You are viewing a single comment's thread from:

RE: [whitehat report] Warning Don't Install SteemPay Woo Commerce Plugin for now. It's very alpha.

in #steempay8 years ago (edited)

@williambanks comparison is mostly done with == or === :) and yes PHP can have some exploits, however with PHP 7 the language becomes more strict i think...

Nonetheless this has nothing todo with having exploitable code (did not look into that), but rather with key parts of the 'application' not being implemented.

Sort:  

It is a socialistic feature @roelandp - for steemians to just ... webshop whatever they want and pay whatever they feel like :) I´m sure it was intended that way, you know - re-introduce shoplifting for the Internet ;) hehehehe

@roelandp You are absolutely correct, but so am I. :D It was a commentary on what happens when you do things like farm work out to the lowest bidder.

The problem with the particular app in question is structural in nature. It's not a simple fix, it's the type of thing that needs a rethink from the ground up. But if the mistake you called out is there, you can bet that the code in general is likely to have few other issues as well.

Coin Marketplace

STEEM 0.18
TRX 0.13
JST 0.028
BTC 57431.51
ETH 3085.99
USDT 1.00
SBD 2.35