As discussed in the past, cross site scripting (XSS) can be exploited by phishers to build really effective attacks. Today we have analyzed another similar attack that includes some enhanced features. The attack was exploiting an injection flaw in an Internet banking application, specifically located in the module used to display warning messages to users.
The function took a single GET parameter:
https://www.well-known-bank.com/popup.asp?msg=[ASCII_encoded_message_to_display]
And then returned a page
read more »
application
Category: vulnerabilities
|
Posted by
Staff
270 days ago
Via: http://secunia.com |
Discuss
Via: http://secunia.com |
Discuss
A vulnerability has been reported in Interstage Application Server, which can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a vulnerable system.Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/Feature Overview - The Secunia Software Inspector: * Detects insecure versions of applications installed * Verifies that all Microsoft patches are applied * Assists you in updating your syst
read more »
Add this link to...
Bury
Category: vulnerabilities
|
Posted by
Staff
254 days ago
Via: http://secunia.com |
Discuss
Via: http://secunia.com |
Discuss
Some vulnerabilities and security issues have been reported in IBM WebSphere Application Server, some of which have unknown impacts while others can potentially be exploited by malicious, local users to gain knowledge of sensitive information.Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/Feature Overview - The Secunia Software Inspector: * Detects insecure versions of applications installed * Verifies that all Micro
read more »
Add this link to...
Bury
Category: vulnerabilities
|
Posted by
Staff
240 days ago
Via: http://secunia.com |
Discuss
Via: http://secunia.com |
Discuss
IBM has acknowledged a vulnerability in IBM WebSphere Application Server for z/OS, which can be exploited by malicious people to conduct cross-site scripting attacks.Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/Feature Overview - The Secunia Software Inspector: * Detects insecure versions of applications installed * Verifies that all Microsoft patches are applied * Assists you in updating your system and applicatio
read more »
Add this link to...
Bury
Category: news
|
Posted by
Staff
234 days ago
Via: http://feeds.ziffdavisenterprise.com |
Discuss
Via: http://feeds.ziffdavisenterprise.com |
Discuss
Armed with a new product and strategy, the company is urgingorganizations to change the way they look at secure applicationdevelopment....Embedded Linux From a Trusted Source Reduce your development schedules with pre-compiled Linux components, along with tools and support.
read more »
Add this link to...
Bury
Category: news
|
Posted by
Staff
229 days ago
Via: http://radajo.blogspot.com |
Discuss
Via: http://radajo.blogspot.com |
Discuss
During the last moth I've talked about Web applications security twice, at the III OWASP Spain Chapter Meeting about "Web security threats and incidents" in Barcelona on March 14, and at the VI RedIRIS Security Forum about "Web security: a practical approach at universities (UCLM)", in Barcelona on March 28, 2008. Both presentations are in Spanish.From the different topics I covered, I want to specifically emphasize three key points you need to focus on:Act now! If you are still developing Web applications
read more »
Add this link to...
Bury
Category: vulnerabilities
|
Posted by
Staff
227 days ago
Via: http://secunia.com |
Discuss
Via: http://secunia.com |
Discuss
A weakness has been reported in IBM WebSphere Application Server, which can be exploited by malicious people to disclose system information.Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/Feature Overview - The Secunia Software Inspector: * Detects insecure versions of applications installed * Verifies that all Microsoft patches are applied * Assists you in updating your system and applications * Runs through your bro
read more »
Add this link to...
Bury
Category: news
|
Posted by
Staff
220 days ago
Via: http://www.infoworld.com |
Discuss
Via: http://www.infoworld.com |
Discuss
Nevis Networks is upgrading software for its NAC appliances so that it can do more application-specific monitoring and enforcement.
read more »
Add this link to...
Bury
Category: news
|
Posted by
Staff
207 days ago
Via: http://feeds.ziffdavisenterprise.com |
Discuss
Via: http://feeds.ziffdavisenterprise.com |
Discuss
Palo Alto Networks is upgrading its firewall software to enhance application filtering....Build IT Knowledge with Current & Trusted Content Helps Employees Develop & Hone New Technical Programming Skills. Sign Up & Get Full Access.
read more »
Add this link to...
Bury
Category: news
|
Posted by
Staff
205 days ago
Via: http://www.infoworld.com |
Discuss
Via: http://www.infoworld.com |
Discuss
Microsoft is working on application virtualization technology for the server that is designed to provide administrators the flexibility to quickly deploy infrastructure and even stream applications on-demand.
read more »
Add this link to...
Bury
