Because of stupid comments of ignorant Mr. JAVesey, vaughan, John_N (wish you good luck with your zarilla project).
I resume constructive comments to XOOPS users :
"As several posters have said, keeping core and modules up-to-date is one of the best things people can do"
davidl2, Forum Moderator
"Apache has mod_security, XOOPS has Protector,
Windows has security add-ons, Linux has security add-ons."
skenow
Remember to install module Protector from Mr. Gijoe site
http://xoops.peak.ne.jp/Xoops need an extra module to be less vulnerable. It is not part of core. Actual XOOPS core do not provide that minimum security.
10 days ago connection from same IP with last 3 users accounts, moderators and admins last login.
10 days ago connection from 3 different IP, Austria, Germany and Switzerland with switch 6 users accounts.
Do not keep important users data on your XOOPS site.
I repeat my first post:
Programmers are busy with code and moderators with support.
Users can visit frequently the security site:
hereUsers can report to developers security problems.
It is easy way to contribute.
After audit code and I do polite comment to moderators and developers about lack of authentication layer. I am moving sites from XOOPS 2.0.16, 2.2,
XOOPS Cube joomla and drupal. Because these project developers are coding new core and it is not secure for business professional.
I have no obligation to contribute and I do polite comment.
But you reply with stupid comments. Ask Mr. Herko Formerly XOOPS.org project manager to achieve administrative task.
Good Luck.