Media releases are provided as is by companies and have not been edited or checked for accuracy. Any queries should be directed to the company itself.

Joomla! Ensures Website Security with Acunetix Web Vulnerability Scanner

  • 26 October, 2006 23:46

<p>Acunetix WVS audits Joomla! site for SQL Injection, XSS and other vulnerabilities</p>
<p>Joomla!, an award-winning, open-source content management system, uses Acunetix Web Vulnerability Scanner to automatically audit its PHP-based website. Acunetix WVS scans the site for SQL injection, cross-site scripting and other vulnerabilities, thereby averting possible hacker attacks.</p>
<p>The need for an automated security auditing tool
The Joomla! Core Team Quality &amp; Testing Working Group’s mission is to help improve the quality, stability and security of the Joomla! Core Code, through continuous rigorous testing and quality reporting. The extensive PHP-based Joomla! Core Code was, until recently, tested manually. "Performing a manual security audit each time we released a new version would take up too many hours and resources. Manual auditing is highly complex and it means that you have to keep track of considerable volumes of code as well as the latest techniques being used by hackers. Finding an automated solution was, therefore, essential," said Mr. Muilwijk, member of the Quality and Testing Team.</p>
<p>Vulnerabilities discovered using Acunetix WVS
Using Acunetix Web Vulnerability Scanner, the developers at Joomla! were able to find high-risk SQL Injection vulnerabilities in no time. “The issues detected were of a major impact, if users/hackers would have found the security holes, they could have hacked an entire Joomla! site,” said Mr. Muilwijk. Besides SQL Injection vulnerabilities, the software detected some low-level vulnerabilities related to the web server setup.</p>
<p>Fixing the bugs
“With Acunetix WVS, our developers were able to spot the vulnerabilities immediately and the issues were fixed quite easily,” said Mr. Muilwijk “It was just a matter of using correct PHP standards and other practices such as input filtering. We ran the scans a few times on every new release, to ensure we did not miss any new issues after changing the core code. With Acunetix WVS we were able to improve the quality, stability and security of Joomla!“</p>
<p>The full case study can be viewed at: http://www.acunetix.com/vulnerability-scanner/cs_joomla.htm</p>
<p>About Acunetix Web Vulnerability Scanner
Acunetix Web Vulnerability Scanner ensures website security by automatically checking for SQL injection, Cross site scripting and other vulnerabilities. Furthermore, Acunetix protects against the embedding of Javascript malware in a web-page through its JavaScript Analyzer. Such protection secures all AJAX applications. Acunetix WVS also checks password strength on authentication pages and automatically audits shopping carts, forms, dynamic content and other web applications. As the scan is being completed, the software produces detailed reports that pinpoint where vulnerabilities exist.</p>
<p>Acunetix provides free audit to help companies determine the security of their websites
Enterprises who would like to have their website security checked can register for a free audit by visiting www.acunetix.com/security-audit. Participating enterprises will receive a summary audit report showing whether their website is secure or not. Summary reports will be delivered within five business days of submission.</p>
<p>About Joomla!
Joomla! is a free, award-winning content management system written in PHP which allows users to easily publish their content on the world wide web and intranets. Joomla! is created as an open-source project where individuals and teams contribute their skills to its development as well as its supporting systems.</p>
<p>What sets Joomla! apart is the team’s dedication to keeping things as simple as possible while providing the most features possible. Finally, non-technical people can have complete control over their websites without paying exorbitant amounts for closed, proprietary software.</p>
<p>The name Joomla! is a phonetic spelling for the Swahili word "Jumla", which means "all together" or "as a whole". More information at: http://dev.joomla.org/</p>
<p>About Acunetix
Acunetix was founded to combat the alarming rise in web attacks. Its flagship product, Acunetix Web Vulnerability Scanner, is the result of several years of development by a team of highly experienced security developers. Acunetix is a privately held company with headquarters based in Europe (Malta), a US office in Seattle, Washington and an office in London, UK. For more information about Acunetix, visit: http://www.acunetix.com; http://www.acunetix.de.</p>
<p>All product and company names herein may be trademarks of their respective owners.</p>
<p>For more information:
Please email Tamara Borg: tamara@acunetix.com
Acunetix Ltd: Tel: (+44) 0845 6126712, Fax: (+44) 0845 6126716
URL: http://www.acunetix.com.</p>

Most Popular

Most Popular Reviews

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Latest Articles

Resources

PCW Evaluation Team

Tom Pope

Dynabook Portégé X30L-G

Ultimately this laptop has achieved everything I would hope for in a laptop for work, while fitting that into a form factor and weight that is remarkable.

Tom Sellers

MSI P65

This smart laptop was enjoyable to use and great to work on – creating content was super simple.

Lolita Wang

MSI GT76

It really doesn’t get more “gaming laptop” than this.

Jack Jeffries

MSI GS75

As the Maserati or BMW of laptops, it would fit perfectly in the hands of a professional needing firepower under the hood, sophistication and class on the surface, and gaming prowess (sports mode if you will) in between.

Taylor Carr

MSI PS63

The MSI PS63 is an amazing laptop and I would definitely consider buying one in the future.

Christopher Low

Brother RJ-4230B

This small mobile printer is exactly what I need for invoicing and other jobs such as sending fellow tradesman details or step-by-step instructions that I can easily print off from my phone or the Web.

Featured Content

Product Launch Showcase

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?