in reply to Changing A File Name On The Fly

... And how do you propose to protect your site and guests from malware uploaded as if it were (or, embedded in) a picture?

If I've misconstrued your question or the logic needed to answer it, I offer my apologies to all those electrons which were inconvenienced by the creation of this post.

Quis custodiet ipsos custodes. Juvenal, Satires

Replies are listed 'Best First'.
Re^2: Changing A File Name On The Fly
by tangent (Parson) on Dec 19, 2013 at 00:29 UTC
    Good point, and something I hadn't considered. Would opening and then writing the file in Image::Magick or some other image module protect against this?
      Possibly, but not likely. WAG: perhaps one time in a hundred... but I may be off by several orders of magnitude.

      For better ideas, search the Monastery for prior discussion -- IIRC, several threads offer suggestions of ways to sandbox uploads -- especially pix.


      Quis custodiet ipsos custodes. Juvenal, Satires