Waks Ask and Answer Jul 12, 18:53
Jem has blogged about it and so has Amelie and now I’m doing it too because it’s starting to really bug me.
Redistributing scripts is wrong, but redistributing a script that is insecure (when the knowledge that the script is insecure is only a small Google search away). Yet shockingly enough plenty of people choose to use and or redistribute Waks. And even stranger some of them claim to have fixed the insecurities by adding isLoggedIn( ); to the config file.
So I’d like to ask everyone who is distributing it or using it a question: Why are you using/distributing it? Why are you taking the risk and why are you advising other people to do the same? For each of the sites I’ve linked there are hundreds more still using it and still redistributing it. Since it is so easy to search and find out that Waks is not a safe script there is no excuse at all for not trashing this script.
Hi I'm Becky, often referred to as The Knitting Hillbilly and Pussybear, owner of this site and general nuisance. I'm a knitter, serial complainer, known whistle blower and I run the ever popular