[OSSA 2013-002] Backend password leak in Glance error message (CVE-2013-0212)
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA256OpenStack Security Advisory: 2013-002CVE: CVE-2013-0212Date: January 29, 2013Title: Backend password leak in Glance error messageReporter: Dan Prince (Red...
View ArticleFree Windows 8 Activator? Think Again
Malicious schemes promising free or discounted items are effective because everyone likes a great offer. More so, if the offered item is a much-talked about product like Windows 8.Last year, we...
View ArticleOperation Ababil Suspended due to removal of insulting movie
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1Operation Ababil suspended due to removal of insulting movie- ------------------------------------------------------------Well, after a while a little bit of...
View ArticleAttributing Potentially Malicious URLs - Part 2
This is the second part of a three part series covering how to handle potentially malicious URLs and IP addresses without getting burned by directly communicating with them. We'll cover various online...
View ArticleWordpress plugins powerzoomer Arbitrary File Upload Vulnerability
----------------------------------------------------------------------Wordpress plugins - powerzoomer Arbitrary File Upload...
View ArticleWordpress plugins wp-powerplaygallery Arbitrary File Upload Vulnerability
-----------------------------------------------------------------------Wordpress plugins - wp-powerplaygallery Arbitrary File Upload...
View ArticleWordpress plugins wp-explorer-gallery Arbitrary File Upload Vulnerability
-----------------------------------------------------------------------Wordpress plugins  -  wp-explorer-gallery Arbitrary File Upload...
View ArticleExecuting Office 2007 Exploit on Office 2010
So in the last post, we discussed how to insert your own payload by reversing a malware sample. Here, we are going to discuss how to execute an Office 2007 exploit on Office 2010.In order to complete...
View ArticleInformation Governance Isn't Just Hype
Information governance is more than the latest buzzword — it goes well beyond traditional records management. While the term is becoming increasingly prevalent throughout all industries and types of...
View ArticleUS-CERT Current Activity - Apple Releases iOS 6.1
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1National Cyber Awareness SystemUS-CERT Current ActivityApple Releases iOS 6.1Original release date: January 30, 2013Last revised: --Apple has released iOS...
View Articlenew scripts/modules/exploits added to Nmap, OpenVAS, Metasploit, and Nessus...
This report describes any new scripts/modules/exploits added to Nmap,OpenVAS, Metasploit, and Nessus since yesterday.== OpenVAS plugins (3) ==r15324...
View ArticleJoomla Component - smartshop SQLi Vulnerability
-------------------------------------------------------------------Joomla Component - smartshop SQL Injection Vulnerability-------------------------------------------------------------------######...
View ArticleSA-CONTRIB-2013-011 - email2image - Access Bypass - Unsupported
View online: http://drupal.org/node/1903264 * Advisory ID: DRUPAL-SA-CONTRIB-2013-011 * Project: email2image [1] (third-party module) * Version: 6.x * Date: 2013-January-30 * Security risk: Moderately...
View ArticleWordpress plugin wp-image-news-slider Arbitrary File Upload Vulnerability
# Exploit Title: Wordpress plugin wp-image-news-slider Arbitrary File Upload Vulnerability# Date: 21/01/2013# Author: The Black Devils# Category : [ webapps ]# Dork :...
View ArticleSA-CONTRIB-2013-012 - Google Authenticator login - Access Bypass
View online: http://drupal.org/node/1903282 * Advisory ID: DRUPAL-SA-CONTRIB-2013-012 * Project: Google Authenticator login [1] (third-party module) * Version: 7.x * Date: 2013-January-30 * Security...
View ArticleWordpress plugin wp-royal-gallery Arbitrary File Upload Vulnerability
# Exploit Title: Wordpress plugin wp-royal-gallery Arbitrary File Upload Vulnerability# Date: 21/01/2013# Author: The Black Devils# Category : [ webapps ]# Dork :...
View ArticleSA-CONTRIB-2013-013 - Boxes - Cross site scripting (XSS)
View online: http://drupal.org/node/1903300 * Advisory ID: DRUPAL-SA-CONTRIB-2013-013 * Project: Boxes [1] (third-party module) * Version: 7.x * Date: 2013-January-30 * Security risk: Moderately...
View ArticleWordpress plugin wp-homepage-slideshow Arbitrary File Upload Vulnerability
# Exploit Title: Wordpress plugin wp-homepage-slideshow Arbitrary File Upload Vulnerability# Date: 21/01/2013# Author: The Black Devils# Category : [ webapps ]# Dork :...
View ArticleSA-CONTRIB-2013-014 - Drush Debian Packaging - Information Disclosure -...
View online: http://drupal.org/node/1903324 * Advisory ID: DRUPAL-SA-CONTRIB-2013-014 * Project: Drush Debian Packaging [1] (third-party module) * Version: 7.x * Date: 2013-January-30 * Security risk:...
View ArticleVulnerabilities in WordPress Attack Scanner for WordPress
I want to warn you about security vulnerabilities in WordPress AttackScanner plugin for WordPress.These are Information Leakage vulnerabilities. This is security plugin. Inmy 63 advisories about...
View Article