PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Flickr vulnerable to SQL Injection and Remote Code Execution Flaws

lundi 14 avril 2014 à 10:46
Yahoo-owned Flickr, one of the biggest online photo management and sharing website in the world was recently impacted by critical web application vulnerabilities, which left website's database and server vulnerable hackers. Ibrahim Raafat, a security researcher from Egypt has found SQL injection vulnerabilities on Flickr Photo Books, new feature for printing custom photo books through

Billions of Smartphone Users affected by Heartbleed Vulnerability

dimanche 13 avril 2014 à 21:19
Heartbleed has left a worst impression worldwide affecting millions of websites and is also supposed to put millions of Smartphones and tablets users at a great risk. Heartbleed is a critical bug (CVE-2014-0160) in the popular OpenSSL cryptographic software library, that actually resides in the OpenSSL's implementation of the TLS/DTLS heartbeat extension, which allows attackers to read

Researchers Get $10,000 for Hacking Google Server with Malicious XML

samedi 12 avril 2014 à 13:12
A critical vulnerability has been uncovered in Google that could allow an attacker to access the internal files of Google’s production servers. Sounds ridiculous but has been proven by the security researchers from Detectify. The vulnerability resides in the Toolbar Button Gallery (as shown). The team of researchers found a loophole after they noticed that Google Toolbar Button Gallery

NSA denies Report that Agency knew and exploited Heartbleed Vulnerability

samedi 12 avril 2014 à 12:21
The Bloomberg claimed that the U.S. National Security Agency (NSA) knew about the most critical Heartbleed flaw and has been using it on a regular basis to gather “critical intelligence” and sensitive information for at least past two years and decided to keep the bug secret, citing two sources ‘familiar with the matter’. In response to the above report, NSA has issued a '94 character'

German Developer responsible for HeartBleed Bug in OpenSSL

samedi 12 avril 2014 à 10:55
We have already read so many articles on Heartbleed, one of the biggest iNternet threat that recently came across by a team of security engineers at Codenomicon, while improving the SafeGuard feature in Codenomicon's Defensics security testing tools.  The story has taken every media attention across the World, as the bug opened doors for the cyber criminals to extract sensitive data from