PoC / Exploit Search Portal

New proof of concept & exploit searching portal and API released.

Click here for more info

Security Statistics Released

SecWatch releases security statistics.

Click here for more info

Free Newsletter Service

Receive daily and/or weekly summaries of recent vulnerability and exploit information.

Click here for more info

Recent Vulnerabilities

28 May 08: RevokeBB "search" Parameter Handling Remote SQL Injection Vulnerability

28 May 08: OpenSSL Server Name Extension and Key Exchange Remote Denial of Service Vulnerabilities

28 May 08: Adobe Flash Player Unspecified Remote Code Execution Vulnerability

28 May 08: spamdyke "smtp_filter()" DATA Command Open Relay Vulnerability

28 May 08: eMule X-Ray Unspecified Memory Corruption and Buffer Overflow Vulnerabilities

28 May 08: Samba "receive_smb_raw()" Remote Buffer Overflow Vulnerability

28 May 08: Motorola RAZR JPEG Processing Remote Buffer Overflow Vulnerability

28 May 08: Creative Software AutoUpdate Engine ActiveX Control Remote Buffer Overflow Vulnerability

28 May 08: EMC AlphaStor Server Agent and Library Manager Code Execution Vulnerabilities

28 May 08: CKGold "category_id" Parameter Handling Remote SQL Injection Vulnerability

 

[ Vulnerability Archive ]

 

Recent Exploits

21 Mar 08: xine-lib <= 1.1.11 Remote Heap Overflow PoC (xinehof.zip)

21 Mar 08: Microsoft Office Excel Code Execution Exploit (MS08-014) (zha0_ms08_014.rar)

20 Mar 08: Sun Solaris <= 10 rpc.ypupdated Remote Root Exploit (ypk2008.tar.gz)

17 Mar 08: Home FTP Server 1.4.5 Passive Mode Remote Denial of Service Exploit (HomeFTP_DoS.py)

17 Mar 08: Apple Safari (webkit) Remote Denial of Service Exploit (iphone/osx/win) (Safari_dos.html)

16 Mar 08: CA BrightStor ARCserve Backup r11.5 ActiveX Remote Buffer Overflow Exploit (ARCserve_AddColumn_BoF.html)

14 Mar 08: Dovecot IMAP 1.0.10 <= 1.1rc2 Remote Email Disclosure Exploit (DovecotIMAP.py)

14 Mar 08: MailEnable <= 3.13 MailEnable IMAP Service "Fetch" post-auth Remote Buffer Overflow Exploit (imap.pl)

14 Mar 08: VLC <= 0.8.6e Subtitle Parsing Local Buffer Overflow Exploit (VLC_Subtitle_BoF.c)

14 Mar 08: SunOS 5.10 Sun Cluster rpc.metad Denial of Service PoC (SunOS_rpc.metad.c)

 

[ Exploit Archive ]

 

Recent Internet / Security News and Events

SecurityFocus:  News: Ransomware resisting crypto cracking efforts

SecurityFocus:  News: Boycott spotlights antivirus testing issues

SecurityFocus:  News: Hired gun blamed for business outage

SecurityFocus:  News: Legal experts wary of MySpace hacking charges

SecurityFocus:  Brief: Opera adds security, Firefox coming


Slashdot:  Hackerteen Volume 1: Internet Blackout

Slashdot:  Nokia Unveils "World's Thinnest" QWERTY Smartphone

Slashdot:  Corporate Behemoth Keeps Ripping "Real"

Slashdot:  Hands On With Nvidia's New GTX 280 Card

Slashdot:  Taking the Wii Controller to the Next Level

Slashdot:  Trending Low-Volume Google Searches with Gootrude

Slashdot:  Bezos Buries Patent Office in Paper

Slashdot:  Do Women Write Better Code?

Slashdot:  GE Microbes Make Ersatz Crude Oil From Many Sources

Slashdot:  Nuclear Warhead Blueprints On Smugglers' Computers


The Register:  Pentagon hacker vows to take extradition fight to Europe

The Register:  Quantum crypto targeted in attack of the clones

The Register:  Disgruntled admin gets 63 months for massive data deletion

The Register:  AVG scanner blasts internet with fake traffic

The Register:  Ransomware Trojan code break 'impractical'


The Network Administrator:  Hiding Your Files Made Easy

The Network Administrator:  Without Internet Neutrality

The Network Administrator:  The Tin Men fo Africa

The Network Administrator:  An Interview with Linus Torvalds

The Network Administrator:  Adware / Spyware Extortion


LinuxSecurity:  Tips for Your Users: Passwords You Can Live With

LinuxSecurity:  The Power of 'root' in Linux

LinuxSecurity:  Core SELinux Version R080611 Released

LinuxSecurity:  Security Holes in Linux Kernel Closed

LinuxSecurity:  Linux Security for Beginners


Help Net Security:  Article: Q&A: iPhone Security and the Enterprise Market

Help Net Security:  Security World: Third Brigade acquires open source host intrusion detection project

Help Net Security:  Security World: Network security change workflow solution

Help Net Security:  Security World: Mismatch between IT security challenges and deployed solutions

Help Net Security:  Security World: Sophos assists computer crime unit in a botnet master case


[ News Portal ]