dans la hâte modifier mes identifiants PluXml cela est-il possible ou pas ?</p>
]]>
        </description>
    </item>
    <item>
        <title>Sécurité de PluXml face aux attaques par force brute</title>
        <link>https://forum.pluxml.org/index.php?p=/discussion/7525/securite-de-pluxml-face-aux-attaques-par-force-brute</link>
        <pubDate>Wed, 20 Sep 2023 06:59:26 +0000</pubDate>
        <category>Discussions générales</category>
        <dc:creator>Txori</dc:creator>
        <guid isPermaLink="false">7525@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Bonjour. Ça doit faire plus de 10 ans que je me sers de PluXml pour réaliser mes sites internet, et j'en suis toujours extrèmement satisfait. Et encore plus ce matin en voyant mon log serveur avec une personne malveillante de plus qui tente de scanner tout ce qui ressemble de près ou de loin à WordPress :</p>

<pre><code>2023-09-20 07:06:37 94.156.253.218 404 GET //9widuas.php
2023-09-20 07:06:37 94.156.253.218 404 GET //283ewdu.php
2023-09-20 07:06:38 94.156.253.218 404 GET //93wrie.php
2023-09-20 07:06:38 94.156.253.218 404 GET //93827ed.php
2023-09-20 07:06:38 94.156.253.218 404 GET //9348.php
2023-09-20 07:06:38 94.156.253.218 404 GET //fuc32.php
2023-09-20 07:06:38 94.156.253.218 404 GET //8349e.php
2023-09-20 07:06:39 94.156.253.218 404 GET //74erdf.php
2023-09-20 07:06:39 94.156.253.218 404 GET //x.php
2023-09-20 07:06:39 94.156.253.218 404 GET //e.php
2023-09-20 07:06:40 94.156.253.218 404 GET //0.php
2023-09-20 07:06:40 94.156.253.218 404 GET //1.php
2023-09-20 07:06:40 94.156.253.218 404 GET //2.php
2023-09-20 07:06:41 94.156.253.218 404 GET //3.php
2023-09-20 07:06:41 94.156.253.218 404 GET //4.php
2023-09-20 07:06:41 94.156.253.218 404 GET //5.php
2023-09-20 07:06:41 94.156.253.218 404 GET //6.php
2023-09-20 07:06:41 94.156.253.218 404 GET //7.php
2023-09-20 07:06:41 94.156.253.218 404 GET //8.php
2023-09-20 07:06:41 94.156.253.218 404 GET //9.php
2023-09-20 07:06:42 94.156.253.218 404 GET //a.php
2023-09-20 07:06:42 94.156.253.218 404 GET //z.php
2023-09-20 07:06:42 94.156.253.218 404 GET //r.php
2023-09-20 07:06:42 94.156.253.218 404 GET //t.php
2023-09-20 07:06:42 94.156.253.218 404 GET //y.php
2023-09-20 07:06:42 94.156.253.218 404 GET //u.php
2023-09-20 07:06:43 94.156.253.218 404 GET //i.php
2023-09-20 07:06:43 94.156.253.218 404 GET //o.php
2023-09-20 07:06:43 94.156.253.218 404 GET //p.php
2023-09-20 07:06:43 94.156.253.218 404 GET //q.php
2023-09-20 07:06:43 94.156.253.218 404 GET //s.php
2023-09-20 07:06:43 94.156.253.218 404 GET //d.php
2023-09-20 07:06:43 94.156.253.218 404 GET //f.php
2023-09-20 07:06:43 94.156.253.218 404 GET //g.php
2023-09-20 07:06:44 94.156.253.218 404 GET //h.php
2023-09-20 07:06:44 94.156.253.218 404 GET //j.php
2023-09-20 07:06:44 94.156.253.218 404 GET //k.php
2023-09-20 07:06:44 94.156.253.218 404 GET //l.php
2023-09-20 07:06:45 94.156.253.218 404 GET //m.php
2023-09-20 07:06:45 94.156.253.218 404 GET //w.php
2023-09-20 07:06:45 94.156.253.218 404 GET //v.php
2023-09-20 07:06:45 94.156.253.218 404 GET //n.php
2023-09-20 07:06:46 94.156.253.218 404 GET //b.php
2023-09-20 07:06:47 94.156.253.218 404 GET //c.php
2023-09-20 07:06:48 94.156.253.218 404 GET //fw.php
2023-09-20 07:06:48 94.156.253.218 404 GET //fx.php
2023-09-20 07:06:48 94.156.253.218 404 GET //xl.php
2023-09-20 07:06:48 94.156.253.218 404 GET //wp.php
2023-09-20 07:06:48 94.156.253.218 404 GET //up.php
2023-09-20 07:06:49 94.156.253.218 404 GET //ok.php
2023-09-20 07:06:49 94.156.253.218 404 GET //xx.php
2023-09-20 07:06:49 94.156.253.218 404 GET //10.php
2023-09-20 07:06:49 94.156.253.218 404 GET //dr.php
2023-09-20 07:06:50 94.156.253.218 404 GET //it.php
2023-09-20 07:06:50 94.156.253.218 404 GET //41.php
2023-09-20 07:06:50 94.156.253.218 404 GET //wi.php
2023-09-20 07:06:50 94.156.253.218 404 GET //ws.php
2023-09-20 07:06:51 94.156.253.218 404 GET //87.php
2023-09-20 07:06:51 94.156.253.218 404 GET //13.php
2023-09-20 07:06:51 94.156.253.218 404 GET //cp.php
2023-09-20 07:06:52 94.156.253.218 404 GET //bb.php
2023-09-20 07:06:52 94.156.253.218 404 GET //aa.php
2023-09-20 07:06:52 94.156.253.218 404 GET //lf.php
2023-09-20 07:06:52 94.156.253.218 404 GET //xo.php
2023-09-20 07:06:52 94.156.253.218 404 GET //mi.php
2023-09-20 07:06:53 94.156.253.218 404 GET //fa.php
2023-09-20 07:06:53 94.156.253.218 404 GET //if.php
2023-09-20 07:06:53 94.156.253.218 404 GET //kk.php
2023-09-20 07:06:53 94.156.253.218 404 GET //kn.php
2023-09-20 07:06:53 94.156.253.218 404 GET //sh.php
2023-09-20 07:06:54 94.156.253.218 404 GET //01.php
2023-09-20 07:06:55 94.156.253.218 404 GET //V3.php
2023-09-20 07:06:55 94.156.253.218 404 GET //V5.php
2023-09-20 07:06:55 94.156.253.218 404 GET //am.php
2023-09-20 07:06:55 94.156.253.218 404 GET //ms.php
2023-09-20 07:06:56 94.156.253.218 404 GET //xz.php
2023-09-20 07:06:56 94.156.253.218 404 GET //0z.php
2023-09-20 07:06:56 94.156.253.218 404 GET //ne.php
2023-09-20 07:06:56 94.156.253.218 404 GET //doc.php
2023-09-20 07:06:57 94.156.253.218 404 GET //ups.php
2023-09-20 07:06:57 94.156.253.218 404 GET //404.php
2023-09-20 07:06:57 94.156.253.218 404 GET //shx.php
2023-09-20 07:06:57 94.156.253.218 404 GET //wso.php
2023-09-20 07:06:58 94.156.253.218 404 GET //sym.php
2023-09-20 07:06:58 94.156.253.218 404 GET //403.php
2023-09-20 07:06:58 94.156.253.218 404 GET //c99.php
2023-09-20 07:06:58 94.156.253.218 404 GET //xxx.php
2023-09-20 07:06:58 94.156.253.218 404 GET //www.php
2023-09-20 07:06:58 94.156.253.218 404 GET //wp2.php
2023-09-20 07:06:58 94.156.253.218 404 GET //owl.php
2023-09-20 07:06:58 94.156.253.218 404 GET //100.php
2023-09-20 07:06:59 94.156.253.218 404 GET //777.php
2023-09-20 07:06:59 94.156.253.218 404 GET //cms.php
2023-09-20 07:06:59 94.156.253.218 404 GET //Gel.php
2023-09-20 07:06:59 94.156.253.218 404 GET //.fk.php
2023-09-20 07:07:00 94.156.253.218 404 GET //xox.php
2023-09-20 07:07:00 94.156.253.218 404 GET //new.php
2023-09-20 07:07:00 94.156.253.218 404 GET //mar.php
2023-09-20 07:07:00 94.156.253.218 404 GET //nee.php
2023-09-20 07:07:00 94.156.253.218 404 GET //lol.php
2023-09-20 07:07:01 94.156.253.218 404 GET //7yn.php
2023-09-20 07:07:01 94.156.253.218 404 GET //alf.php
2023-09-20 07:07:01 94.156.253.218 404 GET //olu.php
2023-09-20 07:07:01 94.156.253.218 404 GET //rss.php
2023-09-20 07:07:01 94.156.253.218 404 GET //fox.php
2023-09-20 07:07:01 94.156.253.218 404 GET //swm.php
2023-09-20 07:07:02 94.156.253.218 404 GET //s_e.php
2023-09-20 07:07:03 94.156.253.218 404 GET //098.php
2023-09-20 07:07:03 94.156.253.218 404 GET //RxR.php
2023-09-20 07:07:03 94.156.253.218 404 GET //gif.php
2023-09-20 07:07:03 94.156.253.218 404 GET //lab.php
2023-09-20 07:07:03 94.156.253.218 404 GET //snd.php
2023-09-20 07:07:04 94.156.253.218 404 GET //srx.php
2023-09-20 07:07:04 94.156.253.218 404 GET //wpx.php
2023-09-20 07:07:05 94.156.253.218 404 GET //bala.php
2023-09-20 07:07:05 94.156.253.218 404 GET //mini.php
2023-09-20 07:07:06 94.156.253.218 404 GET //alfa.php
2023-09-20 07:07:06 94.156.253.218 404 GET //DKIZ.php
2023-09-20 07:07:06 94.156.253.218 404 GET //leaf.php
2023-09-20 07:07:06 94.156.253.218 404 GET //alex.php
2023-09-20 07:07:06 94.156.253.218 404 GET //send.php
2023-09-20 07:07:07 94.156.253.218 404 GET //data.php
2023-09-20 07:07:07 94.156.253.218 404 GET //1337.php
2023-09-20 07:07:07 94.156.253.218 404 GET //blog.php
2023-09-20 07:07:07 94.156.253.218 404 GET //kiss.php
2023-09-20 07:07:07 94.156.253.218 404 GET //vuln.php
2023-09-20 07:07:08 94.156.253.218 404 GET //root.php
2023-09-20 07:07:08 94.156.253.218 404 GET //vita.php
2023-09-20 07:07:08 94.156.253.218 404 GET //wso2.php
2023-09-20 07:07:08 94.156.253.218 404 GET //wso1.php
2023-09-20 07:07:09 94.156.253.218 404 GET //mrjn.php
2023-09-20 07:07:09 94.156.253.218 404 GET //3301.php
2023-09-20 07:07:09 94.156.253.218 404 GET //mari.php
2023-09-20 07:07:09 94.156.253.218 404 GET //date.php
2023-09-20 07:07:09 94.156.253.218 404 GET //s_ne.php
2023-09-20 07:07:10 94.156.253.218 404 GET //.alf.php
2023-09-20 07:07:10 94.156.253.218 404 GET //olux.php
2023-09-20 07:07:10 94.156.253.218 404 GET //tuco.php
2023-09-20 07:07:10 94.156.253.218 404 GET //unix.php
2023-09-20 07:07:10 94.156.253.218 404 GET //upel.php
2023-09-20 07:07:11 94.156.253.218 404 GET //1975.php
2023-09-20 07:07:11 94.156.253.218 404 GET //radio.php
2023-09-20 07:07:11 94.156.253.218 404 GET //alwso.php
2023-09-20 07:07:11 94.156.253.218 404 GET //xleet.php
2023-09-20 07:07:11 94.156.253.218 404 GET //0byte.php
2023-09-20 07:07:12 94.156.253.218 404 GET //shell.php
2023-09-20 07:07:12 94.156.253.218 404 GET //anone.php
2023-09-20 07:07:12 94.156.253.218 404 GET //wp-ad.php
2023-09-20 07:07:13 94.156.253.218 404 GET //rahma.php
2023-09-20 07:07:13 94.156.253.218 404 GET //priv8.php
2023-09-20 07:07:13 94.156.253.218 404 GET //ohayo.php
2023-09-20 07:07:14 94.156.253.218 404 GET //sh3ll.php
2023-09-20 07:07:14 94.156.253.218 404 GET //haxor.php
2023-09-20 07:07:14 94.156.253.218 404 GET //hello.php
2023-09-20 07:07:14 94.156.253.218 404 GET //small.php
2023-09-20 07:07:15 94.156.253.218 404 GET //about.php
2023-09-20 07:07:15 94.156.253.218 404 GET //gel4y.php
2023-09-20 07:07:15 94.156.253.218 404 GET //style.php
2023-09-20 07:07:15 94.156.253.218 404 GET //error.php
2023-09-20 07:07:15 94.156.253.218 404 GET //goods.php
2023-09-20 07:07:15 94.156.253.218 404 GET //xhell.php
2023-09-20 07:07:16 94.156.253.218 404 GET //yuuki.php
2023-09-20 07:07:16 94.156.253.218 404 GET //admin.php
2023-09-20 07:07:16 94.156.253.218 404 GET //lufix.php
2023-09-20 07:07:16 94.156.253.218 404 GET //2index.php
2023-09-20 07:07:16 94.156.253.218 404 GET //1index.php
2023-09-20 07:07:17 94.156.253.218 404 GET //sym403.php
2023-09-20 07:07:17 94.156.253.218 404 GET //xindex.php
2023-09-20 07:07:17 94.156.253.218 404 GET //kindex.php
2023-09-20 07:07:17 94.156.253.218 404 GET //sindex.php
2023-09-20 07:07:18 94.156.253.218 404 GET //qindex.php
2023-09-20 07:07:18 94.156.253.218 404 GET //3index.php
2023-09-20 07:07:18 94.156.253.218 404 GET //mailer.php
2023-09-20 07:07:19 94.156.253.218 404 GET //nasgor.php
2023-09-20 07:07:19 94.156.253.218 404 GET //upload.php
2023-09-20 07:07:19 94.156.253.218 404 GET //bypass.php
2023-09-20 07:07:20 94.156.253.218 404 GET //wp-one.php
2023-09-20 07:07:20 94.156.253.218 404 GET //alexus.php
2023-09-20 07:07:21 94.156.253.218 404 GET //wp-wso.php
2023-09-20 07:07:21 94.156.253.218 404 GET //minimo.php
2023-09-20 07:07:21 94.156.253.218 404 GET //FoxWSO.php
2023-09-20 07:07:21 94.156.253.218 404 GET //4price.php
2023-09-20 07:07:21 94.156.253.218 404 GET //Cpanel.php
2023-09-20 07:07:21 94.156.253.218 404 GET //jindex.php
2023-09-20 07:07:21 94.156.253.218 404 GET //server.php
2023-09-20 07:07:22 94.156.253.218 404 GET //xmlrpc.php
2023-09-20 07:07:22 94.156.253.218 404 GET //beence.php
2023-09-20 07:07:22 94.156.253.218 404 GET //export.php
2023-09-20 07:07:22 94.156.253.218 404 GET //legion.php
2023-09-20 07:07:23 94.156.253.218 404 GET //shells.php
2023-09-20 07:07:23 94.156.253.218 404 GET //1xleet.php
2023-09-20 07:07:23 94.156.253.218 404 GET //4index.php
2023-09-20 07:07:23 94.156.253.218 404 GET //5index.php
2023-09-20 07:07:23 94.156.253.218 404 GET //6index.php
2023-09-20 07:07:23 94.156.253.218 404 GET //7index.php
2023-09-20 07:07:23 94.156.253.218 404 GET //8index.php
2023-09-20 07:07:24 94.156.253.218 404 GET //9index.php
2023-09-20 07:07:24 94.156.253.218 404 GET //wp-mna.php
2023-09-20 07:07:24 94.156.253.218 404 GET //xmrlpc.php
2023-09-20 07:07:24 94.156.253.218 404 GET //stindex.php
2023-09-20 07:07:24 94.156.253.218 404 GET //symlink.php
2023-09-20 07:07:24 94.156.253.218 404 GET //baindex.php
2023-09-20 07:07:24 94.156.253.218 404 GET //11index.php
2023-09-20 07:07:25 94.156.253.218 404 GET //alfa123.php
2023-09-20 07:07:25 94.156.253.218 404 GET //wp-blog.php
2023-09-20 07:07:26 94.156.253.218 404 GET //wso1337.php
2023-09-20 07:07:26 94.156.253.218 404 GET //defau1t.php
2023-09-20 07:07:26 94.156.253.218 404 GET //alexuse.php
2023-09-20 07:07:27 94.156.253.218 404 GET //content.php
2023-09-20 07:07:27 94.156.253.218 404 GET //wp-file.php
2023-09-20 07:07:27 94.156.253.218 404 GET //wp-load.php
2023-09-20 07:07:27 94.156.253.218 404 GET //wp-info.php
2023-09-20 07:07:27 94.156.253.218 404 GET //license.php
2023-09-20 07:07:27 94.156.253.218 404 GET //Marvins.php
2023-09-20 07:07:28 94.156.253.218 404 GET //blog/fw.php
2023-09-20 07:07:28 94.156.253.218 404 GET //mailer1.php
2023-09-20 07:07:28 94.156.253.218 404 GET //xmlrpcs.php
2023-09-20 07:07:28 94.156.253.218 404 GET //indeeex.php
2023-09-20 07:07:28 94.156.253.218 404 GET //wikindex.php
2023-09-20 07:07:28 94.156.253.218 404 GET //sendmail.php
2023-09-20 07:07:28 94.156.253.218 404 GET //wp/rahma.php
2023-09-20 07:07:29 94.156.253.218 404 GET //wp-admin.php
2023-09-20 07:07:29 94.156.253.218 404 GET //FoxWSOv1.php
2023-09-20 07:07:30 94.156.253.218 404 GET //wp-class.php
2023-09-20 07:07:30 94.156.253.218 404 GET //wp-login.php
2023-09-20 07:07:30 94.156.253.218 404 GET //moduless.php
2023-09-20 07:07:30 94.156.253.218 404 GET //Uploader.php
2023-09-20 07:07:30 94.156.253.218 404 GET //contacts.php
2023-09-20 07:07:31 94.156.253.218 404 GET //leaf_php.php
2023-09-20 07:07:31 94.156.253.218 404 GET //tmp/vuln.php
2023-09-20 07:07:31 94.156.253.218 404 GET //images/f.php
2023-09-20 07:07:31 94.156.253.218 404 GET //mt/pekok.php
2023-09-20 07:07:31 94.156.253.218 404 GET //xltavrat.php
2023-09-20 07:07:31 94.156.253.218 404 GET //wso112233.php
2023-09-20 07:07:31 94.156.253.218 404 GET //new-index.php
2023-09-20 07:07:32 94.156.253.218 404 GET //old-index.php
2023-09-20 07:07:32 94.156.253.218 404 GET //.wp-cache.php
2023-09-20 07:07:32 94.156.253.218 404 GET //edit-form.php
2023-09-20 07:07:33 94.156.253.218 404 GET //MARIJUANA.php
2023-09-20 07:07:33 94.156.253.218 404 GET //Sendemail.php
2023-09-20 07:07:33 94.156.253.218 404 GET //w3llstore.php
2023-09-20 07:07:33 94.156.253.218 404 GET //wp-signin.php
2023-09-20 07:07:33 94.156.253.218 404 GET //wp-beckup.php
2023-09-20 07:07:34 94.156.253.218 404 GET //alfaindex.php
2023-09-20 07:07:34 94.156.253.218 404 GET //alfashell.php
2023-09-20 07:07:34 94.156.253.218 404 GET //images/fx.php
2023-09-20 07:07:34 94.156.253.218 404 GET //uploads/l.php
2023-09-20 07:07:34 94.156.253.218 404 GET //wp-confirm.php
2023-09-20 07:07:34 94.156.253.218 404 GET //wp-uploads.php
2023-09-20 07:07:34 94.156.253.218 404 GET //wp-admin/x.php
2023-09-20 07:07:35 94.156.253.218 404 GET //wp-confiig.php
2023-09-20 07:07:35 94.156.253.218 404 GET //system_log.php
2023-09-20 07:07:35 94.156.253.218 404 GET //demo328/fw.php
2023-09-20 07:07:35 94.156.253.218 404 GET //images/sym.php
2023-09-20 07:07:35 94.156.253.218 404 GET //indoxploit.php
2023-09-20 07:07:35 94.156.253.218 404 GET //leafmailer.php
2023-09-20 07:07:36 94.156.253.218 404 GET //uploads/up.php
2023-09-20 07:07:36 94.156.253.218 404 GET //images/c99.php
2023-09-20 07:07:36 94.156.253.218 404 GET //images/403.php
2023-09-20 07:07:36 94.156.253.218 404 GET //images/ave.php
2023-09-20 07:07:36 94.156.253.218 404 GET //wp.php?Chitoge
2023-09-20 07:07:36 94.156.253.218 404 GET //wp-admin/fw.php
2023-09-20 07:07:36 94.156.253.218 404 GET //wp-admin/fx.php
2023-09-20 07:07:36 94.156.253.218 404 GET //media-admin.php
2023-09-20 07:07:37 94.156.253.218 404 GET //xleet-shell.php
2023-09-20 07:07:37 94.156.253.218 404 GET //wp-configer.php
2023-09-20 07:07:37 94.156.253.218 404 GET //images/vuln.php
2023-09-20 07:07:37 94.156.253.218 404 GET //wp-admin/wp.php
2023-09-20 07:07:37 94.156.253.218 404 GET //leaf_mailer.php
2023-09-20 07:07:38 94.156.253.218 404 GET //new_license.php
2023-09-20 07:07:38 94.156.253.218 404 GET //images/tahe.php
2023-09-20 07:07:39 94.156.253.218 404 GET //files/image.php
2023-09-20 07:07:39 94.156.253.218 404 GET //images/about.php
2023-09-20 07:07:39 94.156.253.218 404 GET //wp-admin/wso.php
2023-09-20 07:07:40 94.156.253.218 404 GET //wp-content/x.php
2023-09-20 07:07:40 94.156.253.218 404 GET //wp-blog-post.php
2023-09-20 07:07:40 94.156.253.218 404 GET //file-manager.php
2023-09-20 07:07:40 94.156.253.218 404 GET //images/pushy.php
2023-09-20 07:07:41 94.156.253.218 404 GET //wp-content/fw.php
2023-09-20 07:07:41 94.156.253.218 404 GET //wp-content/fx.php
2023-09-20 07:07:41 94.156.253.218 404 GET //wp-admin/bala.php
2023-09-20 07:07:41 94.156.253.218 404 GET //leafmailer2.8.php
2023-09-20 07:07:41 94.156.253.218 404 GET //alexus-mailer.php
2023-09-20 07:07:41 94.156.253.218 404 GET //wp-admin/alfa.php
2023-09-20 07:07:41 94.156.253.218 404 GET //wp-content/up.php
2023-09-20 07:07:42 94.156.253.218 404 GET //wp-content/wp.php
2023-09-20 07:07:42 94.156.253.218 404 GET //shell20220621.php
2023-09-20 07:07:42 94.156.253.218 404 GET //ff.php?pass=shell
2023-09-20 07:07:43 94.156.253.218 404 GET //wp-admin/radio.php
2023-09-20 07:07:43 94.156.253.218 404 GET //wp-includes/fw.php
2023-09-20 07:07:43 94.156.253.218 404 GET //wp-includes/fx.php
2023-09-20 07:07:43 94.156.253.218 404 GET //wp-content/wso.php
2023-09-20 07:07:44 94.156.253.218 404 GET //wp-admin/style.php
2023-09-20 07:07:44 94.156.253.218 404 GET //wp-admin/shell.php
2023-09-20 07:07:44 94.156.253.218 404 GET //uploads/upload.php
2023-09-20 07:07:44 94.156.253.218 404 GET //.tmb/cache/shz.php
2023-09-20 07:07:44 94.156.253.218 404 GET //wp-content/bala.php
2023-09-20 07:07:45 94.156.253.218 404 GET //wp_wrong_datlib.php
2023-09-20 07:07:45 94.156.253.218 404 GET //wp-includes/sys.php
2023-09-20 07:07:45 94.156.253.218 404 GET //wp-content/alfa.php
2023-09-20 07:07:46 94.156.253.218 404 GET //wp-admin/css/fw.php
2023-09-20 07:07:46 94.156.253.218 404 GET //wp-content/vuln.php
2023-09-20 07:07:46 94.156.253.218 404 GET //images/indexalt.php
2023-09-20 07:07:47 94.156.253.218 404 GET //error.php?phpshells
2023-09-20 07:07:48 94.156.253.218 404 GET //wp-content/radio.php
2023-09-20 07:07:48 94.156.253.218 404 GET //wp-includes/bala.php
2023-09-20 07:07:49 94.156.253.218 404 GET //alexusmailer%202.0.php
2023-09-20 07:07:49 94.156.253.218 404 GET //wp-content/about.php
2023-09-20 07:07:49 94.156.253.218 404 GET //wp_class_datalib.php
2023-09-20 07:07:50 94.156.253.218 404 GET //wp-content/shell.php
2023-09-20 07:07:50 94.156.253.218 404 GET //wp-content/think.php
2023-09-20 07:07:50 94.156.253.218 404 GET //.well-known/leaf.php
2023-09-20 07:07:50 94.156.253.218 404 GET //.cgi/cache/index.php
2023-09-20 07:07:50 94.156.253.218 404 GET //wp-includes/radio.php
2023-09-20 07:07:51 94.156.253.218 404 GET //autoload_classmap.php
2023-09-20 07:07:51 94.156.253.218 404 GET //wp-includes/about.php
2023-09-20 07:07:52 94.156.253.218 404 GET //.well-known/radio.php
2023-09-20 07:07:52 94.156.253.218 404 GET //wp-admin/maint/fw.php
2023-09-20 07:07:53 94.156.253.218 404 GET //wp-admin/js/acces.php
2023-09-20 07:07:53 94.156.253.218 404 GET //wp-admin/wso112233.php
2023-09-20 07:07:53 94.156.253.218 404 GET //uploads/contexmini.php
2023-09-20 07:07:53 94.156.253.218 404 GET //wp-includes/991176.php
2023-09-20 07:07:53 94.156.253.218 404 GET //wp-includes/wp-red.php
2023-09-20 07:07:54 94.156.253.218 404 GET //wp-admin/css/index.php
2023-09-20 07:07:54 94.156.253.218 404 GET //wp-includes/pomo/1.php
2023-09-20 07:07:54 94.156.253.218 404 GET //wp-includes/pomo/2.php
2023-09-20 07:07:54 94.156.253.218 404 GET //wp-admin/css/media.php
2023-09-20 07:07:54 94.156.253.218 404 GET //wp-includes/css/xm.php
2023-09-20 07:07:55 94.156.253.218 404 GET //wp-includes/css/wp.php
2023-09-20 07:07:56 94.156.253.218 404 GET //wp-content/wp-admin.php
2023-09-20 07:07:56 94.156.253.218 404 GET //wp-includes/wp-atom.php
2023-09-20 07:07:57 94.156.253.218 404 GET //wp-content/db-cache.php
2023-09-20 07:07:57 94.156.253.218 404 GET //wp-includes/css/css.php
2023-09-20 07:07:58 94.156.253.218 404 GET //wp-includes/pomo/ex.php
2023-09-20 07:07:59 94.156.253.218 404 GET //wp-content/tcihmfyu.php
2023-09-20 07:07:59 94.156.253.218 404 GET //wp-content/wso112233.php
2023-09-20 07:08:00 94.156.253.218 404 GET //wp-includes/wp-class.php
2023-09-20 07:08:01 94.156.253.218 404 GET //wp-content/wp-logins.php
2023-09-20 07:08:01 94.156.253.218 404 GET //wp-admin/maint/about.php
2023-09-20 07:08:01 94.156.253.218 404 GET //libraries/joomla/css.php
2023-09-20 07:08:02 94.156.253.218 404 GET //templates/beez/index.php
2023-09-20 07:08:02 94.156.253.218 404 GET //wp-admin/includes/fw.php
2023-09-20 07:08:02 94.156.253.218 404 GET //wp-includes/css/css.php
2023-09-20 07:08:02 94.156.253.218 404 GET //wp-includes/IXR/hunt.php
2023-09-20 07:08:02 94.156.253.218 404 GET //wp-includes/wso112233.php
2023-09-20 07:08:03 94.156.253.218 404 GET //wp-admin/includes/mar.php
2023-09-20 07:08:06 94.156.253.218 404 GET //templates/beez3/index.php
2023-09-20 07:08:06 94.156.253.218 404 GET //templates/beez3/error.php
2023-09-20 07:08:06 94.156.253.218 404 GET //templates/beez5/error.php
2023-09-20 07:08:06 94.156.253.218 404 GET //templates/beez5/index.php
2023-09-20 07:08:06 94.156.253.218 404 GET //wp-admin/setup-config.php
2023-09-20 07:08:06 94.156.253.218 404 GET //wp-includes/pomo/ENKI.php
2023-09-20 07:08:06 94.156.253.218 404 GET //wp-includes/images/css.php
2023-09-20 07:08:07 94.156.253.218 404 GET //libraries/joomla/jmail.php
2023-09-20 07:08:07 94.156.253.218 404 GET //templates/atomic/error.php
2023-09-20 07:08:07 94.156.253.218 404 GET //templates/atomic/index.php
2023-09-20 07:08:08 94.156.253.218 404 GET //wp-includes/theme-cron.php
2023-09-20 07:08:08 94.156.253.218 404 GET //wp-admin/images/atomlib.php
2023-09-20 07:08:08 94.156.253.218 404 GET //modules/modules/modules.php
2023-09-20 07:08:09 94.156.253.218 404 GET //wp-includes/css/modules.php
2023-09-20 07:08:09 94.156.253.218 404 GET //libraries/joomla/jmails.php
2023-09-20 07:08:09 94.156.253.218 404 GET //templates/+theme+/error.php
2023-09-20 07:08:10 94.156.253.218 404 GET //templates/+theme+/index.php
2023-09-20 07:08:10 94.156.253.218 404 GET //templates/beez_20/error.php
2023-09-20 07:08:10 94.156.253.218 404 GET //templates/beez_20/index.php
2023-09-20 07:08:10 94.156.253.218 404 GET //wp-includes/Text/sidwso.php
2023-09-20 07:08:11 94.156.253.218 404 GET //wp-includes/pomo/config.php
2023-09-20 07:08:11 94.156.253.218 404 GET //wp-includes/pomo/repair.php
2023-09-20 07:08:11 94.156.253.218 404 GET //wp-includes/pomo/wp-cli.php
2023-09-20 07:08:11 94.156.253.218 404 GET //wp-includes/css/wp-atom.php
2023-09-20 07:08:11 94.156.253.218 404 GET //wp-content/uploads/small.php
2023-09-20 07:08:12 94.156.253.218 404 GET //wp-includes/pomo/wp-atom.php
2023-09-20 07:08:12 94.156.253.218 404 GET //wp-includes/pomo/xwsoooo.php
2023-09-20 07:08:12 94.156.253.218 404 GET //wp-includes/css/category.php
2023-09-20 07:08:12 94.156.253.218 404 GET //wp-content/plugins/ubh/up.php
2023-09-20 07:08:13 94.156.253.218 404 GET //wp-includes/css/wp-config.php
2023-09-20 07:08:13 94.156.253.218 404 GET //templates/ja_purity/index.php
2023-09-20 07:08:13 94.156.253.218 404 GET //templates/protostar/error.php
2023-09-20 07:08:14 94.156.253.218 404 GET //templates/protostar/index.php
2023-09-20 07:08:14 94.156.253.218 404 GET //wp-content/plugins/zedd/1.php
2023-09-20 07:08:14 94.156.253.218 404 GET //wp-includes/pomo/radiowso.php
2023-09-20 07:08:15 94.156.253.218 404 GET //wp-includes/pomo/shellwso.php
2023-09-20 07:08:15 94.156.253.218 404 GET //wp-content/plugins/ppus/up.php
2023-09-20 07:08:15 94.156.253.218 404 GET //wp-admin/network/wp-footer.php
2023-09-20 07:08:16 94.156.253.218 404 GET //wp-includes/images/wlw/lfx.php
2023-09-20 07:08:16 94.156.253.218 404 GET //wp-content/upgrade/lfgpoem.php
2023-09-20 07:08:16 94.156.253.218 404 GET //wp-includes/class-wp-query.php
2023-09-20 07:08:16 94.156.253.218 404 GET //wp-admin/images/preg_class.php
2023-09-20 07:08:17 94.156.253.218 404 GET //wp-includes/images/wp-blog.php
2023-09-20 07:08:17 94.156.253.218 404 GET //wp-admin/includes/readindex.php
2023-09-20 07:08:17 94.156.253.218 404 GET //wp-includes/wp_class_datlib.php
2023-09-20 07:08:18 94.156.253.218 404 GET //wp-content/languages/sidwso.php
2023-09-20 07:08:18 94.156.253.218 404 GET //xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:18 94.156.253.218 404 GET //wp-admin/js/widgets/wp-login.php
2023-09-20 07:08:19 94.156.253.218 404 GET //wp-content/uploads/readindex.php
2023-09-20 07:08:20 94.156.253.218 404 GET //wp-admin/includes/media-site.php
2023-09-20 07:08:20 94.156.253.218 404 GET //wp-admin/includes/block-line.php
2023-09-20 07:08:21 94.156.253.218 404 GET //wp-content/themes/config.bak.php
2023-09-20 07:08:21 94.156.253.218 404 GET //wp-content/uploads/wp-stream.php
2023-09-20 07:08:21 94.156.253.218 404 GET //wp-content/plugins/ubh/index.php
2023-09-20 07:08:22 94.156.253.218 404 GET //wp-content/plugins/xichang/x.php
2023-09-20 07:08:22 94.156.253.218 404 GET //wp-content/upgrade/wp-signup.php
2023-09-20 07:08:23 94.156.253.218 404 GET //wp-content/uploads/wp-conflg.php
2023-09-20 07:08:23 94.156.253.218 404 GET //templates/rhuk_milkyway/index.php
2023-09-20 07:08:23 94.156.253.218 404 GET //wp-admin/css/colors/coffee/fw.php
2023-09-20 07:08:23 94.156.253.218 404 GET //wp-content/themes/gaukingo/db.php
2023-09-20 07:08:24 94.156.253.218 404 GET //wp-includes/images/wlw/local1.php
2023-09-20 07:08:24 94.156.253.218 404 GET //wp-content/uploads/jcjjjjcjjc.php
2023-09-20 07:08:25 94.156.253.218 404 GET //wp-admin/js/wddx_packet_start.php
2023-09-20 07:08:25 94.156.253.218 404 GET //wp-content/plugins/config.bak.php
2023-09-20 07:08:25 94.156.253.218 404 GET //wp-content/plugins/fighter/fk.php
2023-09-20 07:08:25 94.156.253.218 404 GET //wp-content/uploads/2021/12/fw.php
2023-09-20 07:08:25 94.156.253.218 404 GET //wp-content/uploads/2021/12/up.php
2023-09-20 07:08:25 94.156.253.218 404 GET //wp-content/includes/uploads/Va.php
2023-09-20 07:08:26 94.156.253.218 404 GET //wp-admin/css/modern/colors.css.php
2023-09-20 07:08:26 94.156.253.218 404 GET //components/com_b2jcontact/izoc.php
2023-09-20 07:08:26 94.156.253.218 404 GET //wp-content/plugins/cekidot/alf.php
2023-09-20 07:08:26 94.156.253.218 404 GET //wp-content/plugins/upspy/index.php
2023-09-20 07:08:26 94.156.253.218 404 GET //wp-includes/css/class.enhanced.php
2023-09-20 07:08:27 94.156.253.218 404 GET //wp-admin/js/widgets/wp-contact.php
2023-09-20 07:08:27 94.156.253.218 404 GET //wp-content/themes/seotheme/mar.php
2023-09-20 07:08:27 94.156.253.218 404 GET //wp/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:27 94.156.253.218 404 GET //wp-admin/includes/maint/wp-cron.php
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-admin/includes/edit-tag-menu.php
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-content/plugins/backup_index.php
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-content/uploads/wp-blockdown.php
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-includes/images/wlw/shellwso.php
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-includes/images/media/local1.php
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-includes/class-wp-block-list.php
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-content/themes/gaukingo/db.php?u
2023-09-20 07:08:28 94.156.253.218 404 GET //wp-content/themes/seotheme/db.php?u
2023-09-20 07:08:29 94.156.253.218 403 GET //wp-content/plugins/html404/xccc.php%20
2023-09-20 07:08:29 94.156.253.218 404 GET //wp-content/plugins/html404/wso25.php
2023-09-20 07:08:29 94.156.253.218 404 GET //wp-includes/images/wlw/wp-signup.php
2023-09-20 07:08:31 94.156.253.218 404 GET //wp-includes/images/media/xwsoooo.php
2023-09-20 07:08:31 94.156.253.218 404 GET //blog/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:31 94.156.253.218 404 GET //wp-includes/pomo/wp_class_datalib.php
2023-09-20 07:08:32 94.156.253.218 404 GET //wp-content/plugins/css-ready/file.php
2023-09-20 07:08:32 94.156.253.218 404 GET //wp-includes/images/media/shellwso.php
2023-09-20 07:08:32 94.156.253.218 404 GET //wp-content/plugins/seoplugins/mar.php
2023-09-20 07:08:32 94.156.253.218 404 GET //wp/wp-content/themes/seotheme/mar.php
2023-09-20 07:08:32 94.156.253.218 404 GET //wp-admin/includes/maint/repair-bak.php
2023-09-20 07:08:32 94.156.253.218 404 GET //wp-content/mu-plugins/db-safe-mode.php
2023-09-20 07:08:32 94.156.253.218 404 GET //administrator/templates/isis/error.php
2023-09-20 07:08:33 94.156.253.218 404 GET //administrator/templates/isis/index.php
2023-09-20 07:08:33 94.156.253.218 404 GET //wp-includes/images/media/wp-conflg.php
2023-09-20 07:08:33 94.156.253.218 404 GET //wp-admin/css/colors/ocean/template.php
2023-09-20 07:08:33 94.156.253.218 404 GET //images/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:33 94.156.253.218 404 GET //blog/wp-content/themes/seotheme/mar.php
2023-09-20 07:08:33 94.156.253.218 404 GET //site/wp-content/themes/seotheme/mar.php
2023-09-20 07:08:34 94.156.253.218 404 GET //test/wp-content/themes/seotheme/mar.php
2023-09-20 07:08:34 94.156.253.218 404 GET //uploads/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:34 94.156.253.218 404 GET //modules/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:34 94.156.253.218 404 GET //demo328/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:34 94.156.253.218 404 GET //wp-admin/includes/maint/wp-readindex.php
2023-09-20 07:08:34 94.156.253.218 404 GET //administrator/templates/hathor/error.php
2023-09-20 07:08:35 94.156.253.218 404 GET //administrator/templates/hathor/index.php
2023-09-20 07:08:35 94.156.253.218 404 GET //wp-content/plugins/widget-logic/mini.php
2023-09-20 07:08:36 94.156.253.218 404 GET //wp-content/mu-plugins-old/iimzloqncz.php
2023-09-20 07:08:36 94.156.253.218 404 GET //wp-admin/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:36 94.156.253.218 404 GET //wp-content/plugins/css-ready-sel/file.php
2023-09-20 07:08:36 94.156.253.218 404 GET //wp-includes/ID3/module.tag.id3v1-cron.php
2023-09-20 07:08:38 94.156.253.218 404 GET //wp-includes/pomo/class-wp-sitemap-mna.php
2023-09-20 07:08:38 94.156.253.218 404 GET //wp-content/plugins/ccx/index.php
2023-09-20 07:08:39 94.156.253.218 404 GET //ccx/index.php
2023-09-20 07:08:39 94.156.253.218 404 GET //wp-content/themes/ccx/index.php
2023-09-20 07:08:39 94.156.253.218 404 GET //wp-contentxxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:39 94.156.253.218 404 GET //templates/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:39 94.156.253.218 404 GET //libraries/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:39 94.156.253.218 404 GET //wp-content/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:40 94.156.253.218 404 GET //components/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:40 94.156.253.218 404 GET //administrator/templates/bluestork/error.php
2023-09-20 07:08:40 94.156.253.218 404 GET //wp-content/plugins/vwcleanerplugin/bump.php
2023-09-20 07:08:41 94.156.253.218 404 GET //wp-includes/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:41 94.156.253.218 404 GET //wp-admin/js/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:41 94.156.253.218 404 GET //.well-known/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:41 94.156.253.218 404 GET //wp-admin/includes/tablepress_controllers.php
2023-09-20 07:08:41 94.156.253.218 404 GET //wp-includes/widgets/class-wp-widget-tags.php
2023-09-20 07:08:41 94.156.253.218 404 GET //wordpress/wp-content/themes/seotheme/mar.php
2023-09-20 07:08:41 94.156.253.218 404 GET //administrator/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:42 94.156.253.218 404 GET //wp-admin/includes/class-wp-media-list-data.php
2023-09-20 07:08:42 94.156.253.218 404 GET //wp-content/plugins/theme-configurator/mini.php
2023-09-20 07:08:42 94.156.253.218 404 GET //wp-content/plugins/wp-db-ajax-made/wp-ajax.php
2023-09-20 07:08:42 94.156.253.218 404 GET //modules/mod_simplefileuploadv1.3/elements/udd.php
2023-09-20 07:08:42 94.156.253.218 404 GET //wp-includes/class-wp-block-type-ajax-response.php
2023-09-20 07:08:42 94.156.253.218 404 GET //wp-admin/includes/xxxxxxxxxxxxxxxxxxxxxxxxxxxx.php
2023-09-20 07:08:43 94.156.253.218 404 GET //wp-admin/includes/class-wp-pagebuilders-9LlwKf.php
2023-09-20 07:08:43 94.156.253.218 404 GET //wp-admin/includes/class-wp-pagebuilders-2myLvx.php
2023-09-20 07:08:43 94.156.253.218 404 GET //wp-content/plugins/ioptimization/IOptimize.php?rchk
2023-09-20 07:08:43 94.156.253.218 404 GET //wp-content/themes/mero-magazine/ws.php?rchk
2023-09-20 07:08:43 94.156.253.218 404 GET //wp-content/plugins/three-column-screen-layout/db.php
2023-09-20 07:08:43 94.156.253.218 404 GET //wp-commentin.php?pass=f0aab4595a024d626315fb786dce8282
2023-09-20 07:08:44 94.156.253.218 404 GET //wp-admin/css/colors/blue/uploader.php
2023-09-20 07:08:45 94.156.253.218 404 GET //wp-includes/customize/class-wp-customize-nav-menu.php?new
</code></pre>

<p>Alors désolé, cette liste est un peu longue, mais depuis quelques jours ça n'arrète pas... J'imagine que les nouveaux modèles d'IA y sont pour beaucoup. Je me pose donc la question : que se passerait-il s'ils faisaient la même chose dans les dossiers correspondants à PluXml. Est-ce que tous les fichiers php sont bien protégés ?</p>

<p>Au cas où, j'ai installé le <a rel="nofollow" href="https://forum.pluxml.org/discussion/6243/plugin-kzotphp-pour-double-authentification-2fa-totp-qr-code" title="pluggin kzOtPHP">pluggin kzOtPHP</a>.</p>

<p>Merci !</p>
]]>
        </description>
    </item>
    <item>
        <title>Optimisation et sécurisation de Pluxml</title>
        <link>https://forum.pluxml.org/index.php?p=/discussion/7312/optimisation-et-securisation-de-pluxml</link>
        <pubDate>Mon, 28 Nov 2022 21:10:56 +0000</pubDate>
        <category>Modifications</category>
        <dc:creator>Websteph</dc:creator>
        <guid isPermaLink="false">7312@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Bonjour,</p>

<p>Pour faire simple, j'ai fait quelques recherches sur le forum afin d'optimiser Pluxml.<br />
Et je suis tombé sur ce sujet.<br />
<a rel="nofollow" href="https://forum.pluxml.org/discussion/3892/optimisation-page-en-cache-et-css-js-minifie-concatene-compresse" title="https://forum.pluxml.org/discussion/3892/optimisation-page-en-cache-et-css-js-minifie-concatene-compresse">https://forum.pluxml.org/discussion/3892/optimisation-page-en-cache-et-css-js-minifie-concatene-compresse</a></p>

<p>Du coup, j'ai crée un fichier class.plx.headers.php que j'ai placé dans le dossier "core/lib"<br />
Pour l'appeler j'ai rajouté une ligne dans l'index à la racine de Pluxml</p>

<p>On inclut les librairies nécessaires<br />
<code>include(PLX_CORE.'lib/class.plx.headers.php');</code></p>

<p>Après je me suis interessé à la sécurité afin d'obtenir la meilleur note possible sur<br />
<a rel="nofollow" href="https://securityheaders.com/" title="https://securityheaders.com/">https://securityheaders.com/</a></p>

<p>Donc j'y ai rajouté quelques lignes à ajuster celui vos besoins.</p>

<pre><code>&lt;?php
/**
 * Classe plxHeaders responsable de la securité du site
 *
 * @package PLX
 * @author  Websteph
 **/
header_remove("x-powered-by");
header_remove("Pragma");
header("Content-Type: text/html; charset=utf-8");
header("Accept-Encoding: gzip");
header("Strict-Transport-Security: max-age=31536000; includeSubDomains; preload");
header("X-Frame-Options: SAMEORIGIN");
header("X-Content-Type-Options: nosniff");
header("X-XSS-Protection: 1; mode=block");
header("Referrer-Policy: strict-origin-when-cross-origin");
header("Content-Security-Policy: default-src 'none'; manifest-src 'self'; script-src 'self'; style-src 'self'; img-src 'self' data:; font-src 'self' data:; connect-src 'self'; media-src 'none'; object-src 'none'; frame-src 'self'; frame-ancestors 'none'; form-action 'self'; base-uri 'self';");
header("Permissions-Policy: accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()");
$lastModified=filemtime(__FILE__);
$etagFile = md5_file(__FILE__);
$etag = dechex(fileinode(__FILE__));
$etag.= "-".dechex(filesize(__FILE__));
$etag.= "-".dechex(((filemtime(__FILE__).str_repeat("0",6)+0) &amp; (8589934591)));
$ifModifiedSince=(isset($_SERVER['HTTP_IF_MODIFIED_SINCE']) ? $_SERVER['HTTP_IF_MODIFIED_SINCE'] : false);
$etagHeader=(isset($_SERVER['HTTP_IF_NONE_MATCH']) ? trim($_SERVER['HTTP_IF_NONE_MATCH']) : false);
$expire_offset = 60 * 60;
header("Expires: ".gmdate("D, d M Y H:i:s", time() + $expire_offset)." GMT");
header("Last-Modified: ".gmdate("D, d M Y H:i:s", $lastModified)." GMT");
header("Etag: W/\"$etag\"");
header("Cache-Control: no-store, no-cache, must-revalidate");
header("Vary: Negotiate, Accept-Encoding");
if (@strtotime($_SERVER["HTTP_IF_MODIFIED_SINCE"])==$lastModified || $etagHeader == $etagFile)
{
       header("HTTP/1.1 304 Not Modified");
       exit;
}
?&gt;
</code></pre>

<p>Alors maintenant je sais pas si j'ai utilisé la meilleur méthode pour parvenir à mes fins, mais ça fonctionne très bien. <br />
Mais pour moi, c'était surtout important d'optimiser et sécuriser mon Pluxml.</p>

<p>Stéphane</p>
]]>
        </description>
    </item>
    <item>
        <title>Onclick et script inline du Fichier commentaires.php</title>
        <link>https://forum.pluxml.org/index.php?p=/discussion/7310/onclick-et-script-inline-du-fichier-commentaires-php</link>
        <pubDate>Fri, 25 Nov 2022 20:53:20 +0000</pubDate>
        <category>Entraide</category>
        <dc:creator>Websteph</dc:creator>
        <guid isPermaLink="false">7310@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>bonjour la communauté</p>

<p>Je voudrai savoir si le fichier commentaires.php sera réécrit pour la nouvelle version de Pluxml.<br />
Car je souhaiterai faire fonctionner les commentaires avec une <a rel="nofollow" href="http://" title="Content Security Policy (CSP)">Content Security Policy (CSP)</a>.<br />
Pour le moment j'ai réussi à externaliser le script dans un fichier php en lui apposant une balise Nonce.<br />
Mais maintenant c'est le onclick qui me bloque <br />
<code>onclick="replyCom('&lt;?php $plxShow-&gt;comIndex() ?&gt;')"&gt;</code><br />
Je pense qu'il faut remplacer le onclick par un Id mais je n'arrive plus à lancer la <br />
<code>function replyCom(idCom)</code><br />
du dit script externalisé.</p>

<p>Merci de votre aide<br />
Stéphane</p>
]]>
        </description>
    </item>
    <item>
        <title>Sécurité - Limiter l'accès au blog</title>
        <link>https://forum.pluxml.org/index.php?p=/discussion/7048/securite-limiter-lacces-au-blog</link>
        <pubDate>Fri, 10 Sep 2021 09:49:24 +0000</pubDate>
        <category>Entraide</category>
        <dc:creator>Amadeus</dc:creator>
        <guid isPermaLink="false">7048@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Bonjour à toutes et à tous,<br />
Je dois réaliser un petit site scolaire à destination des familles qui sera composé de quelques pages statiques d'informations publiques et d'une sorte de magazine (la partie blog de PluXml en fait) accessible aux seuls parents d'élève(s).<br />
Comment faire pour réserver l'accès au blog à une liste modifiable de visiteurs soit environ quatre cents personnes qui auront chacune un identifiant et un code d'accès personnels ?<br />
Sauf erreur de ma part, le greffon MyPrivateStatic ne fonctionne pas dans ce cas.<br />
Un fichier htaccess serait-il la solution la plus simple et où faudrait-il l'installer ?<br />
Merci.</p>
]]>
        </description>
    </item>
    <item>
        <title>Sécurité de PluX</title>
        <link>https://forum.pluxml.org/index.php?p=/discussion/6731/securite-de-plux</link>
        <pubDate>Tue, 05 May 2020 07:02:16 +0000</pubDate>
        <category>Discussions générales</category>
        <dc:creator>sken</dc:creator>
        <guid isPermaLink="false">6731@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Bonjour, un article qui à été publié récemment, concernant Worldpress sur la sécurité via les plugins, on pouvait accéder à des données,<br />
donc du côté de PluX, est-il fiable à 100% ?</p>
]]>
        </description>
    </item>
    <item>
        <title>Question de sécurité et problème de Https/css</title>
        <link>https://forum.pluxml.org/index.php?p=/discussion/6534/question-de-securite-et-probleme-de-https-css</link>
        <pubDate>Tue, 20 Aug 2019 11:24:23 +0000</pubDate>
        <category>Discussions générales</category>
        <dc:creator>sken</dc:creator>
        <guid isPermaLink="false">6534@/index.php?p=/discussions</guid>
        <description><![CDATA[<p>Bonjour, je suis chez Ovh et j&#39;ai activ&eacute; le SSL avec https inclus.</p><p>j&#39;ai un probl&egrave;me au niveau du css de mon design qui est pas prit en compte quand il est en https://site.com , par contre en http://site.com , le css prend en compte, savez-vous d&#39;ou &ccedil;a vient?? seulement sur auth.php </p><p>Puis je voulais savoir au niveau s&eacute;curit&eacute;, sur mon site n&#39;importe qui va pourvoir se connecter et &eacute;crire un article entant que r&eacute;dacteur &eacute;videmment j&#39;ai bloqu&eacute; et cach&eacute; l&#39;acc&egrave;s en modifiant le core pour qui ne puisse acc&eacute;der que &agrave; Index.php et Article.php sans &eacute;diter les autres articles, pensez-vous que l&#39;acc&egrave;s au site Admin peut jouer et avoir une facilit&eacute; au hacker??</p>]]>
        </description>
    </item>
   </channel>
</rss>
