Miscellaneous Leaks

Angry Frog PHP Login Script

Submitted by kara, , Thread ID: 18815

Thread Closed
27-02-2016, 09:09 PM
#1
Product link: https://codecanyon.net/item/angry-frog-p...pt/9146226
Live preview: http://www.angry-frog.com/demo/

I am somewhat positive the security standards are up to par with this login script regarding protection from web app exploits. However, they are using a bad password hashing algorithm. The hashes are salted, but it is best to use bcrypt or scrypt especially if you are going to deploy as part of a public application.

Download link:
Content locked
This content has been locked. Please login or register in order to unlock it.


Virus scan: https://www.virustotal.com/en/file/25bc2...456599871/

P.S.: Not sure why the virus scan says it detected a webshell, probably something to do with the ACP, but if you are sketched out, go through every file manually and check the code.

RE: Angry Frog PHP Login Script

#2
Looks really clean, thanks for sharing this.
The Pengest Turkey

[Image: The-Chicken-Connoisseur-PENGEST-TURKEY-1-1.gif]

RE: Angry Frog PHP Login Script

#3
came through google, registered, but need 5 hours online and 25 posts Tongue

Users browsing this thread: 3 Guest(s)