‏إظهار الرسائل ذات التسميات Web Application Security. إظهار كافة الرسائل
‏إظهار الرسائل ذات التسميات Web Application Security. إظهار كافة الرسائل

السبت، 20 سبتمبر 2014

Yahoo Quickly Fixes SQL Injection Vulnerability Escalated to Remote Code Execution





Yahoo! was recently impacted by a critical web application vulnerabilities which left website's database and server vulnerable to hackers.



A cyber security expert and penetration tester, Ebrahim Hegazy a.k.a Zigoo from Egypt, has found a serious SQL injection vulnerability in Yahoo's website that allows an attacker to remotely execute any commands on its server with Root Privileges.



Avira Vulnerability Puts Users' Online Backup Data At Risk





A popular Anti-virus software Avira that provides free security software to its customers with Secure Backup service is vulnerable to a critical web application vulnerability that could allow an attacker to take over users’ account, putting millions of its users’ account at risk.



Avira is very popular for their free security software that comes with its own real-time protection module

الجمعة، 19 سبتمبر 2014

How to Detect SQL Injection Attacks






SQL Injection (SQLi) attacks have been around for over a decade. You might wonder why they are still so prevalent. The main reason is that they still work on quite a few web application targets. In fact, according to Veracode’s 2014 State of Security Software Report , SQL injection vulnerabilities still plague 32% of all web applications. One of the big reasons is the attractiveness of the

السبت، 16 أغسطس 2014

Hacking Fiverr.com Accounts — Vulnerability Puts $50 Million Company At Risk





Fiverr.com, a global online marketplace which provides a platform for people to sell their services for five dollars per job, is vulnerable to a critical web application vulnerability that puts its millions of users at risk.



Fiverr recently raised $30 million in a third round of institutional funding to continue supporting the new version of its marketplace, but the company ignored the

الأربعاء، 6 أغسطس 2014

Flickr Cross-Site Request Forgery Vulnerability Patched

Yahoo-owned Flickr, one of the biggest online photo management and sharing website in the world was recently impacted by a web application vulnerability, which could allow an attacker to modify users’ profile image.
Flickr is one of the most popular photo sharing website with more than 87 million users, therefore some top major target for cybercriminals. The site was vulnerable to the most common

الاثنين، 4 أغسطس 2014

Jobvite Recruitment Service Website Vulnerable to Hackers





Jobvite, a recruiting platform for the social web, is found vulnerable to the most common, but critical web application vulnerabilities that could allow an attacker to compromise and steal the database of the company's website.



Jobvite is a Social recruiting and applicant tracking created for companies with the highest expectations of recruiting technology and candidate quality. Growing