Showing posts with label Vulnerable. Show all posts
Showing posts with label Vulnerable. Show all posts

XSS Vulnerability On Twitter

6:08 PM Add Comment
XSS Vulnerability pada salah satu situs besar di dunia ini ditemukan oleh seorang bocah yang berumur 15 tahun Belmin Vehabovic dan telah melaporkannya kepada pihak Twitter.

Berikut code XSS yang telah ditemukan bocah tersebut :

https://dev.twitter.com/docs/follow-button#%3Cimg%20src=%22%3Cimg%20src=search%22/onerror=alert%28%22Xss-Tested-By-acizninja%22%29//%22%3E

XSS Vulnerability On Twitter

Selain menemukan XSS Vulnerability on Twitter, dia juga telah menemukan sebuah celah XSS pada situs Facebook dan setelah melaporkannya kepada pihak Facebook dia langsung menerima kiriman uang sebesar $700. Yang dikatakan pada Account Twitternya

XSS Vulnerability On Twitter via blog cyber4rt

Download XSSer v.1.6 BETA

4:58 PM Add Comment
XSSer v.1.6 BETA

Cross Site "Scripter" is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.It contains several options to try to bypass certain filters, and various special techniques of code injection.

Changelog

Core: Added Drop Cookie option + Added Random IP X-Forwarded-For an X-Client-IP option + Added GSS and NTLM authentication methods + Added Ignore proxy option + Added TCP-NODELAY option + Added Follow redirects option + Added Follow redirects limiter parameter + Added Auto-HEAD precheck system + Added No-HEAD option + Added Isalive option + Added Check at url option (Blind XSS) + Added Reverse Check parameter + Added PHPIDS (v.0.6.5) exploit + Added More vectors to auto-payloading + Added HTML5 studied vectors + Fixed Different bugs on core + Fixed Curl handlerer options + Fixed Dorkerers system + Fixed Bugs on results propagation + Fixed POST requests. GTK: Added New features to GTK controller + Added Detailed views to GTK interface. (via)

Kelemahan Android 4.0 Ice Cream Sandwich

Kelemahan Android 4.0 Ice Cream Sandwich

6:12 PM Add Comment

Kelemahan Android 4.0 Ice Cream Sandwich | Seperti yang anda lihat pada video diatas, bahwa fitur baru yang diusung Android 4.0 Ice Cream Sandwich  yaitu keamanan dengan pengenalan wajah, adalah sangat rentan. Di dalam video diatas ditunjukkan hanya dengan menggunakan foto dari smartphones lain yang dihadapkan pada Samsung Galaxy Nexus yang terkunci, dan dengan mudah kunci akan terbuka.

Bahkan jika adaseseorang yang mirip anda, kemungkinan juga bisa membuka smartphones android anda, hanya dengan fitur pengenalan wajah ini. silahkan anda coba...?

Google belum memberi komentar tentang kesalahan yang terdapat pada Android 4.0 Ice Cream Sandwich, jadi untuk sementara cacat ini belum bisa teratasi. Sebaiknya anda jangan menggunakan fitur ini dulu, anda bisa menggunakan PIN, atau gambar.

Kelemahan Google Chrome 16

4:04 PM Add Comment
2 step verification

Kelemahan Google Chrome 16 | Sebenarnya ini bukan kelemahan fatal, hanya bagi sebagian orang mungkin akan merasa kurang tenang dengan ini. Jika anda telah menggunakan Google Chrome 16 [Beta] mungkin anda bisa berbagi sedikit pengalaman disini.

Saya menemukan bahwa jika anda menggunakan Google Chrome 16 Beta, maka fitur Google yang disebut 2 Step Verification ini tak berfungsi.

Setelah anda menambahkan user pada Google Chrome anda, kemudian memasukkan email dan password, anda akan langsung log in ke account Google anda, tanpa harus melewati tahap 2 step verification.

Ini artinya, kita akan percuma mengaktifkan 2 step verification, dan jika ada beberapa pihak yang kurang bertanggung jawab, maka bisa memanfaatkan kelemahan ini.

Bagaimana mengatasi ini...?

anda bisa menambahkan application-spesific password pada account Google anda fasilitas ini akan meminta password setiap log in ke produk google yang tlah anda aktifkan.

application-spesific password

detail about 2 Step Verification here...

XSS Vulnerability in White House Website

3:11 PM Add Comment
XSS Vulnerability in White House Website

The Hacker News: Alexander Fuchs, A German Security Researcher Discover Persistent XSS Vulnerability in Official website of White House.

"The petition system is vulnerable. Every Petition i start or join will execute my code. I could join all petitions and my code will be executed on all users who visit the petition system." He said.




MySQL.com Hacked Again

4:55 PM Add Comment

MySQL.com Hacked Again
MySQL.com Hacked Again | Situs MySQL.com telah diserang oleh penjahat cyber, dan hack dengan cara mereka untuk menyisipkan kode berbahaya untuk mengunjungi komputer.

Cukup mengunjungi halaman home dari situs tersebut, dimulai mengeksploitasi Java yang didownload dan dieksekusi kode berbahaya pada komputer Windows. Tidak ada interaksi pengguna diperlukan untuk PC menjadi terinfeksi.

Hack ini pertama kali dilaporkan oleh para peneliti publik keamanan di Armorize  dan tampaknya tidak lagi hadir.

Brian Krebs melaporkan bahwa hanya beberapa hari lalu ia melihat di situs bawah tanah hacker Rusia yang menawarkan untuk menjual hak admin untuk MySQL.com sebesar $ 3000.

Daya tarik bagi hacker jahat adalah jelas - MySQL.com dilaporkan menerima hampir 12 juta pengunjung per bulan (hampir 400.000 /hari), yang berarti bahwa ada aliran komputer korban potensial mengunjungi situs yang dapat terinfeksi melalui download.

Sophos mendeteksi malware produk ditularkan oleh website MySQL.com sebagai Troj / WndRed-C dan Troj / Agent-TNV. Namun, karena malware yang ditunjukkan oleh penjahat cyber bisa berubah sewaktu-waktu adalah mungkin bahwa perangkat lunak berbahaya lainnya dibagikan selama waktu ketika website itu dikompromikan.

Infeksi ini memalukan untuk MySQL.com, yang menderita hack lain awal tahun ini. Pada kesempatan itu, hacker mengeksploitasi kerentanan injeksi SQL untuk mengekspos username dan password buruk dipilih.

Pasti akan ada spekulasi bahwa kerentanan yang sama mungkin telah memungkinkan hacker untuk mengakses website pada kesempatan ini pula.

Untuk sebuah website untuk menderita satu hack dapat dianggap sebagai sebuah kemalangan. Untuk menderita dua kali dalam waktu kurang dari satu tahun mulai terlihat seperti kecerobohan.

Iframe Vulnerability in Google App Engine

2:40 PM Add Comment

Iframe Vulnerability in Google App Engine

Iframe Vulnerability in Google App Engine | Seorang  Hacker India "Ethical Mohit" telah menemukan Iframe Vulnerability di halaman Contact Desk dari Google App Engine (Appspot).

[+] Contoh : Click Here
[+] Contoh : Click Here

Google App Engine memungkinkan Anda menjalankan aplikasi web Anda di Google infrastruktur. App Engine mudah untuk digunakan, mudah untuk mempertahankan, dan mudah untuk skala sebagai lalu lintas dan kebutuhan penyimpanan data. Dengan App Engine, tidak ada server untuk mempertahankan: Anda hanya meng-upload aplikasi Anda, dan siap untuk melayani users. Google App Engine memudahkan Anda untuk membangun sebuah aplikasi yang berjalan andal, bahkan di bawah beban berat dan dengan sejumlah besar data.

via | THN

NASA Forum Vulnerable SQL Injection

3:50 PM Add Comment

NASA Forum Vulnerable SQL Injection

NASA Forum Vulnerable SQL Injection | TeaMp0isoN Hackers crew today Reveal on twitter that the discussion forum on NASA website at https://worldwind35.arc.nasa.gov/forum/ is Vulnerable to SQL injection. The discussion Forum script is Powered by Vbulletin. According to hacker, He use Vbulletin 4.0.x => 4.1.3 (messagegroupid) SQL injection Vulnerability Exploit for hacking the Database of Forum . Hacker also expose the Login details of Admin of website on Pastie .


NASA Forum Vulnerable SQL Injection
via | THN

Iframe Injection Vulnerability on FileHippo

5:27 PM Add Comment

Iframe Injection Vulnerability on FileHippo

Iframe Injection Vulnerability on FileHippo | Salah satu situs download Software Freeware yang paling Populer "FileHippo" rentan terhadap iframe injection. Kerentanan ini ditemukan dan disampaikan oleh n3t phir3. Berikut adalah Link Kerentanan dan Screenshot seperti yang ditunjukkan di atas.
 
 

Apple.com Vulnerable to Blind SQL Injection

5:26 PM Add Comment

Apple.com vulnerable to Blind SQL Injection

Apple.com vulnerable to Blind SQL Injection | After Sony hacks, Idahc(lebanese hacker) is back to strike Apple.com . He found two vulnerability on https://consultants.apple.com/ as listed below.

Iframe Injection : Click here
Blind SQL INjection: Click Here

Examples of the injections:

Two days before Another sub-domain of Apple's database was hacked with SQL injection by Anonymous : Read Here


via | THN

Oracle Website Vulnerable to SQL Injection

5:18 PM Add Comment

Oracle Website Vulnerable to SQL Injection

Oracle Website Vulnerable to SQL Injection | Database website oracle rentan terhadap serangan SQL injection. Website memiliki celah dimana penyerang pun dengan mudah bisa hack ke dalamnya. Kerentanan ditemukan dan disampaikan oleh Hacker "m@m@". 

Oracle menyediakan bisnis yang paling lengkap, terbuka, dan terintegrasi di dunia perangkat lunak dan sistem perangkat keras untuk lebih dari 370.000 pelanggan termasuk 100 dari Fortune 100 yang mewakili berbagai ukuran dan industri di lebih dari 145 negara di seluruh dunia. Kombinasi dari Oracle dan Sun berarti bahwa pelanggan bisa mendapatkan keuntungan dari sistem yang terintegrasi penuh seluruh tumpukan, dari aplikasi ke disk yang lebih cepat, biaya lebih dapat diandalkan, dan lebih rendah. 

Tapi website sekarang sendiri memiliki celah dengan serangan injeksi SQL.Saya menyediakan link dan pertunjukan semacam layar yang Anda dapat dengan mudah memilah-milah kerentanan. 


Berikut adalah link: 


via | THN

Apple Database Hacked by Anonymous

3:58 PM Add Comment

Apple Database Hacked by Anonymous

Apple Database Hacked by Anonymous | Anonymous hackers announce on twitter that Apple can be there next target. They expose one SQL vulnerability on Apple domain with One table "Users" data.



These all hacks now consider under Operation Antisec by Anonymous and Lulzsec Members.

SQL Injection Vulnerability in Google Lab

9:02 PM Add Comment

SQL Injection Vulnerability in Google Lab

SQL Injection Vulnerability in Google Lab Database System | Kerentanan Sangat Besar & Kritis terdeteksi di Google Lab Sistem. Vendor sudah dilaporkan oleh hacker, Tapi mereka tidak mengambil langkah positif dalam hal ini, sehingga akhirnya terkena hacker kerentanan di depan publik oleh Bangladesh Cyber Army Member - Shadman Tanjim di Forum mereka.

Google Website Lab telah SQL Injection Vulnerability dan hal yang Kerentanan Berbahaya ini dieksploitasi. Hacker bisa mendapatkan Tabel, kolom dan data dari Database. Google Lab Database memiliki sendiri menyesuaikan sistem DB. Tapi hal-hal menarik adalah sistem database mereka Similar sebagai database Ms Access. Dalam kasus Sistem Ms SQL Injection Akses Juga Bekerja pada sistem database Google Lab

Pernyataan Hacker:


Saya sudah kontak dengan Google Korporasi tetapi mereka tidak memberikan respon positif, saya pikir ini adalah kesalahan besar mereka, dan akan menderita untuk itu. Tetapi jika mereka memberikan respon positif maka ini akan sangat baik bagi mereka. Thanks a Ton!
Shadman Tanjim
Etika Hacker, Programmer dan Security Profesional
Email: admin@bdcyberarmy.com atau shadman2600@gmail.com
Website: www.bdcyberarmy.com/forum
Salam untuk: Shahee Mirza, Almas Zaman, Sayem Islam, Pudina pata, LuckyFm dan Semua
Bangladesh Cyber Army Members.


Hackers Release Step by step proof about this Vulnerability
2. Vulnerability type : SQL Injection
4. Info:

Host IP: 209.85.175.141
Web Server: Google Frontend
Keyword Found: Fast
Injection type is Integer

Let’s Check Exploiting this Vulnerable link. Here Hackers use 3 Famous SQL Injection tools. They are:

1st Work with Havij Advance SQL Injection Tool:

Screen Shot 1: Scan Vulnerable link and it says this website is Vulnerable.


Screen Shot 2: Now it scans and gets all tables and columns


Screen Shot 3: Now you can see list of tables and Columns


And this is a Prove for this Website is Genuine SQL Injection Vulnerable. Here you see this database type is MS Access, so this is a Proof of this concept. Some people should Say Google Lab Database System is not Ms Access but this Website Database is Similar as Ms Access database and Ms Access SQL Injection Query are also Work on Google Labs Database system. As like MySQL 5 and MySQL 4.1 both are injected via Union select, but both are not have Information Schema.

2nd now Work with Safe3 SQL Injector v8.4:

Screen Shot 1: Analyzing Vulnerable link and it says it’s vulnerable and gets keyword and db type.


Screen Shot 2: Now it’s Inject the vulnerable link and gets All Table list and column list


This is another Prove for this Website Vulnerability and we can see this and Dangerous thing is its Exploitable. Now we check our last SQL Injection tool for 100% Satisfy.

3rd Pangolin SQL Injection Tool:

Screen Shot 1: Scan vulnerable link and its say this website is vulnerable


Screen Shot 2: Now inject this Website and get tables and columns list


Screen Shot 3: Here is a full List of Tables and Columns list


Now I think we are 100% Sure Google Lab Website is SQL Injection Vulnerable.

You Can Check Video. This Video is also made by Bangladesh Cyber Army Member - Shadman Tanjim.



via | thehackernews

XSS Vulnerability Found on Sony PlayStation

3:52 PM Add Comment
XSS Vulnerability Found on Sony PlayStation

New XSS Vulnerability found on Sony PlayStation by c7-elixir - The C7 Crew | YES ! Sony is still Vulnerable to various bugs like XSS. Today a hacker c7-elixir from The C7 Crew has expose new XSS attack on Sony PlayStation's Website as shown. Sony got hacked 20 times in last two months by number of hackers from all over world. One more REQUEST to Sony : FIX IT BOSS !



CNN Website Vulnerable, SQL Injection

7:40 PM Add Comment
CNN Website Vulnerable, SQL Injection

Yes ! CNN is also not Secure site, There are Multiple SQL Injection Vulnerabilities on CNN News site exposed by Hacker named "Sec Indi".

CNN.com is among the world's leaders in online news and information delivery. Staffed 24 hours, seven days a week by a dedicated staff in CNN's world headquarters in Atlanta, Georgia, and in bureaus worldwide, CNN.com relies heavily on CNN's global team of almost 4,000 news professionals. CNN.com features the latest multimedia technologies, from live video streaming to audio packages to searchable archives of news features and background information. The site is updated continuously throughout the day.

SQL Injection Vulnerable Links :



CNN Website Vulnerable

CNN Website Vulnerable

SQL Injection Vulnerability was the Reason for biggest data breaches of 2011, like various SONY hacks. Hacker said that he inform the CNN admin 2-3 times, but site is still Vulnerable. I think now CNN should take this small bugs Seriously.

Project Scans for WordPress Holes

8:52 PM Add Comment
WordPress Security Scanner
H-Online: Developer Ryan Dewhurst has launched a new project called WPScan, a WordPress Security Scanner. The initial version can attempt to work out user names, crack weak passwords and identify vulnerabilities based on version. Dewhurst plans to add plugin detection and also identify the plug-in vulnerabilities, as well as add other checks.

The newly created project, developed by Dewhurst after creating a "Brute Force Tool" for WordPress, is designed to help security professionals of WordPress administrators assess their WordPress installations. The alpha quality Ruby code is licensed under the GPLv3 and is being hosted on Google Code.

WordPress has become somewhat known for security issues; many users configure a WordPress blog but fail to keep the blogging software behind it up to date. This failure can often allows attackers to use well known flaws to gain control of the blog.

PayPal Vulnerability: Hack Paypal Account Within 30 Seconds

6:52 PM Add Comment

Sebuah kerentanan keamanan dalam sistem PayPal memungkinkan untuk mendapatkan akses penuh tidak terbatas ke account apapun dalam waktu 30 detik, kami sudah mendengar dari Matt Langley dari Integrated Computer Enterprises Limited.

Kerentanan terletak pada fitur pemulihan lupa password PayPal. Langley mengatakan:

PayPal mengirimkan Ubah Password Lupa token ke email yang tidak sah alamat bukan alamat email pada account. Setelah Anda mengikuti link yang mereka email, dan mengubah password, Anda diberi akses total ke account itu. Tidak ada penipuan atau hacking canggih diperlukan. Ini bug dalam sistem email mereka yang merusak alamat email.

Setelah penyerang memiliki akses, tidak ada yang membatasi kemampuan mereka untuk menyedot uang dari rekening.

Mengeksploitasi, tentu saja, sebuah pelanggaran langsung terhadap kebijakan privasi PayPal dan daftar binatu hukum, jadi jangan coba ini di rumah, tapi perlu PayPal untuk bertindak sebagai pencuri tidak terlalu peduli dengan hal-hal seperti.

Saya bukanlah hacker, saya bingung, bagaimana saya harus merecovery password account paypal seseorang layaknya merecovery account facebook seseorang. Jika anda tau semacam link recovery account paypal, atau trik kecil dalam kasus kerentanan ini, mungkin anda bisa berbagi dengan saya atau pembaca blog saya.

Saat artikel ini saya posting saya membuka paypal, tebak apa yang saya temukan, Paypal akan melakukan Maintenance

paypal maintenance
apakah hal ini ada hubungannya dengan kasus kerentanan ini, kita takkan tau jika tidak kita coba.

Twitter Vulnerable to XSS

7:53 PM Add Comment
Twitter Help Center is again vulnerable to XSS
Note: This is a proof of concept and it doesn't reflect the views or interests of above website.
you don't need to be logged to execute it !

XSS:
http://support.twitter.com/forms/render_account_partial?account_num=XSS

Redirect:
http://support.twitter.com/forms/render_account_partial?account_num=XSS



Twitter staff has been alerted....
Update: BUG FIXED !!! Twitter security team was very fast :)


source : security-sh3ll

Sun.com Vulnerable to SQL Injection

2:01 PM Add Comment
Sun Microsystems, Inc adalah sebuah perusahaan yang menjual komputer, komponen komputer, perangkat lunak komputer, dan layanan teknologi informasi. Sun didirikan pada 24 Februari 1982. Sebelum acquistition oleh Oracle, kantor pusatnya berada di Santa Clara, California (bagian dari Silicon Valley), di kampus barat Agnews Developmental Center.

Pada tanggal 27 Januari 2010, Sun diakuisisi oleh Oracle Corporation sebesar US $ 7,4 milyar, berdasarkan perjanjian yang ditandatangani pada tanggal 20 April 2009. Sun Microsystems, Inc kemudian diganti dengan Oracle America, Inc

(+) Targets:
[-] www.reman.sun.com
[-] www.ibb.sun.com

(+) Informations:
(+) User : availlist@192.9.170.151
(+) Database : remandb
(+) Version : 5.1.43-log
(+) Datadir : /DATA/5.1_jag/
(+) Other DB : information_schema

(+) Tables from remandb:
[-] files
[-] reman_part_list
[-] request
[-] stk
[-] stk2
[-] xoption
——————————————
(+) Columns of xoption table:
[-] id
[-] part_no
[-] short_desc
[-] description
[-] list_price
[-] buy_url,cat
[-] inv_level
[-] fgl
[-] lead_time
[-] category
[-] processor
[-] activity
[-] subcategory
[-] last_updated
[-] special
[-] adj_price
——————————————
(+) Columns of stk2 table:
[-] id
[-] plant
[-] part_no_sun
[-] part_no_stk
[-] part_no
[-] qty
[-] last_updated
[-] stkgroup
——————————————
(+) Columns of stk table:
[-] id
[-] part_no
[-] short_desc
[-] description
[-] list_price
[-] cat
[-] lead_time
[-] last_updated
——————————————
(+) Columns of request table:
[-] id
[-] status
[-] req_date
[-] first
[-] last
[-] phone
[-] email
[-] contact
[-] country
[-] part_no
[-] sun_model
[-] order_no
[-] qty
[-] request
[-] comments
[-] archive
[-] last_updated
——————————————
(emails from request table)
mark.nowicki@sun.com
al-amin@texasgroup.net
dennis.lim@sun.com
al-amin@texasgroup.net
mikej@sun.com
eric.romelfanger@sun.com
friedrich.angermair@sun.com
sophon.ros-sills@sun.com
robert.mcconnell@sun.com
bryan.klosak@sun.com
cynthia.chong@sun.com
geraldine.tesalona@sun.com
friedrich.angermair@sun.com
jane.okeefe@sun.com
Jean-Paul.Folch@Sun.com
Brendalique.Giterson@Sun.COM
steven.denies@sun.com
ellen.mcloughlin@sun.com
sinkiewng@yahoo.com
KEVIN.C.CUSTER@LMCO.COM
may-inn.wong@sun.com
sev.waqatairewa@sun.com
darlene.andreine@sun.com
patrick.caputo@sun.com
ellen.mcloughlin@sun.com
friedrich.angermair@sun.com
douglas.hoyt@lmco.com
douglas.hoyt@lmco.com
Richard.A.Smith12@lmco.com
bernadette.lachica@sun.com.ph
dennis.lim@sun.com
ellen.mcloughlin@sun.com

——————————————