- Vuln: Mahara Resume Blocktype Cross Site Scripting Vulnerability
- Vuln: Mahara Admin Password Reset Security Bypass Vulnerability
- Vuln: Google Chrome prior to 3.0.195.32 Multiple Security Vulnerabilities
- Vuln: Multiple Horde Products Cross-Site Scripting Vulnerabilities and File Overwrite Vulnerability
- Vuln: Mod_Perl Path_Info Remote Denial Of Service Vulnerability
- Vuln: Apache mod_perl 'Apache::Status' and 'Apache2::Status' Cross Site Scripting Vulnerability
- Vuln: FreeBSD 'fifo_vnops.c' Resource Leak Local Denial of Service Vulnerability
- Vuln: Citrix NetScaler and Access Gateway Denial Of Service Vulnerability
- Vuln: PDFLib 'open_basedir' Restriction Bypass Vulnerability
- Vuln: Multiple Vendor TLS Protocol Session Renegotiation Security Vulnerability
Search
Search Result
-
Updates for Adobe's Shockwave, Sun's Java
Category: Network Security & Hacking News/Latest Security News
Sun Microsystems has issued an update to its Java software that fixes at least one security vulnerability. Separately, Adobe is pushing out a patch to plug four security holes in its Shockwave Player. ...Thursday, 05 November 2009 -
Vulnerability in TLS Protocol during Renegotiation [CVE-2009-3555]
Category: Network Security & Hacking News/Global Security News
... which use Network Security Services (NSS), Java Secure Socket Extensions (JSSE), OpenSSL or GnuTLS libraries may be affected. Sun is evaluating the impact of the issue on various products which make ...Thursday, 05 November 2009 -
Vuln: Prototype JavaScript Framework Cross-Site Ajax Request Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Prototype JavaScript Framework Cross-Site Ajax Request Vulnerability Read Full Article ...Wednesday, 04 November 2009 -
Java 6 Update 17 fixes multiple security vulnerabilities
Category: Network Security & Hacking News/Latest Security News
Various buffer and integer overflows triggered by crafted audio and image files allow Java applets and 'Java Web Start' applications to escalate their privileges Various buffer and integer overflows ...Tuesday, 03 November 2009 -
Python Pocket Reference (Python in Your Pocket) (Paperback) newly tagged "programming"
Category: Network Security & Hacking Products/Programming
... by K. Langer "Java Lover" Customer tags: programming, python reference Read Full Article ...Tuesday, 03 November 2009 -
Sun Alert 269868 The Java Update Mechanism on Non-English Versions Does Not Update the JRE When a New Version is Available
Category: Network Security & Hacking News/Global Security News
Product: Java Platform, Standard Edition (Java SE) The Java Runtime Environment (JRE) Java Update mechanism running on non-English versions of the Windows operating system does not update the JRE when ...Monday, 02 November 2009 -
Sun Alert 270475 A Security Vulnerability in the Java Runtime Environment With Verifying HMAC Digests may Allow Authentication to be Bypassed
Category: Network Security & Hacking News/Global Security News
Product: Java Platform, Standard Edition (Java SE) A security vulnerability in the Java Runtime Environment with verifying HMAC digests may allow authentication to be bypassed. This could allow a user ...Monday, 02 November 2009 -
Sun Alert 269870 Security Vulnerability in the Java Web Start Installer May be Leveraged to Allow Untrusted Java Web Start Application to Run As Trusted Application
Category: Network Security & Hacking News/Global Security News
Product: Java Platform, Standard Edition (Java SE) A security vulnerability in the Java Web Start Installer may be leveraged to allow an untrusted Java Web Start application to run as a trusted application ...Monday, 02 November 2009 -
Sun Alert 269869 Command Execution Vulnerability in the Java Runtime Environment Deployment Toolkit May be Leveraged to Execute Arbitrary Code
Category: Network Security & Hacking News/Global Security News
Product: Java Platform, Standard Edition (Java SE) A command execution vulnerability in the Java Runtime Environment Deployment Toolkit may be leveraged to execute arbitrary code. This may occur as the ...Monday, 02 November 2009 -
Sun Alert 270474 Buffer and Integer Overflow Vulnerabilities in the Java Runtime Environment With Processing Audio and Image Files May Allow Privileges to be Escalated
Category: Network Security & Hacking News/Global Security News
Product: Java Platform, Standard Edition (Java SE) Multiple buffer and integer overflow vulnerabilities in the Java Runtime Environment with processing audio and image files may allow an untrusted applet ...Monday, 02 November 2009 -
Sun Alert 270476 Two Security Vulnerabilities in the Java Runtime Environment With Decoding DER Encoded Data and Parsing HTTP Headers may Result in a Denial of Service (DoS)
Category: Network Security & Hacking News/Global Security News
Product: Java Platform, Standard Edition (Java SE) Two vulnerabilities in the Java Runtime Environment with decoding DER encoded data and parsing HTTP headers may separately allow a remote client to cause ...Monday, 02 November 2009 -
Weekly Intelligence Summary: 2009 – 10 – 30
Category: Network Security & Hacking News/Latest Security News
... with the primary goal of stealing bank account information. Sun issued advance notification to patch at least six vulnerabilities in Java on Tuesday, 2009-11-03. There is also an Most of the threat ...Monday, 02 November 2009 -
Vuln: Sun Java SE Advance Notification of Multiple Security Vulnerabilities
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java SE Advance Notification of Multiple Security Vulnerabilities Read Full Article ...Sunday, 01 November 2009 -
Object-Oriented JavaScript: Create scalable, reusable high-quality JavaScript applications and libraries (Paperback) newly tagged "programming"
Category: Network Security & Hacking Products/Programming
Object-Oriented JavaScript: Create scalable, reusable high-quality JavaScript applications and libraries (Paperback) By Stoyan Stefanov Buy new: $31.64 Customer Rating: ...Sunday, 01 November 2009 -
Advance notification of Security Updates for Java SE
Category: Network Security & Hacking News/Global Security News
On November 3, 2009, Sun will release the following security updates: JDK and JRE 6 Update 17 JDK and JRE 5.0 Update 22 SDK and JRE 1.4.2_24 SDK and JRE 1.3.1_27 The following Sun Alerts corresponding ...Thursday, 29 October 2009 -
Mozilla update repairs Firefox buffer overflow vulnerabilities
Category: Network Security & Hacking News/Latest Security News
... in a variety of browser functions. Mozilla repaired four critical memory corruption errors affecting the browser engine and the JavaScript engine. In its advisory, Mozilla said some of the errors could ...Thursday, 29 October 2009 -
Hack-o-Lantern
Category: Network Security & Hacking News/Latest Security News
... cool to me on many levels. Here's a java implementation of Life for you to tinker with. Let's see your pumpkins!HiR Information Report is brought you you by Edgeos, Your Network Security Platform. We ...Wednesday, 28 October 2009 -
Vuln: Mozilla Firefox JavaScript Web-Workers Remote Code Execution Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Mozilla Firefox JavaScript Web-Workers Remote Code Execution Vulnerability Read Full Article ...Tuesday, 27 October 2009 -
Review of Hacking Exposed: Web 2.0 Posted
Category: Network Security & Hacking News/Latest Security News
... when I was already reading snippets mentioning JavaScript arrays in the introduction. That set the tone for the book: compressed, probably rushed, mixing material of differing levels of difficulty. For ...Monday, 26 October 2009 -
Giving OpenSolaris another shot
Category: Network Security & Hacking News/Latest Security News
... desktop environment within OpenSolaris is familiar, with a very Ubuntu-inspired default configuration. It's certainly much different than my Solaris 10 "Java Desktop" interface at the office. The default ...Monday, 26 October 2009 -
Alleged critical vulnerability in Sun Java System Web Server
Category: Network Security & Hacking News/Latest Security News
A commercial exploit package allegedly contains a zero day exploit for Sun's web platform A commercial exploit package allegedly contains a zero day exploit for Sun's web platform Read Full Article ...Monday, 26 October 2009 -
Vuln: Sun Java System Web Server Unspecified Remote Buffer Overflow Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java System Web Server Unspecified Remote Buffer Overflow Vulnerability Read Full Article ...Sunday, 25 October 2009 -
Vuln: Adobe Reader and Acrobat JavaScript Memory Corruption Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Adobe Reader and Acrobat JavaScript Memory Corruption Vulnerability Read Full Article ...Sunday, 25 October 2009 -
Oracle Database 10g DBA Handbook (Paperback) newly tagged "databases"
Category: Network Security & Hacking Products/Databases
... Customer tags: oracle(5), oracle 10g(3), dba(2), relational databases, sql, javan, databases, oracle tuning, database management systems, database, kevin loney Read Full Article ...Saturday, 24 October 2009 -
Metasploit JSP Shells
Category: Network Security & Hacking News/Latest Security News
Stephen Fewer has pushed up a jsp reverse and jsp bind shell. http://dev.metasploit.com/redmine/projects/framework/repository/show/modules/payloads/singles/java I'm not sure of all the ways to use them ...Thursday, 22 October 2009 -
VanMorrison.com Iframe
Category: Network Security & Hacking News/Latest Security News
... up. I haven't yet learned javascript deobfuscation but that didn't look like good stuff was happening. So I took a sacrificial lamb system. (still dangerous don't try this at home). And went ...Wednesday, 21 October 2009 -
JAVA ENTERPRISE COMPUTING: Enabling Breakaway Business Strategies (Hardcover) newly tagged "operating systems"
Category: Network Security & Hacking Products/Operating Systems
JAVA ENTERPRISE COMPUTING: Enabling Breakaway Business Strategies (Hardcover) By Sun Microsystems. 14 used and new from $2.39 First tagged "operating systems" ...Wednesday, 21 October 2009 -
Vuln: Sun Java Runtime Environment and Java Development Kit Multiple Security Vulnerabilities
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Runtime Environment and Java Development Kit Multiple Security Vulnerabilities Read Full Article ...Thursday, 15 October 2009 -
Vuln: Sun Java Web Start and Java Plug-in JAR File Privilege Escalation Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Web Start and Java Plug-in JAR File Privilege Escalation Vulnerability Read Full Article ...Thursday, 15 October 2009 -
More On Using Sensepost's reDuh
Category: Network Security & Hacking News/Latest Security News
... you magic to upload the page to the remote server. once its there you can connect to it with the reDuh Client yomama@c0:~/pentest/webapp/reduh/reDuhClient$ sudo java -jar reDuhClient.jar http://172.16.82.144/CFIDE/reDuh.jsp ...Thursday, 15 October 2009 -
Vuln: Sun Java Runtime Environment Unpack200 JAR Unpacking Utility Integer Overflow Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Runtime Environment Unpack200 JAR Unpacking Utility Integer Overflow Vulnerability Read Full Article ...Wednesday, 14 October 2009 -
Vuln: Sun Java Runtime Environment Audio System Privilege Escalation Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Runtime Environment Audio System Privilege Escalation Vulnerability Read Full Article ...Wednesday, 14 October 2009 -
ha.ckers: JavaScript Protocol Comment Newline Injection
Category: Network Security & Hacking News/Latest Security News
ha.ckers: JavaScript Protocol Comment Newline Injection ha.ckers: JavaScript Protocol Comment Newline Injection Read Full Article ...Wednesday, 14 October 2009 -
Obama Nobel Prize Spam Links to Malware and Drive-By
Category: Network Security & Hacking News/Global Security News
... do not want, there is an extra bit of fun embedded within this page. Located at the bottom of the page is a little snippet of encoded Javascript that looks like this: Decoding this Javascript reveals ...Wednesday, 14 October 2009 -
Drive By: Adobe recommends disabling JavaScript to avoid PDF hack attack
Category: Network Security & Hacking News/Latest Security News
From Computer Weekly: Users of Adobe Reader should disable JavaScript to avoid a zero-day hacking attack on the PDF document reader software. This is the latest in a series of major security holes in the ...Wednesday, 14 October 2009 -
Vuln: Sun Java Runtime Environment and Java Development Kit Multiple Security Vulnerabilities
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Runtime Environment and Java Development Kit Multiple Security Vulnerabilities Read Full Article ...Tuesday, 13 October 2009 -
Vuln: Adobe Reader and Acrobat JavaScript Collab Object Memory Corruption Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Adobe Reader and Acrobat JavaScript Collab Object Memory Corruption Vulnerability Read Full Article ...Tuesday, 13 October 2009 -
Vuln: Apache Tomcat Java AJP Connector Invalid Header Denial of Service Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Apache Tomcat Java AJP Connector Invalid Header Denial of Service Vulnerability Read Full Article ...Tuesday, 13 October 2009 -
Latest PDF Zero Day Leads to Exploit Egg Hunt
Category: Network Security & Hacking News/Global Security News
... to code execution when a victim simply reads a malicious PDF document. This JavaScript code is viewable only if the stream had been unpacked, as can be seen Client-side exploitation continues to ...Tuesday, 13 October 2009 -
Sun Alert 267031 Heap Overflow in a Regular Expression Parser in Network Security Services (NSS) may Affect SSL Clients (CVE-2009-2404)
Category: Network Security & Hacking News/Global Security News
Product: Solaris 9 Operating System Solaris 10 Operating System Sun Java Enterprise System 5 Sun Java Enterprise System 2005 A heap overflow vulnerability in Network Security Services (NSS) may allow a ...Monday, 12 October 2009 -
Vuln: Sun Java SE Multiple Security Vulnerabilities
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java SE Multiple Security Vulnerabilities Read Full Article ...Monday, 12 October 2009 -
Vuln: Sun Java Runtime Environment XML Parsing Denial of Service Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Runtime Environment XML Parsing Denial of Service Vulnerability Read Full Article ...Monday, 12 October 2009 -
Vuln: Sun Java Runtime Environment Proxy Mechanism Implementation Privilege Escalation Vulnerabilities
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Runtime Environment Proxy Mechanism Implementation Privilege Escalation Vulnerabilities Read Full Article ...Monday, 12 October 2009 -
Vuln: Sun Java Runtime Environment JPEG Image Handling Integer Overflow Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Sun Java Runtime Environment JPEG Image Handling Integer Overflow Vulnerability Read Full Article ...Monday, 12 October 2009 -
Using Firebug to Beat Poor Web Development
Category: Network Security & Hacking News/Latest Security News
... your Order' and view the item in your cart. So in the end, remember developers that your HTML and JavaScript exist on the client side, meaning that once it's rendered in their browser... users can manipulate ...Monday, 12 October 2009 -
Show Me the Malware!
Category: Network Security & Hacking News/Global Security News
... HTML tags, JavaScript, or embedded Flash files — are available in the "Malware details" Labs feature in Webmaster Tools. Registered webmasters (registration is free) of infected sites do not need to specially ...Monday, 12 October 2009 -
Mozilla pushes out update, provides security suite add-ons
Category: Network Security & Hacking News/Latest Security News
... allow an attacker to run malicious code on a victim’s computer. In addition a critical error in FeedWriter could be used by an attacker to run JavaScript code from Web content with elevated privileges, ...Monday, 12 October 2009 -
New Adobe Zero-Day Exploit
Category: Network Security & Hacking News/Latest Security News
... This .PDF file contains an embedded JavaScript, which Trend Micro detects as JS_AGENTT.DT. This JavaScript is used to execute arbitrary codes in a technique known Post from: TrendLabs | Malware Blog ...Friday, 09 October 2009 -
All about Website Password Policies
Category: Network Security & Hacking News/Latest Security News
... are several freely available JavaScript libraries that developers may use to implement this feature. Normalization When passwords are entered, any number of user errors may occur that prevent them from ...Wednesday, 07 October 2009
