Want to be a Member of the Program ???

Archive for October, 2009

30
October

Ten of Application Security industry’s coolest, most interesting, important, and entertaining links from the past week — in no particular order. Regularly released until year end

Continued here:
Best of Application Security (Friday, Oct. 30)

Category : Web App Sec | Blog
30
October

Several of Sweden’s websites experienced DDoS attacks yesterday, including the Swedish Police at polisen.se.

Read more:
Swedish Police Experience DDoS Attacks

Category : F-Secure | Blog
30
October

So you want to convert a file/stream to upper or lower case in Linux? piece of cake, there are thousands of ways to do that.

Continue reading here:
perl one-liner: how to convert file or stream to upper or lower case

Category : Security News | infySEC | Blog
30
October

Symantec Security Response has become aware of a Trojan Horse we detect as Trojan.Ramvicrype . The Trojan uses the RC4 algorithm to encrypt files on compromised computers, rendering them unusable

Read more from the original source:
Tales from the Crypt

Category : Symantec | Blog
29
October

While looking through some recent customer submissions a particular filename caught my attention. It was called “googlewaveinvitegenerator.exe”. Google Wave is a new communication application being developed by Google

Go here to read the rest:
Xrumer: The Spammer’s Toolkit

Category : Symantec | Blog
28
October

A Blackberry application called PhoneSnoop was released recently, which resulted in an advisory from US-CERT. The application allows remote users to listen in on a Blackberry user’s surroundings.

Category : Symantec | Blog
28
October

A longstanding debate in Web application security, heck all of application security, is which software testing methodology is the best — that is — the best at finding the most vulnerabilities. Is it black box (aka: vulnerability assessment, dynamic testing, run-time analysis) or white box (aka: source code review, static analysis)

Read the original here:
Black Box vs White Box. You are doing it wrong.

Category : Web App Sec | Blog
28
October

I just ran across this new free training course offered by offensive security, named “metasploit unleashed”. You can check it out at http://www.offensive-security.com/metasploit-unleashed/ My quick glimpse at the materials are :this is a very nice set of materials, instructions are easy to follow

Continue reading here:
offensive security - new free metasploit online course

Category : Security News | infySEC | Blog
28
October

A new malware variant called Silon is targeting Internet Explorer users, attempting to intercept their sessions and steal credentials.

See more from original here:

Silon malware analysis Report from Trusteer

Silon malware targets Internet explorer

Category : Security News | Blog
28
October

Our June 12th post mentioned a collaborative film project that’s being produced by the Wreckamovie community. Well, the project is now titled “Griffin” and there’s a teaser available.

Read more here:
Video - Griffin Teaser

Category : F-Secure | Blog