Inguma 0.0.7.2 Released for Download – Penetration Testing Toolkit

Monday, March 17th, 2008

For those that don’t know, Inguma is an open source penetration testing and vulnerability research toolkit written completely in Python. The environment is mainly oriented to attack Oracle related systems but, anyway, it can be used against any other kind of systems. It’s becoming a mature and useful package! I’m glad ...

Cisco product shipped with backdoor

Monday, March 17th, 2008

Cisco has reported a critical security hole in CiscoWorks Internetwork Performance Monitor (IPM), the network availability monitoring component of the CiscoWorks LAN Management Solution (LMS). According to the advisory, commands can be executed remotely on the underlying Solaris or Windows operating system without authentication. Cisco reports that the problem is due ...

Anatomy of a hack attack

Sunday, March 16th, 2008

Monday, 9am Blackjack, a hacker working from an internet cafe in London, is about to launch an attack on a major government agency. His aim is to cause maximum disruption and embarrassment. And, according to security experts, his job is going to be worryingly easy. "Most organisations have dozens of vulnerabilities they ...

Hack into a Windows PC – no password needed

Friday, March 14th, 2008

A security consultant based in New Zealand has released a tool that can unlock Windows computers in seconds without the need for a password. Adam Boileau first demonstrated the hack, which affects Windows XP computers but has not yet been tested with Windows Vista, at a security conference in Sydney in ...

FTP Bug Leaves IE Users Vulnerable

Wednesday, March 12th, 2008

A flaw in the way Microsoft's Internet Explorer browser processes FTP commands could let attackers steal or erase data from a victim's FTP site. The bug, which affects users of IE 6 and the unsupported IE 5 browser, gives an attacker a way of hijacking the victim's FTP sessions. But a ...