EdgeWave Announces World's First Advanced Web Gateway for Next-Generation Web...
iPrism Advanced Web Gateway Provides Essential Security for the Modern Social EnterpriseSAN DIEGO, CA--(Marketwire - Mar 1, 2013) - EdgeWave Inc. today announced the availability of the iPrism Advanced...
View ArticleLogRhythm Teams with Cisco Systems to Host Webinar on How to Defend Eroding...
BOULDER, Colo.--(BUSINESS WIRE)--LogRhythm, the largest and fastest growing independent Security Information and Event Management (SIEM) provider in the world, today announced it will host a webinar in...
View ArticleMulti-Factor Security Provider PassBan Announces Wearable Device Verification
SAN FRANCISCO, March 1, 2013 /PRNewswire-iReach/ -- PassBan, a multi-factor mobile security provider, announced today during an Open House Developer Event the support of wearable verification devices....
View ArticleCybercriminals Hop On the Google Project Glass Bandwagon
Cybercriminals tend to leverage what’s popular and new. Case in point, the much-anticipated Google Project Glass is being used as a social engineering lure to trick unsuspecting users into scams.We...
View ArticlePenta Security Announces Worldwide Release of the First MySQL DB Encryption...
"Freeware Licenses Available for Non-Profit Personal Use"SEOUL, SOUTH KOREA--(Marketwire - Mar 1, 2013) - Web security and DB encryption provider Penta Security Systems (Representative CEO/Founder Seok...
View ArticleThreat Outbreak Alert: Fake Bank od China Balance Notification E-mail Messages
DescriptionCisco Security Intelligence Operations has detected significant activity related to spam e-mail messages that claim to contain a bank balance notification for the recipient. The text in the...
View Article[Drupal] SA-CONTRIB-2013-031 - Premium Responsive theme - Cross Site...
View online: http://drupal.org/node/1929508 * Advisory ID: DRUPAL-SA-CONTRIB-2013-031 * Project: Premium Responsive [1] (third-party theme) * Version: 7.x * Date: 2013-February-27 * Security risk:...
View ArticleRSA® Authentication Agent 7.1.1 for Microsoft Windows® Access Control...
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1ESA-2013-012: RSA® Authentication Agent 7.1.1 for Microsoft Windows® Access Control VulnerabilityEMC Identifier: ESA-2013-012CVE Identifier:...
View Articlenew scripts/modules/exploits added to Nmap, OpenVAS, Metasploit, and Nessus...
This report describes any new scripts/modules/exploits added to Nmap,OpenVAS, Metasploit, and Nessus since yesterday.== OpenVAS plugins (36) ==r15580 865389...
View ArticleDoorgets CSRF Vulnerability
##Author: n0pe<html> <body> <form name="csrf" method="post" action="http://localhost/door/admin/?r=config&siteweb"> Title <input...
View Articlerubygem passenger security issue
Hi,https://bugzilla.novell.com/show_bug.cgi?id=804722https://github.com/FooBarWidget/passenger/commit/8c6693e0818772c345c979840d28312c2edd4ba4#commitcomment-2643541Quoting:There is a security issue...
View Articlebusybox mdev creates deep subdirs in /dev with 0777 permissions
Package: busyboxVersion: 1:1.20.0-7Severity: importantTags: security patch upstream fixed-upstream pendingWhen device node or symlink in /dev should be created inside2-or-deeper subdirectory...
View ArticleLatest Java Zero-Day Shares Connections with Bit9 Security Incident
Symantec recently received information on a new Java zero-day, Oracle Java Runtime Environment CVE-2013-1493 Remote Code Execution Vulnerability (CVE-2013-1493). The final payload in the attack...
View ArticleSami FTP Server 2.0.1 LIST Command Buffer Overflow
\\Authored by superkojimanfrom socket import *import struct, sysIP = sys.argv[1]# Windows bind shellcode from https://code.google.com/p/w32-bind-ngs-shellcode/# Remove bad chars using msfencode:#...
View Article[SECURITY] [DSA 2636-1] xen security update
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1- -------------------------------------------------------------------------Debian Security Advisory DSA-2636-1...
View ArticleHanso Player 2.1.0 (.m3u) - Buffer Overflow Vulnerability
#!/usr/bin/python# Exploit Title:Buffer Overflow Vulnerability Hanso Player version 2.1.0# Download link :www.hansotools.com/downloads/hanso-player-setup.exe# Author: metacom# RST# version: 2.1.0#...
View ArticleUS-CERT Current Activity - UPDATE: Ongoing Malicious Cyber Activity Against...
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1National Cyber Awareness SystemUPDATE: Ongoing Malicious Cyber Activity Against U.S. Government and Private Sector EntitiesOriginal release date: February...
View ArticleUSB Disk & File Transfer v1.3.1 - File Include > Arbitrary File Upload...
Title:======USB Disk & File Transfer v1.3.1 - File Include > Arbitrary File Upload...
View ArticlePaypal Bug Bounty #5 - Persistent Web Vulnerability
Title:======Paypal Bug Bounty #5 - Persistent Web VulnerabilityDate:=====2013-03-02References:===========http://www.vulnerability-lab.com/get_content.php?id=639VL-ID:=====639Common Vulnerability...
View ArticleIPMap v2.5 iPad iPhone - File Upload Web Vulnerabilities
Title:======IPMap v2.5 iPad iPhone - File Upload Web VulnerabilitiesDate:=====2013-02-18References:===========http://www.vulnerability-lab.com/get_content.php?id=866VL-ID:=====866Common Vulnerability...
View Article