Top Sources

 
zeroday

I am a former corporate hacker (eEye, @stake, and Symantec) turned student.

Join Us!
  
    1    2    3    4    5    Next >>

  Storm Botnet Celebrates Birthday With Fireworks, (Fri, Jul 4th)
positive
Hot
(0)
negative
Not
(0)

I read about MX Logic's prediction this morning (www.computerworld.com/action/ article.do) that we should expect another wave of Storm Bot recuitment emails likely using the US Independence Day holiday as a lure. This group behind the Storm Botnet has always been concious of timing and shortly after 5pm Eastern time I began...

  CitySec Updates And Now More Ways To Stalk Us!
positive
Hot
(0)
negative
Not
(0)

STLSec. Shawn @ Agurasec yelled at me for not letting everyone know that St. Louis has an active CitySec meetup: The next STLSec is July 10 @ the Fox and Hound. Be there or be square. We had a great crowd our second time out, about 15-20 folks, roughly the same as the first one, with a [...]

  Ruby for Pentesters #1: Use Modules For Lists Of Constants
positive
Hot
(0)
negative
Not
(0)

Almost 2 years ago, Dino declared Python to be the “lingua-franca of over-the-hill hackers”, boldly asserting that 5 out of 6 security hackers under the age of 30 preferred Ruby instead. Being 30 at the time, I was an easy psychological target for this argument. I made the switch and haven’t regretted it....

  Random Stupidity in the Name of Terrorism
positive
Hot
(0)
negative
Not
(0)

An air traveller in Canada is first told by an airline employee that it is "illegal" to say certain words, and then that if she raised a fuss she would be falsely accused: When we boarded a little later, I asked for the ninny's name. He refused and hissed, "If you make a scene, I'll call the pilot and you...

  Browser Insecurity
positive
Hot
(0)
negative
Not
(0)

This excellent paper measures insecurity in the global population of browsers, using Google's web server logs. Why is this important? Because browsers are an increasingly popular attack vector. The results aren't good. ...at least 45.2%, or 637 million users, were not using the most secure Web browser version on any working...

  New Opera v9.51 fixes couple of security issues, (Thu, Jul 3rd)
positive
Hot
(0)
negative
Not
(0)

A new version of Opera (v9.51) has been released. It fixes couple of security vulnerabilities and some stability issues. One of the fixed issues includes arbitrary code execution but the exploit has not been published yet.

  Detecting scripts in ASF files (part 2), (Thu, Jul 3rd)
positive
Hot
(0)
negative
Not
(0)

Back in April, I wrote a diary about an interesting ASF files that had a script stream included (http://isc.sans.org/diary.html? storyid=4355). The script stream caused Windows Media Player to use Internet Explorer to retrieve content from a URL embedded in the script. As you can probably already guess, the URL lead to a web...

  PCI-DSS v1.1 and OWASP Top 10
positive
Hot
(0)
negative
Not
(0)

Today Jeremiah Grossman posted that the PCI-DSS 1.1 uses the OWASP Top 10 from 2004. This was picked up by Nathan McFeters over on the Zero Day blog... I wasn't aware that this was really a news worthy issue. There...

  Another little script I threw together, (Wed, Jul 2nd)
positive
Hot
(0)
negative
Not
(0)

For the day job, I sometimes need to gather info about an IP address that is being used to launch attacks. I normally query several different whois servers to find this info. Being the lazy individual that I am (and because I'm pretty comfortable in Perl), I wrote a little perl script (using a couple of nice packages that...

  The scoop on the spike in UDP port 7 traffic, (Wed, Jul 2nd)
positive
Hot
(0)
negative
Not
(0)

As I mentioned during my last shift, one of the first things I look at when I start my shift is our trends graph. When my shift began 20 hours ago, I noticed that huge spike in traffic on port 7 (and when looking at the ascii data, noted that it was 100% UDP). For those of you who don't remember, port 7 is the old echo...

  
    1    2    3    4    5    Next >>