Archive for April, 2008
Posted in April 30th, 2008
Last month we had looked at the Gigabyte AirCruiser N300 GN-WI30N-RH 802.11n WiFi adapter. The wireless adapter uses the Ralink RT2860 chipset, which doesn’t have a Linux driver in the kernel, but we were able to easily get this 802.11n wireless adapter working with Ubuntu when using ndiswrapper and the Windows driver. Today we have our hands on the Gigabyte AirCruiser N300 Dual GN-WI06N-RH, which is a PCI Express Mini-Card with dual-band 802.11a/b/gn support. How well does this Atheros-based WiFi card work on Linux? We’ll tell you in this review.
continue reading.....
Posted in April 30th, 2008
Last month we had looked at the Gigabyte AirCruiser N300 GN-WI30N-RH 802.11n WiFi adapter. The wireless adapter uses the Ralink RT2860 chipset, which doesn’t have a Linux driver in the kernel, but we were able to easily get this 802.11n wireless adapter working with Ubuntu when using ndiswrapper and the Windows driver. Today we have our hands on the Gigabyte AirCruiser N300 Dual GN-WI06N-RH, which is a PCI Express Mini-Card with dual-band 802.11a/b/gn support. How well does this Atheros-based WiFi card work on Linux? We’ll tell you in this review.
continue reading.....
Posted in April 30th, 2008
Chinese environmental activist Tian Jun found that in order to clean up Chengdu’s rivers, she needed to look upstream.
continue reading.....
Posted in April 30th, 2008
Chinese environmental activist Tian Jun found that in order to clean up Chengdu’s rivers, she needed to look upstream.
continue reading.....
Posted in April 30th, 2008
zprian has discovered a vulnerability in www.w-fenec.org, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
hayaletkral has discovered a vulnerability in www.zifir.net, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.phoneandphone.com, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.phoneandphone.com, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.generation-nt.com, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.generation-nt.com, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.ceeac-eccas.org, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.ceeac-eccas.org, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.aarp.org, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ariarat has discovered a vulnerability in www.fbtc.com.sa, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.la-bas.org, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
ironzorg has discovered a vulnerability in www.la-bas.org, which could be exploited by malicious people to conduct XSS attacks.
continue reading.....
Posted in April 30th, 2008
The OpenBSD project is ready to announce the new release, OpenBSD 4.3, that will be officially available on May 1st (the only way to get it earlier is ordering the CD package). As usual there are a lot of improvements and new tools and features, and it sounds amazing that they keep delivering these results with a six month release cycle.
continue reading.....
Posted in April 30th, 2008
The OpenBSD project is ready to announce the new release, OpenBSD 4.3, that will be officially available on May 1st (the only way to get it earlier is ordering the CD package). As usual there are a lot of improvements and new tools and features, and it sounds amazing that they keep delivering these results with a six month release cycle.
continue reading.....
Posted in April 30th, 2008
There are two kinds of Linux people in the world, those that will help people fix their Windows spyware problems, and those that will not. I land squarely in the former camp, and I think that it’s important for us all to consider doing the same.
continue reading.....
Posted in April 30th, 2008
Wade Alcorn and John Heasman of NGSSoftware have discovered a stack overflow vulnerability in Castle Rock Computing SNMPc Network Manager. SNMPc Network Manger is a distributed network management system that allows monitoring of the network infrastructure. It employs a distributed polling agent architecture which uses SNMP TRAPs to provide a solution capable of monitoring networks with up to ten thousand devices. An SNMP TRAP initiated by a network element is sent to the SNMPc Network Manager to allow monitoring of the infrastructure.
continue reading.....
Posted in April 30th, 2008
ARNnet: New techniques hide PDF malware "A researcher has discovered a set of techniques that allows PDF-embedded malware to change its appearance in an almost infinite number of ways and still have the same functional payload"
continue reading.....
Posted in April 30th, 2008
Posted in April 30th, 2008
Posted in April 30th, 2008
ZDNet UK: Coders claim bypass of Vista security feature "UAC had been expressly designed to force independent software developers to write code which would work in this way"
continue reading.....
Posted in April 30th, 2008
Posted in April 30th, 2008
Incognito is a tool for manipulating windows access tokens and is intended for use by penetration testers, security consultants and system administrators.
continue reading.....
Posted in April 30th, 2008
This whitepaper discusses the security exposures that can occur due to the manner in which access tokens are implemented in the Microsoft Windows Operating System. A brief overview of the intended function, design and implementation of Windows access tokens is given, followed by a discussion of the relevant security consequences of their design. More specific technical details are then given on how the features of Windows access tokens can be used to perform powerful post-exploitation functions during penetration testing, along with a basic methodology for including an assessment of the vulnerabilities exposed through tokens in a standard penetration test.
continue reading.....
Posted in April 30th, 2008
Chicomas version 2.0.4 suffers from local and remote file inclusion vulnerabilities.
continue reading.....
Posted in April 30th, 2008
Softbiz Web Host Directory Script suffers from a blind SQL injection vulnerability in search_result.php.
continue reading.....
Posted in April 30th, 2008
Prozilla Hosting Index suffers from a remote SQL injection vulnerability in directory.php.
continue reading.....