security

(IN)SECURE Magazine is a free digital security publication discussing some of the hottest information security topics. The June issue released today features articles on Microsoft’s Exploit Mitigation Experience Toolkit, IPv6, transaction monitoring, mobile application security, cyber security, auditing and much more!

This issue contains:

Microsoft’s Exploit Mitigation Experience Toolkit
Transaction monitoring as an issuer fraud risk management technique [...]

Be the first to comment!

INSECURE Magazine 27 is out!

by Black on September 2, 2010

in Miscellaneous

This is one of the interesting magazines – specially for information security world with latest updates across the globe. We must say it is one of the must reads.

Topics included:

BlockMaster SafeStick secure USB flash drive
The devil is in the details: Securing the enterprise against the cloud
Cybercrime may be on the rise, but authentication evolves to [...]

Be the first to comment!

o2consultants-sql.txt

by Black on June 8, 2010

in External News

o2consultants suffers from a remote SQL injection vulnerability.

Be the first to comment!

rsakeymanager-sql.txt

by Black on June 7, 2010

in External News

RSA Key Manager version 1.5.x suffers from a remote SQL injection vulnerability.

Be the first to comment!

indesign-overflow.txt

by Black on June 6, 2010

in External News

Adobe InDesign CS3 INDD file handling local buffer overflow exploit.

Be the first to comment!

This Metasploit module exploits a buffer overflow in Simple Open Music Player version 1.0. When the application is used to import a specially crafted m3u file, a buffer overflow occurs allowing arbitrary code execution.

Be the first to comment!

Gigya Socialize versions 1.1.8 and below for WordPress suffer from cross site scripting vulnerabilities.

Be the first to comment!

This Metasploit module exploits a code execution flaw in Novell ZENworks Configuration Management 10.2.0. By exploiting the UploadServlet, an attacker can upload a malicious file outside of the TEMP directory and then make a secondary request that allows for arbitrary code execution.

Be the first to comment!