Neat hack, d*d. Of course, that PHP code is just simulating the web server's built-in authentication mechanism.
What server and platform are you using, sadatx? If it's Apache, then you can likely put a .htaccess file in the appropriate directory and configure password protection there.
Do you have shell access to the server?
|