Slashdot is supposed to be a respectable (news) portal for geeks and nerds. It’s punch line says News for nerds, Stuff that matters. I must admit that there was a time when I used to start my day with Slashdot, trying not to miss even a single news. That phase, however, is over. The two [...]
January 29, 2008 – 9:24 pm
Demo
1. Phizy-Phizy-Phizy
I have always loved making this phizy-phizy-phizy sound purposelessly, which I once heard in a Rob Schneider movie (which, if I remember correctly, was a pathetic movie). Anyhoo! I, now, have a set of very strong reasons to move around repeating the same lines.
First, we received a request to be involved in a [...]
December 22, 2007 – 7:27 pm
1. Life & Code
(The title of this section is taken from Johnny’s blog of the same name, Life and Code. Although my implementation of the phrase isn’t in terms with Johnny’s, yet I could resist using it. )
Life: Three days ago I found that there are some strange entries in my local Apache web [...]
December 20, 2007 – 3:14 pm
Update: Kishor reports a flaw in the implementation of “private” videos feature on Orkut. Although I am at office and I haven’t checked it yet myself, I believe I can trust him, based on his posts at Slackers. Nice one Kishor.
1. YAWN [Yet Another Worm, Nanny]
Orkut (Google’s MySpace and Facebook for Indian, Pakistan [...]
By Bipin 3 Upadhyay
|
Also posted in cyberlaw, defacement, education, guide, irony, life, news, review, security, webappsec, xss
|
October 12, 2007 – 5:54 pm
Update: I somehow managed to make a blunder. A part of slide no. 12 was taken from David Kierznowski’s (of GNUCitizen and Blogsecurity group) presentation for OWASP Belgium Conf. I missed out on mentioning David’s name is the credits. Apologies David. I’ve updated and re-uploaded it.
Yesterday, I presented my first Webinar (Seminar on [...]
By Bipin 3 Upadhyay
|
Also posted in csrf, defacement, hack, hackers, humour, life, review, script, security, webappsec, xss
|
ZDNet Asia reports that Google Security team has discovered as “Dangerous Java Flaw that threaten’s Virtually Everything“. The interesting part of this news is that, apart from a few scary statements, it doesn’t inform you anything else.
The Sun advisory page on this flaw, however, informs you about two flaws which are nothing but Buffer Overflows. [...]
The Month of Search Engine Bugs by MustLive has come to an end.
MutLive reports:
In the project took part 33 search engines (30 web engines and 3 local engines) of 19 vendors, some vendors have several engines. The list of project’s participants (in order of appearance): Meta, Yahoo, HotBot, Gigablast, MSN, Clusty, Yandex, Yandex.Server (local engine), [...]
It’s strange writing something like this using a service that’s owned by Google. But it was long overdue.
There was a time when I used address Google as “Google God” :).Used to believe a lot that they religiously follow their “Do no Evil” motto. I forgot that as companies grow, there are bound to be [...]
I have been reading a lot of discussion on Sun’s current market position/revenue versus their *mad* strategy. I have simultaneously been working on Java’s history for my book. I thought it might be interesting to post my views on the topic and see what others are thinking. To justify/criticize Sun’s current modus operandi, I will [...]
I posted a very small article on Google Bombs; and quite co-incidentally few days later read that Google has started diffusing the bombs. Now “started diffusing…” makes sense when it has to be done manually, but aren’t we talking about terabytes and petabytes of data? We can never expect it to be done manually. Moreover, [...]