PolicyPak Software Rolls Out Management Tool For Mozilla Firefox
The new Pak offers an easier way to enforce and deliver settings in the popular web browser.When you use PolicyPak and our Pre-configured PolicyPak for Firefox, you get to use the actual, unchanged...
View ArticleiCart Pro version 4.0.1 SQLi Vulnerability
# Exploit Title: vbcovor ICART SQLI# Date: 25/01/2013# Author(s): n3tw0rk# Contact: Mail:infectedelite@gmail.com# Product: iCart Pro# Software Version 4.0.1# Product Download:...
View ArticleHandy Apps Launches Password Wallet – An Invisible Personal Data Security App
Handy Apps, the makers of the top grossing finance app EasyMoney, is proud to launch Password Wallet in Google Play Store. Password Wallet is the only invisible data security app that securely manages...
View ArticleKMPlayer 3.5.0.77 DoS Vulnerability
Title : KMPlayer (PlayList M3U) Denial Of Service PoC All VersionsAuthor : Jigsaw (Abdelmorite Eljoaydi)Date : 26-01-2013E-mail : jigsaw0658@gmail.comHome : Morroco Facebook page :...
View ArticleFacebook Live to Cover Data Privacy Day 2013 Kick-Off Event
Speakers Include U.S. Federal Trade Commissioner Ohlhausen and Digital Experts from Facebook, Intel, Microsoft, AT&T, MasterCard, U.S. Department of Commerce and OthersWASHINGTON, Jan. 25, 2013...
View ArticleAvailability of ModSecurity v2.7.2
DownloadModSecurity is an open source product licensed under ASLv2. It comes with full source code and documentation. Current releases are signed by Breno Silva. These public keys are available via...
View ArticleAnon Video On U.S. Justice System & Aaron Swartz (Inclusive implementation of...
Anon also claims attack on U.S. Justice Department's Sentencing Commission Site and further claim they are going to release government data.Anonymous Operation Last ResortSource...
View ArticleHash encapsulation to bypass AV
The previous entry was about lowering detection rates on AV by just simply recompiling and/or optimizing the source. This worked pretty well except for the really known tools like meterpreter. So let’s...
View ArticleMalware URLs
It's been a while since I started writing a first prototype to try to catch as much malware (URLs and samples) as possible. Today I can say my project is all grown up as it's generating, daily, a feed...
View ArticleSecureHeaders-automatically apply several headers that are related to security
SecureHeadersThe gem will automatically apply several headers that are related to security. This includes:Content Security Policy (CSP) - Helps detect/prevent XSS, mixed-content, and other classes of...
View ArticlePhotodex ProShow Producer v5.0.3297 ExpandMacroFilename() Local Buffer...
Inshell Security Advisoryhttp://www.inshell.net1. ADVISORY INFORMATION-----------------------Product: Photodex ProShow ProducerVendor URL: www.photodex.comType: Stack-based Buffer Overflow...
View Articlenew scripts/modules/exploits added to Nmap, OpenVAS, Metasploit, and Nessus...
This report describes any new scripts/modules/exploits added to Nmap,OpenVAS, Metasploit, and Nessus since yesterday.== Metasploit modules (5) ==r16385...
View ArticleA (Graphical) World of Botnets and Cyber Attacks
We live in a World made of Botnets and cyber attacks! While I am typing these few words in my keyboard, other fingers somewhere else in the Globe are moving quickly through the keys, firing stream of...
View ArticleThe Swartz suicide and the sick culture of the Justice Dept.
Some lawyers are joking when they refer to the Moakley Courthouse as “the House of Pain.” I’m not.The ill-considered prosecution leading to the suicide of computer prodigy Aaron Swartz is the most...
View ArticleWordpress Dynamic Font Replacement 1.3 plugin SQLi Vulnerability
# Exploit Title: Wordpress Dynamic Font Replacement 1.3 plugin SQL Injection Vulnerability# Date: 2013-01-27# Author: bd0rk#Software Link:...
View ArticlecounterSen 1.1.0 Admin Bypass Vulnerability
=> counterSen 1.1.0 Admin Bypass Vulnerability=> Discovered by: bd0rk=> Contact: bd0rk[at]hackermail.com=> Greetz: exploit-db.com, zone-h.org, Mandy, rgod, 1930=> Affected Software:...
View ArticleminiBB 3.x Addon preview Remote File Include Vulnerability
# Exploit Title: miniBB 3.x Addon preview Remote File Include Vulnerability# Date: 2013-01-27# Author: bd0rk# Vendor or Software Link: http://www.minibb.com/download.php?file=minibb_plugin_preview#...
View ArticleConsumers Launch Landmark Legal Case Against Google Snooping
PR NewswireLONDON, January 27, 2013 /PRNewswire/ --A group of internet users has launched a landmark privacy case against Google for undermining the security settings on Apple's Safari browser to track...
View Article[SE-2012-01] An issue with new Java SE 7 security features
Hello All,According to Oracle's Java security head, the company hasrecently made "very significant" security improvements toJava, such as to prevent silent exploits. The problem isthat "people don't...
View ArticleSecurity Brief: Google Defacements and Blackmail
Almost each day of this past week we saw headlines which read “Google was defaced.” Google wasn’t actually defaced, but some hacker groups managed to breach various DNS servers and made it look like...
View Article