Adobe issues official workaround for PDF vulnerability

Wednesday, April 7th, 2010

For consumers, open up the Preferences panel and click on "Trust Manager" in the left pane. Clear the check box "Allow opening of non-PDF file attachments with external applications". For administrators who wish to accomplish this with a registry setting on Windows, add the following DWORD value to: HKEY_CURRENT_USER\Software\Adobe\Acrobat Reader\\Originals Name: bAllowOpenFile Type: REG_DWORD Data: ...

NMAP 5 Cheatsheet

Tuesday, February 23rd, 2010

Here's a nice little cheatsheet for NMAP 5 making it's rounds today on the internet: http://sbdtools.googlecode.com/files/Nmap5%20cheatsheet%20eng%20v1.pdf Very handy.

Your Google Chrome Bugs Could Be Worth $500-$1337

Friday, January 29th, 2010

Google has recently launched an "experimental new incentive" that could reward security researchers for their bugs in the Chrome browser (all versions - stable, beta, and dev) or in the open source Chromium project itself.  Their base reward is identical to Mozilla's at $500, but they are offering a higher ...

Bing Web Server Probe

Thursday, January 28th, 2010

This is a tool for security researchers. It allows you to search for either an IP address or a DNS name and display all associated domain names known to Bing. Download: http://bingprobe.codeplex.com/

Exploiting The New IE 0day (Aurora) With MetaSploit

Sunday, January 17th, 2010

While I was updating my VMs today with the final version of BackTrack 4 I decided to jump in and take a look at the new IE 0day exploit that was added to MetaSploit a couple of days ago.  It works surprisingly well.  I had 100% success rate with IE6.  ...