Archive for December, 2010
Posted in December 31st, 2010
Parted Magic 5.8 is released, this new release comes with new software and many bug fixes. The following programs have been updated: clonezilla-1.2.6-40, plpbt-5.0.11, psensor-0.4.4, linux-2.6.36.2, busybox-1.17.4, nwipe-0.03, simpleburn-1.6.0, sysl…
continue reading.....
Posted in December 31st, 2010
NuSOAP ‘nusoap.php’ Cross Site Scripting Vulnerability
continue reading.....
Posted in December 31st, 2010
Well, maybe not today, but who among us can’t see that as a diary title years from now?
On many occ …(more)…
continue reading.....
Posted in December 31st, 2010
Have a great idea, but don’t have the time or money to actually bring it to market? A new startup called OpenInvo wants to help you turn it into a nice chunk of change by selling it to existing businesses that are looking for an extra dose of innovation.
Now, there are other platforms for sharing business ideas — you may be familiar with Kickstarter, which has gotten attention for projects like the iPod Wristwatch. But Kickstarter is for people who want to bring their ideas to fruition and just need funding — OpenInvo is for people who have an idea and are willing to put the time in to flesh it out on paper, but don’t want to have to deal with actually starting a company.
continue reading.....
Posted in December 31st, 2010
Posted in December 31st, 2010
Computer Associates ARCserve D2D r15 Web Service Apache Axis2 world-accessible servlet code execution vulnerability proof of concept exploit.
continue reading.....
Posted in December 31st, 2010
Open Blog version 1.2.1 suffers from a cross site request forgery vulnerability.
continue reading.....
Posted in December 31st, 2010
CSRF (Cross-Site Request Forgery) in Open blog
continue reading.....
Posted in December 31st, 2010
LightNEasy version 3.2.2 suffers from local file inclusion, information disclosure and remote SQL injection vulnerabilities.
continue reading.....
Posted in December 31st, 2010
Posted in December 31st, 2010
Joomla! ‘com_rsgallery2′ Component ‘catid’ Parameter SQL Injection Vulnerability
continue reading.....
Posted in December 31st, 2010
According to an SEC form D filed today, the Chicago based Centro.net has just raised a whopping $22.5 million in equity only funding. Listed on the SEC form are Centro CEO Shawn Riegsecker and FTV Capital Partner Eric Byunn as Director.
Centro is a digital media and technology services company founded in 2001, serving over 350 ad agencies world wide . The company’s recently launched platform Transis automates and centralizes the media buying and selling process so agencies can save time and money.
continue reading.....
Posted in December 31st, 2010
New firmware allows Canon cameras to perform some neat tricks. Back in the day, hands-on photography required you to be closeted away in a darkened room, where you dunked sheets of paper into solutions of smelly chemicals. Now we manipulate photograph…
continue reading.....
Posted in December 31st, 2010
CA ARCserve D2D r15 Web Service Apache Axis2 World Accessible Servlet Code Execution Vulnerability Poc
continue reading.....
Posted in December 31st, 2010
TYPO3 Core TYPO3-SA-2010-020 Multiple Security Vulnerabilities
continue reading.....
Posted in December 31st, 2010
Apple Mac OS X WLAN Roaming with Disabled MCS Denial of Service Vulnerability
continue reading.....
Posted in December 31st, 2010
If you use Ubuntu, you’re almost certainly familiar with GNOME, the default desktop environment that comes with it. You may have also heard that the next Ubuntu version–Natty Narwhal, version 11.04–will use the 3D-enabled Unity desktop by default ins…
continue reading.....
Posted in December 31st, 2010
Want to listen in on cellphone calls or intercept test messages? Well that’s a violation of someone else’s privacy so shame on you! But there are black-hats who want to do just that and it may not be quite as difficult as you think. This article sums up a method of using prepaid cellphones and [...]
continue reading.....
Posted in December 30th, 2010
(Posted 30 Dec 2010 by Ray)
continue reading.....
Posted in December 30th, 2010
CNNMoney published an interesting piece by David Goldman this morning entitled, Google: Your new phone carrier? In it, Goldman lays out what he sees as the preliminary steps Google has taken to become a wireless carrier themselves down the road. He also gives some reasons for why they would and would not want to do that. In my mind, the concept is much more straightforward. Goldman ends the title of his piece with a question mark — but it should be a period.
It’s not a question of “if” Google will try to become a carrier. It’s just a matter of “when” they’ll try to.
Now, to be clear, that doesn’t mean I think they’ll actually be able to become a carrier. The biggest hurdle there has nothing to do with the technology needed, the money needed, or the expertise. Rather, the major issue would be the government. Would they allow Google, already one of the biggest corporations in the United States, to enter a new area that could extend their control (particularly in the advertising space)? Probably not. Actually, I have a feeling it might have more to do with Verizon and AT&T lobbying dollars influencing the government to block Google in such a cause.
continue reading.....
Posted in December 30th, 2010
Abel Avram has posted an interesting analysis of the causes and solutions of the December 22nd Skype …(more)…
continue reading.....
Posted in December 30th, 2010
I stumbled upon the following excerpt from the 1998 book In the Company of Giants by Rama Dev Jager and Rafael Ortiz. They interviewed Steve Jobs, who had the following to say about team building, as printed in BusinessWeek:Q. What talent do you think…
continue reading.....
Posted in December 30th, 2010
Network World: Android mobile malware has botnet-like traits
continue reading.....
Posted in December 30th, 2010
Well it looks like the Play Station 3 is finally and definitively cracked. FailOverflow’s Chaos Communications Congress talk on console security revealed that, thanks to a flaw on Sony’s part, they were able to acquire the private keys for the PS3. These keys can be used to sign your own code, making it every bit [...]
continue reading.....
Posted in December 30th, 2010
[Bradley W. Lewis] continues to amaze us with this Return of the Jedi Lightsaber build. You’ll remember his fine work from his previous Episode IV replica. He’s taken the parts that turned out well for him and expanded upon them. In the demonstration after the break you’ll see the new version has a removable blade [...]
continue reading.....
Posted in December 30th, 2010
Posted in December 30th, 2010
QuickPHP Web Server version 1.10.0 remote file download exploit.
continue reading.....
Posted in December 30th, 2010
WordPress version 3.0.4 suffers from a stored cross site scripting vulnerability.
continue reading.....
Posted in December 30th, 2010
Ignition version 1.3 remote code execution exploit.
continue reading.....
Posted in December 30th, 2010
Ignition version 1.3 suffers from a local file inclusion vulnerability.
continue reading.....