July 24th, 2004

KZION Redesign Update

Today was spent mostly rewriting the authentication code. I started playing around with altering the cookie that was sent after logging in and I was successful at changing the login name and viewing another persons comments and ratings. I would have also been able to make comments and rate songs using another members name.

I think I have it pretty secure now and altering the cookie will not work. I already had security measures in place to prevent someone from creating a cookie with false information but I had not thought about changing information in an existing cookie. I obviously can’t go into what I did. I’m not trying to protect Fort Knox but I still want a fairly secure environment.

I also finally fixed the dotted underline attached to images. That solution had escaped me for weeks but I finally got it figured out. I also added an artist homepage link to the Playing Now page and the Songinfo page.

Yes, I did get some tutorials completed and some Q & A’s added to the FAQ.

Leave a Reply

You must be logged in to post a comment.