Archive for ‘News’

HashDoS PoC

I was at the CCC (28C3) congress in Berlin recently. Where the two researchers Alexander ‘alech’ Klink and Julian ‘zeri’ Wälde disclosed a DoS vulnerability affecting about all programming languages in the way they utilize hashtables. Funny thing is, most server technologies, PHP, ASP (.NET), Java variants, Pyhon (django) etc, all appear to be vulnerable to different variants of the attack. It consists of abusing the hashtable datastructure(s) in a way…

More+

Advise

Dear Rikspolisstyrelsen,

While examining our server logs we noticed that you are accessing our webpage.
It’s nice to see that you are interrested in IT security.
However, we also noted that you are running an old web browser version that has several published exploits against it.

More+

LulzSec exposed

LulzSec will get a hard blow soon I think. update: this was not th3j35st3r’s work but KILLERCUBE’s th3j35st3r KILLERCUBE has been Googling his ass off to expose the leaders of lulzSec, here are results, I wonder how long it will take until the arrest will be made. There go our lulz just when the show was getting cool with hack core and things like that :’(. Some Hackcore can be…

More+