Security and safe browsing for Firefox

Tuesday, March 25th, 2008

You installed Firefox.  How do you make it more secure for daily use?  How do the Mozilla developers ensure that they are doing all the right things?  How do you safely browse the Internet? These are not easy questions to answer, and  some of the answers will be system/OS-dependent. Security functionality in ...

Firefox Web Application Testing Tools

Monday, March 24th, 2008

Exploit-Me is a suite of Firefox web application security testing tools. Exploit-Me tools are designed to be lightweight and easy to use. Instead of using a proxy like many web application testing tools, Exploit-Me integrates directly with Firefox. It currently consists of two tools, one for XSS and one for ...

Javascript Malware Source Code

Saturday, March 22nd, 2008

This is how dangerous the web has become. Lately it is estimated that over 10K of websites fell victim to a large attack that included a remote Javascript file into the title tag of a web page. The JS malware exploits vulnerabilities in Windows, RealPlayer, and other applications to break ...

Second mass hack exposed

Tuesday, March 18th, 2008

Hot on the heels of a recent hack in which 10,000 sites were compromised, researchers have disclosed a new large-scale attack.. Researchers at McAfee estimated that the attack has been active for roughly one week, and in that time frame has managed to place itself on roughly 200,000 web pages. Most of ...

Evil Javascript mutates to evade detection

Saturday, March 8th, 2008

Hackers have hit on a new technique for invading desktop computers via compromised websites, while avoiding anti-virus detectors, according to the SANS Institute. SANS' Internet Storm Center (ISC) said on Thursday it has come across the attack on a compromised website, where an iframe was used to deploy various pieces of ...