CodeIgniter Forums
MP3 Uploading Website. What are the risks? - Printable Version

+- CodeIgniter Forums (https://forum.codeigniter.com)
+-- Forum: Archived Discussions (https://forum.codeigniter.com/forumdisplay.php?fid=20)
+--- Forum: Archived General Discussion (https://forum.codeigniter.com/forumdisplay.php?fid=21)
+--- Thread: MP3 Uploading Website. What are the risks? (/showthread.php?tid=36814)



MP3 Uploading Website. What are the risks? - El Forum - 12-15-2010

[eluser]matt6805[/eluser]
I’ve created a simple site where users can upload mp3 files to a directory for others to listen to. The mp3 file contents are checked by the admin before they’re published to the live site.

My concern is the upload feature. Although I’ve limited the file extension to only allow MP3’s, are there security concerns I should be aware of before I make this live? What’s the best way to protect my server and users from malicious files being uploaded? Thanks all!

Regards,
Matt


MP3 Uploading Website. What are the risks? - El Forum - 12-15-2010

[eluser]ecsyle31[/eluser]
Take a look at this - http://shsc.info/FileUploadSecurity


MP3 Uploading Website. What are the risks? - El Forum - 12-15-2010

[eluser]matt6805[/eluser]
Thank you for the link. I think that CI handles some of this validation, and I already have it in place. But this list does give me a variety of scenarios to test before I go public. Thanks again!