Upgrading to wordpress 2.1.1 was urgent, but we still have SQL injections, path disclosures and cross site scripting problems in this version! My colleague Sebastian Krause has some examples:
Archive for the 'Security' Category
SQL Injection in WordPress 2.1.1
«
1 March 2007 |
15:47 |
Security |
2 Comments | 2,974 Views
»
Scammin the ATM machine
«
19 February 2007 |
17:47 |
Security, Stories |
No Comments | 2,261 Views
»
I know, no news, but this british TV report shows how ATM skimming works and they have some real devices too.
I know, no news, but this british TV report shows how ATM skimming works and they have some real devices too.
should law enforcement hack?
«
17 February 2007 |
8:37 |
Forensics, Security, Stories |
No Comments | 1,915 Views
»
In Germany we have an ongoing discussion about the question: should police or law enforment hack? Germany’s supreme court determined this month that police may not secretly hack into suspects’ computers. F-Secure made a quick poll
In Germany we have an ongoing discussion about the question: should police or law enforment hack? Germany’s supreme court determined this month that police may not secretly hack into suspects’ computers. F-Secure made a quick poll
making fun of “duck and cover” pictures
«
14 February 2007 |
8:07 |
Humor, Security |
No Comments | 2,522 Views
»
The US government has a website with some “duck and cover” pictures. The fun thing is that these pictures are so ambiguous they could realy mean anything!
The US government has a website with some “duck and cover” pictures. The fun thing is that these pictures are so ambiguous they could realy mean anything!
“The ultimate firewall” revisited
«
3 February 2007 |
19:35 |
Humor, Security |
1 Comment | 2,412 Views
»
Remember the Ultimate firewall of Marcus J. Ranum? He build a new version, inspired by powerpoint icons from firewall vendor presentations. So true. Well kids, don’t try this at your DMZ or backyard
Remember the Ultimate firewall of Marcus J. Ranum? He build a new version, inspired by powerpoint icons from firewall vendor presentations. So true. Well kids, don’t try this at your DMZ or backyard
Perl hackers are forensics superheroes
«
29 January 2007 |
16:58 |
Forensics, Humor, Security |
No Comments | 2,146 Views
»
Leet police in Germany
«
7 January 2007 |
11:22 |
Humor, Security |
2 Comments | 2,703 Views
»
I was wondering, if they know the “secret” code (in German) behind the licence plate?
I was wondering, if they know the “secret” code (in German) behind the licence plate?
How to locate new phishing sites
«
4 January 2007 |
12:45 |
Forensics, Security |
2 Comments | 1,446 Views
»
“Phishing sites are easy to locate once the bad boys start spamming out thousands of mails linking to their site. But how can such sites be found before that?”
“Phishing sites are easy to locate once the bad boys start spamming out thousands of mails linking to their site. But how can such sites be found before that?”
Privacy: sad but true
«
2 January 2007 |
9:56 |
Humor, Security |
No Comments | 1,545 Views
»
Has your credit card number been stolen on the internet?
«
15 December 2006 |
12:16 |
Humor, Security |
5 Comments | 4,723 Views
»
I found this working web form somewhere on the net. Funny.
I found this working web form somewhere on the net. Funny.
