Monthly Archives: December 2015
Windows Null-Free WinExec Shellcode
This is a tool written in python to generate shellcode to use on Microsoft Windows.
WordPress 4.4 User Enumeration
WordPress versions 4.4 and below leak whether or not a username exists in their login flow.
Government Could Hack Children's Toys to Spy on You
Smartphones, Smart TVs, Smart Watches, Cell Phone Towers, Messaging services… but now, What’s Next?
Smart Toys? Yes, probably.
Tech expert is warning that ‘Smart Toys’ could now be used by the government intelligence agencies to spy on suspects.
As part of the Investigatory Powers Bill, children’s connected toys could be the next item to be used by the government in an effort to spy
![]()
France will not Ban Public Wi-Fi Or Tor Network, Prime Minister Valls Confirms
Despite the French Ministry of Interior’s demands, France will not ban the TOR anonymity network or Free public Wi-Fi as a way to help the law enforcement fight terrorism.
French Prime Minister Manual Valls has gone on record saying that a ban on Free public Wi-Fi is “not a course of action envisaged,” and he is not in favor of banning the TOR anonymity network, either.
Following the
![]()
Microsoft issues warning after Xbox Live certificate ‘inadvertently’ leaks
A malicious attacker could in theory use the leaked security certificate to launch a man-in-the-middle attack, intercepting Xbox Live usernames, passwords and even payments made by game players.
The post Microsoft issues warning after Xbox Live certificate ‘inadvertently’ leaks appeared first on We Live Security.
![]()
Skybox Platform 7.0.611 XSS / SQL Injection / Code Execution
Skybox Platform versions 7.0.611 and below suffer from code execution, remote SQL injection, cross site scripting, and directory traversal vulnerabilities.
Joomla Nice Ajax Poll 1.4.0 SQL Injection
Joomla Nice Ajax Poll component version 1.4.0 suffers from a remote SQL injection vulnerability.
Gokhan Balbal 2.0 Cross Site Request Forgery
Gokhan Balbal version 2.0 suffers from a cross site request forgery vulnerability.
WordPress S3 Video Remote Shell Upload
WordPress S3 Video plugin suffers from a remote shell upload vulnerability. Versions prior to 0.91 are affected.
