Help protect the website from attackers or bad actors, by identifying, preventing, or mitigating security vulnerabilities.

Password trigger

This is simple module that adds a trigger when a user password is updated. It uses the built-in trigger module from Drupal core.

The trigger can be setup at build/trigger/node.

Node access node reference

Node access node reference settings added to node reference fields.

Gives content access permissions to users if they have access to content that is referenced with Node reference or Entity reference.

Services OAuth

The 2.x branch of Services OAuth is now part of Services 3.x (its version synced with Services and therefor known as

Spamicide

The purpose of Spamicide is to prevent spam submission to any form on your Drupal web site. Spamicide adds an input field to each form then hides it with css, when spam bots fill in the field the form is discarded. The field, and matching .css file, are named in such a way as to not let on that it is a spam defeating device, and can be set by admins to almost anything they like(machine readable please). If logging is set, the log will show if and when a particular form has been compromised, and the admin can change the form's field name (and corresponding .css file) to something else.

email2image

This module is abandoned due to a security issue the maintainer didn’t fix. See SA-CONTRIB-2013-011 - email2image - Access Bypass - Unsupported for details.

If you want to use this module, your options are:

This module creates an image of a user's email address given the uid. It can be used in views, for example, to list users' email addresses as images instead of plain text, which can be picked up by bots for spamming.

Pages

Subscribe with RSS Subscribe to RSS - Security