|
[For 1.6] MySessions
|
|
03-08-2012, 03:22 AM
(This post was last modified: 03-09-2012 05:07 PM by Paul H..)
Post: #1
|
|||
|
|||
|
MySessions
MySessions
Description: With this plugin, users can view all of their account's current sessions and log out any sessions they find suspicious. Admins can view all sessions. Based on the functionality found in Gmail and Deviantart. The below screenshot shows the usercp?action=mysessions page. The useragent "1'" was made by Nathan as he was testing the plugin for vulnerabilities, of which he found some and I fixed immediately ![]() IP address links go to *the ip address*.ipaddress.com. If the plugin can, it will display the hostname and location of the IP address. ![]() If there are multiple sessions for the same account, a warning shows up (which can be dismissed) ![]() Install: This plugin adds one database table and edits one template. Upgrade: From 1.0 to 1.1: re-upload mysessions.php From 1.0, 1.1 to 1.2: re-upload mysessions.php, deactivate and reactivate. This is needed to add a new column, uid, to the mysessions_kill table. Change log: 1.0: Initial release 1.1: Minor bug fixes, and feature Multiple Sessions Alerts added 1.2 Added features:
Fully commented code [b]1.3:[b] SQLi problem affecting 1.2 fixed Support: Support will be given on MyBB Security. http://www.mybbsecurity.net/topic-mysessions Download: Please download from MyBB Security to keep download counts accurate. http://www.mybbsecurity.net/topic-mysessions -Paul H. |
|||
|
03-08-2012, 03:43 AM
Post: #2
|
|||
|
|||
|
RE: MySessions
Will definetely at-least try it out.
Support PM's will be ignored. Plugins: Announcement Bars - Custom Reputation - Mark PM As Unread My Profile |
|||
|
03-08-2012, 03:44 AM
Post: #3
|
|||
|
|||
|
RE: MySessions
It's been security audited by Nathan Malcolm so you know it's secure
-Paul H. |
|||
|
03-08-2012, 05:46 AM
Post: #4
|
|||
|
|||
RE: MySessions This user has been denied support.
Looks great Paul.
Z5T - Dynamic URL Shortener My Plugins & Themes |
|||
|
03-08-2012, 06:30 AM
Post: #5
|
|||
|
|||
RE: MySessions
(03-08-2012 03:44 AM)Paul H. Wrote: It's been security audited by Nathan Malcolm so you know it's secureHahaha I may put this on my forum in the future. It seems like it could have a benefit for high-powered accounts, as they could stop another session if needed. Latest YT Vid: History of GV MyBB IRC Alex Smith Wrote:If you mess with things you don't understand they can go horribly wrong. A well known example Euan destroying the mybb repo on github once |
|||
|
03-09-2012, 03:42 AM
Post: #6
|
|||
|
|||
|
RE: MySessions
Finally! Somebody who takes security seriously! Installing!
|
|||
|
03-09-2012, 07:41 PM
Post: #7
|
|||
|
|||
|
RE: MySessions
Updated to 1.3.1.
-Paul H. |
|||
|
03-13-2012, 12:33 AM
Post: #8
|
|||
|
|||
|
RE: MySessions
Upgrade instructions?
|
|||
|
03-13-2012, 12:35 AM
Post: #9
|
|||
|
|||
RE: MySessions
(03-08-2012 03:22 AM)Paul H. Wrote: Upgrade: -Paul H. |
|||
|
03-13-2012, 03:36 AM
Post: #10
|
|||
|
|||
|
RE: MySessions
Can I know how a complex password looks like? I thought my email password was enough complex
Support PM's will be ignored. Plugins: Announcement Bars - Custom Reputation - Mark PM As Unread My Profile |
|||
|
« Next Oldest | Next Newest »
|
User(s) browsing this thread: 1 Guest(s)
Search
Member List
Calendar
Help



![[Image: gyrd.png]](http://i.imm.io/gyrd.png)
![[Image: gysk.png]](http://i.imm.io/gysk.png)




This user has been denied support.