Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Tags > website vulnerability

Stories about: website vulnerability


Comodo Certificate Authority Website Vulnerable to XSS Attacks

It seems as for some, a serious hacking operation is not enough to make them learn about the importance of a secured website. After not long ago they fell victim to a data breach as a result of which many of their customers were left exposed, Comodo proves that it learned very little from the incident. Team Elite di...

19 December 2011
08:05 GMT

Pan American Games Website Vulnerable to Data Leaks

An anonymous person revealed yesterday that he found a flaw in the official website of the Pan American Games held at Guadalajara in Mexico. The weakness seems to make accessible the personal information of all the journalists that cover the event. According to Winnipeg Free Press, the tipster contacted a reporter ...

25 October 2011
06:02 GMT

Hackers Continue to Exploit Holes in Sony's Web Properties

The "Let's Hack Sony marathon" continues as hackers announced a new compromise of one of the company's websites and disclosed exploitable vulnerabilities affecting another.Hacking outfit LulzSec, which recently targeted FOX and stole the personal details of 250,000 X Factor USA auditionees, hacked into the ...

24 May 2011
07:50 GMT

Vulnerabilities Disclosed on Sun Websites

The hackers who disclosed vulnerabilities in MySQL.com also published details about SQL injection flaws in older Sun Microsystems websites.Sun Microsystems was acquired by Oracle at the beginning of 2010 and its products were integrated into the latter's portfolio.However, given the sheer size of Sun many of its...

28 March 2011
08:23 GMT

LastPass Fixes Serious Cross-Site Scripting Vulnerability

Password management service LastPass has fixed a serious cross-site scripting vulnerability on its website which could have been exploited to obtain sensitive information about other people's accounts.LastPass allows users to generate secure passwords for each of their accounts and store them inside an encrypted...

1 March 2011
02:19 GMT

University of Sydney Student Data Exposed via Website Vulnerability

A vulnerability on the University of Sydney (USyd) website allowed sensitive student data to be accessed by anyone, for possibly as long as four years.According to the Sydney Morning Herald, which learned of the flaw and notified the university about it, the data included student names, home addresses, emails, as we...

20 January 2011
02:30 GMT

Security Expert Claims Vast Majority of Indian Government Websites Are Insecure

An Indian security expert and whitehat hacker claims that as much as 90% of websites operated by the Indian government are vulnerable to various types of attacks.Vineet Kumar is CEO of Security Brigade, a security consultancy and auditing firm, and also leads the Indian National Anti-Hacking Group (NAG), a non-profit...

28 December 2010
12:08 GMT

Mozilla Extends Bug Bounty Program to Its Websites

Mozilla has extended its security bug bounty program to also reward the discovery of Web vulnerabilities like cross-site scripting (XSS), SQL injection (SQLi) or cross-site request forgery (CSRF), in its websites.Mozilla's vulnerability reward program, one of the first of its kind, was originally limited to only...

15 December 2010
10:46 GMT

ESPN Fantasy Football Vulnerabilities Enable Cheating

A security researcher has identified multiple vulnerabilities on ESPN's Fantasy Football website, which enables players to make unauthorized changes to their opponents' teams.In fantasy sports games like Fantasy Football, the participants build virtual teams by drafting real players at the beginning of a se...

23 September 2010
05:15 GMT

UN Admins Leave Vulnerability Unfixed

Robert Graham, expert at Erata Security, the person who was first to find the vulnerability behind the UN website attack in 2007, reported on his blog that United Nations security admins failed to fix the problem. The UN website is still as vulnerable as it was two years ago to massive SQL injection as it can be see...

15 August 2009
05:13 GMT

Multiple Antivirus Websites XSSed in One Hit

Websites belonging to no less than six antivirus vendors have been found to suffer from cross-site scripting weaknesses that could facilitate phishing attacks. Most of these companies were faced with similar flaws affecting their online resources in the past. A grey-hat hacker, going by the name of Methodman, who se...

11 May 2009
06:26 GMT


WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM