behindthefirewalls.com
Drupal Denial of Service Responsible Disclosure - Attacking with long passwords ~ Hacking while you're asleep
http://www.behindthefirewalls.com/2014/11/drupal-denial-of-service-responsible-disclosure.html
Hacking while you're asleep. BehindTheFirewalls is a blog where you can find all the latest information about hacking techniques, new trends in IT security and the recent products offered by security manufacturers. We'll talk about Firewalls, IPS, Botnets. Wednesday, November 19, 2014. Drupal Denial of Service Responsible Disclosure - Attacking with long passwords. First of all, let me introduce you to my partner @cor3dump3d. From www.devconsole.info. We believe in responsible disclosure. Drupal Core - M...
behindthefirewalls.com
December 2014 ~ Hacking while you're asleep
http://www.behindthefirewalls.com/2014_12_01_archive.html
Hacking while you're asleep. BehindTheFirewalls is a blog where you can find all the latest information about hacking techniques, new trends in IT security and the recent products offered by security manufacturers. We'll talk about Firewalls, IPS, Botnets. Thursday, December 11, 2014. CVE-2014-9218 phpMyAdmin DoS Proof of Concept. You can read the vulnerability details in the previous blog post. In this one, we show you the way to exploit it. 1 - Create the payload. Silent /dev/null &) done. Over the Web...
phpmyadmin.net
phpMyAdmin - Security - PMASA-2014-17
https://www.phpmyadmin.net/home_page/security/PMASA-2014-17.php
Bringing MySQL to the web. Download 4.6.4. DoS vulnerability with long passwords. With very long passwords it was possible to initiate a denial of service attack on phpMyAdmin. We consider this vulnerability to be serious. This vulnerability can be mitigated by configuring throttling in the webserver. Versions 4.0.x (prior to 4.0.10.7), 4.1.x (prior to 4.1.14.8) and 4.2.x (prior to 4.2.13.1) are affected. Thanks to Javier Nieto. For reporting this vulnerability. Assigned CVE ids: CVE-2014-9218. PhpMyAdmi...
7thcircledesigns.com
WordPress 4.0.1 Security Release | 7th Circle Designs
https://www.7thcircledesigns.com/wordpress-401-security-release
Designer, Trainer, Geek. Search Engine Optimization and Branding. Custom Editor and Post Settings. Disable Automatic Image Links. Subscribe To Our Mailing List. WordPress 4.0.1 Security Release. WordPress 4.0.1 is now available. This is a. For all previous versions and we strongly encourage you to update your sites immediately. Sites that support automatic background updates will be updated to WordPress 4.0.1 within the next few hours. If you are still on WordPress 3.9.2. WordPress versions 3.9.2. An ext...
bethalexander.com
Critical WordPress Security Update 4.0.1
http://www.bethalexander.com/wordpress-4-0-1-critical-security-release
Posted by Beth Alexander. November 20, 2014. Middot; 0 Comments. WordPress 4.0.1 – Critical Security Release. Image credit: Andy Fitzsimon. WordPress.org states 4.0.1 is a critical security release. For all previous versions. All sites are strongly encouraged to update. If you have automatic background updates turned on, your site will automatically be updated in the next few hours. If you do not have automatic updates turned on, Download WordPress 4.0.1. Or login to your WP Backend and go to Dashboard?
behindthefirewalls.com
Wordpress Denial of Service Responsible Disclosure - Attacking with long passwords ~ Hacking while you're asleep
http://www.behindthefirewalls.com/2014/11/wordpress-denial-of-service-responsible-disclosure.html
Hacking while you're asleep. BehindTheFirewalls is a blog where you can find all the latest information about hacking techniques, new trends in IT security and the recent products offered by security manufacturers. We'll talk about Firewalls, IPS, Botnets. Friday, November 21, 2014. Wordpress Denial of Service Responsible Disclosure - Attacking with long passwords. Wordpress is the CMS most used Worldwide. According to w3techs.com. From www.devconsole.info. And me believe in responsible disclosure. If th...
behindthefirewalls.com
When cookies lead to a DoS in phpMyAdmin CVE-2014-9218 ~ Hacking while you're asleep
http://www.behindthefirewalls.com/2014/12/when-cookies-lead-to-dos-in-phpmyadmin.html
Hacking while you're asleep. BehindTheFirewalls is a blog where you can find all the latest information about hacking techniques, new trends in IT security and the recent products offered by security manufacturers. We'll talk about Firewalls, IPS, Botnets. Wednesday, December 03, 2014. When cookies lead to a DoS in phpMyAdmin CVE-2014-9218. PhpMyAdmin is a free software tool written in PHP. Intended to handle the administration of MySQL. From www.devconsole.info. And me believe in responsible disclosure.
blog.wpde.org
Sicherheits-Update WordPress 4.0.1 veröffentlicht » WordPress Deutschland News
http://blog.wpde.org/2014/11/21/sicherheits-update-wordpress-4-0-1-veroeffentlicht.html
Weitere Informationen und den Download findest du auf der offiziellen Anlaufstelle de.wordpress.org. Sicherheits-Update WordPress 4.0.1 veröffentlicht. Freitag, den 21. November 2014 von Birgit Olzem. Sicherheits-Update WordPress 4.0.1 veröffentlicht. WordPress 4.0.1 ist nun als Sicherheitsupdate verfügbar. Es wird empfohlen, dass dieses Update schnellstmöglich durchgeführt wird. Die Version 3.9.2 und ältere waren von einer kritischen Cross-Site-Scripting Schwachstelle betroffen. Diese wurde ...Weitere m...
behindthefirewalls.com
November 2014 ~ Hacking while you're asleep
http://www.behindthefirewalls.com/2014_11_01_archive.html
Hacking while you're asleep. BehindTheFirewalls is a blog where you can find all the latest information about hacking techniques, new trends in IT security and the recent products offered by security manufacturers. We'll talk about Firewalls, IPS, Botnets. Friday, November 21, 2014. Wordpress Denial of Service Responsible Disclosure - Attacking with long passwords. Wordpress is the CMS most used Worldwide. According to w3techs.com. From www.devconsole.info. And me believe in responsible disclosure. If th...
unloadlocal.com
New Wordpress 4.0.1 Addresses Security Issues and Bug Fixes - Unloadlocal Security Research
http://www.unloadlocal.com/newwordpress401
Upcoming Free Computer S. WEEKLY SECURITY BREACH S. WEEKLY SECURITY BREACH S. WEEKLY SECURITY BREACH S. New WordPress 4.0.1 Addresses Security Issues and Bug Fixes. November 23, 2014. Three cross-site scripting issues that a contributor or author could use to compromise a site. Discovered by Jon Cave. Of the WordPress security team. A cross-site request forgery that could be used to trick a user into changing their password. And Andres Rojas Guerrero. And Bojan Slavković of ManageWP. Made sure to back up...
SOCIAL ENGAGEMENT