Coalescence
August 4th, 2008, 09:57 AM
Hi all!
I'm a sys admin for an ISP and one of my tasks is to look after our web hosting platform.
Looking through the data partition shows up all kinds of old, vulnerable software (like old phpbb, joomla etc..)
What I'd like to do is create an MD5 checksum database of all these kinds of files (download old, know vulnerable versions of polular software and md5 sum the files contained within). To create a kind of rkhunter, chkrootkit analogous program, but for web applications.
Once a set number of criteria are hit, a mail could be sent to the customer notifying them of their old software.
Are there any similar projects out there?
Do you think this would be worthwhile?
Cheers for your time
I'm a sys admin for an ISP and one of my tasks is to look after our web hosting platform.
Looking through the data partition shows up all kinds of old, vulnerable software (like old phpbb, joomla etc..)
What I'd like to do is create an MD5 checksum database of all these kinds of files (download old, know vulnerable versions of polular software and md5 sum the files contained within). To create a kind of rkhunter, chkrootkit analogous program, but for web applications.
Once a set number of criteria are hit, a mail could be sent to the customer notifying them of their old software.
Are there any similar projects out there?
Do you think this would be worthwhile?
Cheers for your time