Monthly Archives: August 2011

Common forms of Hacking

I’ve been asked to write an article for a popular website in relation to hacking and what the most common forms of hacking are. So, I’ve put together a brief blog about it and will link to the full article … Continue reading

Posted in Web Security | Leave a comment

A Better & More Efficient Backup Solution

Most backups consist of just copying files to a different directory or even hard drive/tape drive. A good backup solution is to use rsnapshot. Rsnapshot is a filesystem backup utility based on rsync. Using rsnapshot it is possible to take … Continue reading

Posted in Managed Hosting | Tagged | Leave a comment

Apache Security Advisory – Remote DoS

Apache Security Advisory – Remote DoS Application : Apache Web Server (mod_deflate module) Versions Affected : 1.3 – 2.2. Exploit : Range header DOS vulnerability Ease of use : Simple Threat Level : High Fix : Multiple, see below. ZeroDay … Continue reading

Posted in Managed Hosting | Leave a comment

Be careful Upgrading PHP!

The PHP development team is advising users to avoid updating to version 5.3.7, released last week, after a serious bug was found in one of the cryptographic functions. The issue effects the crypt function, used to encrypt and decrypt a … Continue reading

Posted in Managed Hosting | Leave a comment

How Practical Is It To Block Specific Countries From Accessing Your Server?

Hackers always were, and will be a big concern among users of the internet – especially owners of publicly available servers, whatever they serve. Analysing the origins of attacks, one can see that they originate more frequently from countries such … Continue reading

Posted in Web Security | Leave a comment

Mambo CMS Security Advisory – SQL Injection

Application : Mambo CMS Versions Affected: 4.6.5 and Lower Exploit : SQL Injection Easy of use: Moderate Threat Level : Low Fix: Use another CMS in active development ZeroDay : No Credit: Aung Khant, http://yehg.net, YGN Ethical Hacker Group, Myanmar … Continue reading

Posted in Web Security | Leave a comment

WordPress Security Advisory – TimThumb Theme Plugin – Remote Execution

Application : WordPress TimThumb (Theme) Plugin Versions Affected: 1.* – 1.32 (Only version 1.19 and 1.32 were tested.) Exploit : Remote Code Execution Easy of use : Moderate Threat Level: High Fix: Update to latest ZeroDay : No Credit: Mark … Continue reading

Posted in Web Security | Leave a comment

Is there a benefit to having an Extended Verification SSL certificate?

What is an SSL certificate? SSL certificates provide one means by which information can be communicated securely over the internet. They work using a form of encryption, where the website server and the website visitor’s computer perform a ‘handshake’ and the certificate is … Continue reading

Posted in Web Security | Leave a comment

LinkedIn makes controversial change to privacy settings

The professional networking site LinkedIn last week made a change to default privacy settings that made every user’s photograph and name available to be used for third-party advertising. The issue of default privacy settings is one that concerns many users … Continue reading

Posted in Web Security | Leave a comment