2007.10.15 Daily Security Reading
by Rodney Campbell on Oct.19, 2007, under Security
A vulnerability in BIND 9 allows remote attackers to cause a cache poisoning attack against it.
Check Point Secure Platform Hack (pdf)
An uncensored real-time how I exploited a vulnerability in a kernel hardened EAL4+ certified firewall.
Analyzing the Effectiveness and Coverage of Web Application Security Scanners (pdf)
The study centered around testing the effectiveness of the top three web application scanners in the following 4 areas. Links crawled, Coverage of the applications tested using Fortify Tracer, Number of verified vulnerability findings and Number of false positives.
The latest Storm variants have a new twist. They now use a 40-byte key to encrypt their Overnet P2P traffic.
The Russian Business Network Responds
An individual claiming to represent the Russian Business Network has denied media reports the company provides Web hosting services to numerous cyber criminal operations.
How to Turn Your Browser Into a Weapon
Add these extensions to Firefox when you’re looking to do some hacking.
HD Moore takes iPhone exploits public
He says the device will still be vulnerable even after Apple patches it.