lostmon.blogspot.com
Aug 27, 2013
http://lostmon.blogspot.com/2013_08_27_archive.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Opera browser Speed dial Extensions XSS and CSRF. Tuesday, August 27, 2013. Opera Browser Speed Dial Extensions XSS and XSRF. Original advisore: http:/ lostmon.blogspot.com.es/2013/08/opera-browser-speed-dial-extensions-xss.html. Developers Build Extensions for fast access to web services like. Gmail, Flirk or Facebook. If a attacker compose a Email with subject like. Https:/...
lostmon.blogspot.com
Mar 27, 2012
http://lostmon.blogspot.com/2012_03_27_archive.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. GreenBrowser About: dialog XSS and stored XSS. Tuesday, March 27, 2012. GreenBrowser About: dialog XSS and stored XSS. Vendor URL:http:/ www.morequick.com/. Advisore: http:/ lostmon.blogspot.com/2012/03/greenbrowser-about-dialog-xss-and.html. Vendor notify:NO exploit available:yes. You can see this function here = http:/ www.5igb.com/function.js. Create a html doc and write t...
lostmon.blogspot.com
Mar 11, 2011
http://lostmon.blogspot.com/2011_03_11_archive.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Multiple vulnerabilities in Flock Browser 3.0.0.3989. Friday, March 11, 2011. Multiple vulnerabilities in Flock Browser 3.0.0.3989. Vendor URL: http:/ beta.flock.com/. Vendor Advisores: http:/ www.flock.com/security/. Advisore:http:/ lostmon.blogspot.com/2011/03/multiple-vulnerabilities-in-flock.html. Vendor notify:YES exploits availables:YES. TODO LIST / Bugs. XSS in search ...
lostmon.blogspot.com
Dec 14, 2013
http://lostmon.blogspot.com/2013_12_14_archive.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Safari for windows 5.1.7 (7534.57.2) Remote code execution. Saturday, December 14, 2013. Safari for windows 5.1.7 (7534.57.2) Remote code execution. JavaScriptCore.dll (7534.57.3.3). Vendor notify: NO Exploit available: Private. Advisore:http:/ lostmon.blogspot.com.es/2013/12/safari-for-windows-517-7534572-remote.html. 12401334): Access violation - code c0000005 (! WTF: fastM...
lostmon.blogspot.com
Aug 11, 2011
http://lostmon.blogspot.com/2011_08_11_archive.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Calisto light, light plus and full, Sql Injection And user or Admin bypass. Thursday, August 11, 2011. Calisto light, light plus and full, Sql Injection And user or Admin bypass. Vendor URL: http:/ www.calistosoft.com.ar/. Advisore: http:/ lostmon.blogspot.com/2011/08/calisto-light-light-plus-and-full-sql.html. Vendor notify: YES exploit available: YES. Log as this user :).
lostmon.blogspot.com
Opera browser Speed dial Extensions XSS and CSRF
http://lostmon.blogspot.com/2013/08/opera-browser-speed-dial-extensions-xss.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Opera browser Speed dial Extensions XSS and CSRF. Tuesday, August 27, 2013. Opera Browser Speed Dial Extensions XSS and XSRF. Original advisore: http:/ lostmon.blogspot.com.es/2013/08/opera-browser-speed-dial-extensions-xss.html. Developers Build Extensions for fast access to web services like. Gmail, Flirk or Facebook. If a attacker compose a Email with subject like. Https:/...
lostmon.blogspot.com
Gmail Checker plus Chrome extension XSS
http://lostmon.blogspot.com/2010/06/gmail-checker-plus-chrome-extension-xss.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Gmail Checker plus Chrome extension XSS. Thursday, June 03, 2010. Gmail Checker plus Chrome extension XSS. Extension: https:/ chrome.google.com/extensions/detail/gffjhibehnempbkeheiccaincokdjbfe. Advisore:http:/ lostmon.blogspot.com/2010/06/gmail-checker-plus-chrome-extension-xss.html. So in this case "Google Mail Checker Plus" version 1.1.7 (2010-02-10). Vector to attack it.
lostmon.blogspot.com
Aug 9, 2011
http://lostmon.blogspot.com/2011_08_09_archive.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Internet Explorer 6, 7 and 8 Window.open race condition Vulnerability. Tuesday, August 09, 2011. Internet Explorer 6, 7 and 8 Window.open race condition Vulnerability. Vendor URL: http:/ www.microsoft.com. Advisore: http:/ lostmon.blogspot.com/2011/08/internet-explorer-6-7-and-8-windowopen.html. Coordinate Dislcosure: YES exploit available: Private. For update your system.
paiementinternetmaroc.com
Pay Web de Attijariwafa Bank
http://www.paiementinternetmaroc.com/pay-web-attijari-wafa-bank.php
Maitrisez le paiement sur Internet au Maroc. Pay Web : la Carte Bancaire Internationale de Attijariwafa Bank. Inscrivez-vous maintenant sur PaiementInternetMaroc.com. Et découvrez les secrets du paiement en ligne au Maroc (offre limitée). Après la SGMB et la CIH, Attijariwafa Bank. Ont lancé Pay Web. Une carte bancaire internationale marocaine pour payer sur Internet! Comment obtenir la carte bancaire internationale Pay Web chez la Attijariwafa Bank? La limite de Pay Web de Attijariwafa Bank…. Et Paypal ...
lostmon.blogspot.com
Apr 22, 2012
http://lostmon.blogspot.com/2012_04_22_archive.html
Security Research and Analisys:. Personal Blog where I expose my investigations,. Advisores and some outstanding news on security. Firefox 11 DoS using exponential string growth and document.write(). Sunday, April 22, 2012. Firefox 11 DoS using exponential string growth and document.write(). Vendor URL: http:/ www.mozilla.org. Advisore: http:/ lostmon.blogspot.com.es/2012/04/firefox-11-dos-using-exponential-string.html. Vendor Bugzilla: https:/ bugzilla.mozilla.org/show bug.cgi? Mozilla Firefox 11.0.