• webappsec

    A Phish floating in Google Survey!

    by  • January 29, 2008 • demo, education, google, hackers, life, news, phishing, script, security, webappsec • 4 Comments

    Demo 1. Phizy-Phizy-Phizy I have always loved making this phizy-phizy-phizy sound purposelessly, which I once heard in a Rob Schneider movie (which, if I remember correctly, was a pathetic movie). Anyhoo! I, now, have a set of very strong reasons to move around repeating the same lines. First, we received a request to be...

    Read more →

    What a new year Gift! :)

    by  • January 5, 2008 • news, review, security, w3af, webappsec • 0 Comments

    It brings me immense pleasure to inform you that w3af (web application attack and audit framework) has been named the Best Application Scanner in BEST IT Security and Auditing Softwares 2007 list prepared by Security Database. I had mentioned in a few previous articles that I see immense potential in w3af. I must, however,...

    Read more →

    Orkut Latest XSS Worm; and what it means for Indian Orkuteers

    by  • December 20, 2007 • cyberlaw, defacement, education, google, guide, irony, life, news, review, security, webappsec, xss • 16 Comments

    Update: Kishor reports a flaw in the implementation of “private” videos feature on Orkut. Although I am at office and I haven’t checked it yet myself, I believe I can trust him, based on his posts at Slackers. Nice one Kishor. 1. YAWN Orkut (Google’s MySpace and Facebook for Indian,...

    Read more →

    The Web is Broken

    by  • October 12, 2007 • csrf, defacement, google, hack, hackers, humour, life, review, script, security, webappsec, xss • 0 Comments

    Update: I somehow managed to make a blunder. A part of slide no. 12 was taken from David Kierznowski’s (of GNUCitizen and Blogsecurity group) presentation for OWASP Belgium Conf. I missed out on mentioning David’s name is the credits. Apologies David. I’ve updated and re-uploaded it. Yesterday, I presented my first Webinar (Seminar on...

    Read more →

    Month of Search Engine Bugs: “Mission Accomplished”

    by  • July 3, 2007 • bug, google, hack, hackers, irony, loophole, microsoft, phishing, review, security, webappsec • 0 Comments

    The Month of Search Engine Bugs by MustLive has come to an end. MutLive reports: In the project took part 33 search engines (30 web engines and 3 local engines) of 19 vendors, some vendors have several engines. The list of project’s participants (in order of appearance): Meta, Yahoo, HotBot, Gigablast, MSN, Clusty, Yandex,...

    Read more →