Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

February 7th, 2012, 14:32 GMT · By Eduard Kovacs

BLOG

TeamHav0k Finds XSS Flaws in US DoD and Other Military Sites

SHARE:

Adjust text size:

XSS in US Army Corps of Engineers website Enlarge picture - XSS in US Army Corps of Engineers website
Hackers from TeamHav0k return with other cross-site scripting (XSS) vulnerabilities that they found in some major sites. This time the XSS flaws were identified on subdomains of the websites owned by the US Department of Defense, Tricare, the site of the health organization especially purposed for uniformed service members, and the official website of the US Army.

The hackers provided us with a Pastebin document to prove their findings, but they requested us not to publish the proof-of-concept.

Members of TeamHav0k have been highly active lately when it comes to finding XSS security holes in high-profile websites.

NASA, US government organizations and a long list of university websites were all identified by the hackers as containing these flaws.

For the time being, the hackers only publish PoCs with the purpose of helping administrators patch up the security of their sites, but they claim that at any minute they may turn to the dark side of hacking.
FILED UNDER:
XSS
US
TeamHav0k

XSS VULNERABILITIES IN US MILITARY WEBSITES - PHOTO GALLERY:

TELL US WHAT YOU THINK:

703 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


XSS Vulnerability Found in Google, Forbes, Myspace, MTV and Ferrari

Hackers Prove EA, IGN, ImageShack, NY Times, Verizon Vulnerable

TeamHav0k’s OP XSS: Vulnerabilities in US Government Sites (Exclusive)

Security Vulnerabilities Fixed in FAA.Gov and Oracle Solutions

Hackers Leak Tons of Data from University of Washington

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM