2013-10-29

Pres Obama gets pwned

URL shortening service of twitter was hijacked, to point Obama's URL's to a youtube video on Syrian terrorism. The motive:
"Obama doesn't have any ethical issues with spying on the world, so we took it upon ourselves to return the favor"

2013-10-16

Lock your PC before leaving your desk!

As security professionals, it is extremely hard to educate users for basic security awareness. The simplest being, locking their PC (Windows Key + L), before leaving their desks. Here are some hilarious pranks to run on such users, to educate them (AKA teach them a lesson)!

2013-10-09

AVG and WhatsApp hacked by Palestinian Hackers

It is always embarrassing when security companies get hacked! AVG joins that (not so) elite club. WhatsApp is pretty known to have security holes, so no news there.

2013-10-05

Your corporate network is already compromised

A very interesting article from Troy. Good to know about Dedicatexpress, who sells RDP access to the servers of various companies. A cisco's server was available for $4.55!

Yahoo Reluctantly Joins A Bug Bounty Program

Seems like a half-hearted super-late plan from Yahoo

2013-10-04

Adobe Hacked!

Hackers stole (hopefully) encrypted credit card data from Adobe. The hack apparently took place around 11-Sep, but was only 'recently' discovered!
Moreover, 40 GB of source code of Adobe products have been stolen as well. Which means we can now expect even more sophisticated malware

Update 29-Oct-2013:
3 million encrypted customer credit card records stolen. At least 38 Million users impacted. More details

Update 10-Nov-2013:
"Operation Hangover" based in India, and used a zero-day Microsoft vulnerability that has been patched now.

2013-10-03

Web Penetration Testing with Kali Linux

I was requested by PacktPub to review a book on Penetration Testing (using Kali). The book is now published and available here.