Unrestricted File Upload @ Web-Based Teaching System Myanmar

May 10, 2014 0 Comments 0 tags

Critical Unrestricted File Upload vulnerability found @ Web-Based Teaching System (Myanmar) URL : http://www.wbts.com.mm Malicious Attacker can upload some file to server without permission ! And It has persistent XSS

Introducing SpearPhisher – A Simple Phishing Email Generation Tool

September 24, 2013 0 Comments 0 tags

SpearPhisher is a simple point and click Windows GUI tool designed for (mostly) non-technical people who would like to supplement the education and awareness aspect of their information security program.

Fake Login Page with XSS – IFRAME – | C B Bank – Online Electricity Billing Payment System(GBPS)

September 24, 2013 0 Comments 0 tags

When XSS vulnerabilities on bank websites are exploited by phishers, is too late to undo the unwanted consequences. The phishers were able to inject a modified login form onto the

Critical xss vulnerabilities at classified listings site Ads.com.mm

September 4, 2012 0 Comments 0 tags

PlanetCreator has reported another critical XSS Vulnerability on classified listings site Ads.com.mm Cross Site Scripting is a client-side attack where an attacker can craft a malicious link, containing script- code

BackTrack 5 R3 Release – Aug 13th, 2012

July 27, 2012 0 Comments 0 tags

The BackTrack Development team will be releasing an R3 revision of our Penetration Testing distribution in 2 weeks. This release focuses on bugfixes and over 50 new tool additions –

Yahoo Hack Leaks 453,000 Voice Passwords

July 13, 2012 0 Comments 0 tags

Yahoo Voices users: Change your Yahoo password immediately. A hacker or hacking group that bills itself as “DD3Ds Company” Thursday leaked what it said were plaintext passwords for 453,492 Yahoo

Critical SQL injection (vulnerability) on SITAGU :: Sitagu International Buddhist Missionary Centre

March 15, 2012 0 Comments 0 tags

Security researcher Dr@GoN 3y3 reported another Critical SQL injection (vulnerability) on SITAGU :: Sitagu International Buddhist Missionary Centre http://www.sitaguacademy.com/ SQL injection is a code injection technique that exploits a security