According to a quite interesting blog post from Brian Krebs, there is currently a Plesk exploit sold (for around 8000$) on underground forums, with the capabilities of: Printing the Admin Password Remote Code Execution Read files from Server Be aware.
Category Archives: Security News
The University of Salzburg refuses security reports
Have you read one of my last articles regarding webmasters ? The university of Salzburg didn’t or at least didn’t want to. In April I tried to contact the internal university IT staff about a possible Cross-Site Scripting security flaw on their main website, but got no answer (beside the auto-response from their helpdesk system). After … Read More →
China Software Developer Network (CSDN) leaked 6 Million user data
CSDN, One of the biggest programming communities in China, leaked 6M user data. A text file with 6M CSDN user info: user name, password, emails, all in clear text, is hot on internet. You could easily get the download link (use xunlei to download the file) on google plus or twitter. NowChinese programmers are busy … Read More →



Follow Me!