| Mon | Tue | Wed | Thu | Fri | Sat | Sun |
| 1 | 2 | 3 | 4 | |||
| 5 | 6 | 7 | 8 | 9 | 10 | 11 |
| 12 | 13 | 14 | 15 | 16 | 17 | 18 |
| 19 | 20 | 21 | 22 | 23 | 24 | 25 |
| 26 | 27 | 28 | 29 | 30 | 31 | |
T2'08: Call for Papers 2008 (Helsinki / Finland)
( 103 days 13 hours ago)
*** T2'08 - Call For Papers *** Helsinki, Finland 16 - 17 October 2008 We are pleased to announce the annual T2´08 conference, which will take place in Helsinki, Finland, from October 16 to 17, 2008. ...
Re: function sleep() in all versions of PHP
( 103 days 13 hours ago)
This vulnerability is not per se a vulnerability but a annoyance that has been dealt with in many ways. It is quite common to not let any process on a web server run longer then a specified time. This is usually made possible by some trivial ...
[SECURITY] [DSA 1587-1] New mtr packages fix execution of arbitrary code
( 103 days 13 hours ago)
- Debian Security Advisory DSA-1587-1 securityatdebian.org Steve Kemp May 26, 2008 - Package : mtr Vulnerability : buffer overflow Problem type : remote Debian-specific: no CVE Id(s) : CVE-2008-2357 Adam Zabrocki discovered that under certain circumstances mtr, a full ...
Zina 1.0rc3 Remote Directory Traversal Vulnerability & XSS Vulnerability
( 103 days 13 hours ago)
In The Name Of God Script : Zina 1.0rc3 Type : Remote Directory Traversal Vulnerability & XSS Vulnerability Discovered by : Dr.Crash Or Khashayar Fereidani Our Team : IRCRASH Our WebSite : IRCRASH Bugtraq : ...
Repair Online v1.2 (sentout) Create Admin Vulnerability
( 103 days 13 hours ago)
/ \ ( [)/ () () \ C. H. R. O. O. T. SECURITY GROUP - -- -- -- - Hacks In Taiwan \ Conference 2008 ( () \\ Title :: Repair Online v1.2 (sentout) Create Admin Vulnerability ...
Advisory - Rsyncrypto maybe affected from Debian OpenSSL reduced entropy problem
( 103 days 13 hours ago)
Subject: Advisory - Rsyncrypto maybe affected from Debian OpenSSL reduced entropy problem Date: Friday 23 May 2008 From: Shachar Shemesh To: L-rsyncrypto Background Rsyncrypto[1] is a file encryption tool. It has a single RSA key that ...
SECOBJADV-2008-01: Lenovo SystemUpdate SSL Certificate Issuer Spoofing Vulnerability
( 103 days 13 hours ago)
= Security Objectives Advisory (SECOBJADV-2008-01) = Lenovo SystemUpdate SSL Certificate Issuer Spoofing Vulnerability AFFECTED: Lenovo System Update 3 (Version 3.13.0005, Build date 2008-1-3) PLATFORM: Intel / Windows CLASSIFICATION: Trust of OpenSSL Certificate Without Validation (CWE-599) RESEARCHER: Derek Callaway IMPACT: Client-side code execution ...
Campus Bulletin Board v3.4 Multiple Remote Vulnerabilities
( 103 days 13 hours ago)
/ \ ( [)/ () () \ C. H. R. O. O. T. SECURITY GROUP - -- -- -- -- - Hacks In Taiwan \ Conference 2008 ( () \\ Title :: Campus Bulletin Board v3.4 Multiple Remote Vulnerabilities ...
Ablespace 1.0 'cat_id' Parameter SQL Injection Vulnerability
( 103 days 13 hours ago)
By : s3rv3rhack3r (Ali Jasbi) Vendor : abk-soft.com Name : ablespace version : All Version Risk : Very high advcat.php >>> if(!empty($GET['catid'])){ $str = ''; DB::query("select * from advcats where id=".tosql(getparam('catid'),"Number")); You can exploit this vulnerability like this : =[sql inection]
Class System v2.3 Multiple Remote Vulnerabilities
( 103 days 13 hours ago)
/ \ ( [)/ () () \ C. H. R. O. O. T. SECURITY GROUP - -- -- -- - Hacks In Taiwan \ Conference 2008 ( () \\ Title :: Class System v2.3 Multiple Remote Vulnerabilities ...
Mini-CWB <= 2.1.1 Remote XSS Vulnerability
( 103 days 13 hours ago)
Mini-CWB <= 2.1.1 Remote XSS Vulnerability AUTHOR : CWH Underground DATE : 25 May 2008 SITE : www.citec.us APPLICATION : BMForum VERSION : <= 2.1.1 (Lastest Version) VENDOR : DOWNLOAD : DORK: "powered by mini-cwb" Multiple XSS Exploit in 'connector.php' ...
function sleep() in all versions of PHP
( 103 days 13 hours ago)
There is a quite big problem with sleep() function in php, The maxexecutiontime set to 60sec. in safe mode can be easy passed by using sleep() funcion, for example this script: ...
phpFix v2 Multiple SQL Injection Vulnerability
( 103 days 13 hours ago)
/ \ ( [)/ () () \ C. H. R. O. O. T. SECURITY GROUP - -- -- -- - Hacks In Taiwan \ Conference 2008 ( () \\ Title :: phpFix v2 Multiple SQL Injection Vulnerability ...
Excuse Online (pwd) SQL Injection Vulnerability
( 103 days 13 hours ago)
/ \ ( [)/ () () \ C. H. R. O. O. T. SECURITY GROUP - -- -- -- - Hacks In Taiwan \ Conference 2008 ( () \\ Title :: Excuse Online (pwd) SQL Injection Vulnerability ...
Re: vuln in WordPress plugin Upload File(UP)
( 103 days 13 hours ago)
Summary Software: Upload File (WordPress Plugin) Critical Level: Moderate Type: SQL Injection Class: Remote Status: Unpatched PoC/Exploit: Not Available > * Solution: Not Available Discovered by: eserg.ru Description 1. SQL Injection. [path]/wp-uploadfile.php?fid=[SQL] > no exploit SQL query: ...
Zero Day Threat
( 104 days 8 hours ago)
In this book excerpt, the authors of Zero Day Threat: The Shocking Truth of How Banks and Credit Bureaus Help Cyber Crooks Steal Your Money and Identity detail how Microsoft missed the boat on cybercrime.

Getting an F and Turning It Into Fun
( 104 days 8 hours ago)
An audit shows a need for more effective security-awareness training. But how can it be both cheap and entertaining?







