Xibo Penetration Test

Hello!

I only found one topic regarding penetration tests of xibo.
Are there any known/ available test results regarding the security of xibo?
It would also be nice to have a guide or something regarding necessary precautions, settings on the player- and/or CMS side.

Thanks in advance,
Zoran

In version 4, xibo has prioritised security.
I don’t think there have been any penetration tests.
However, in most cases it is necessary to check the ports used on the server, the users and passwords strength.
After that, I usually add a reverse proxy to control injections, brute force attacks, etc…

The default settings are sufficient.
For the players, they are the ones that communicate with the server, and no access to the player is possible unless you open the web server (closed by default).

Let us know if you would like more information.