Posts Tagged hacked-applications

Yet another big company hit with SQL Injection problems (BT.com)

March 13, 2009

In last couple of weeks big companies have been attacked and are having big issues with SQL Injection. At this time British Telecom (bt.com) was the target company (see more info at here). Big companies such as Kaspersky , British Telecom and hundreds of others could easily fix these issues with a well-structured SDL process […]

XSRF vulnerability in GMail service – Round Two

March 4, 2009

We were getting deeper on possibilities about latest XSRF at GMAIL which allow us to brute force in a kind of stealth mode the user’s password using some hidden tag as img, embeded, iframe, java script and other ways . The advisory showed as a “Proof of Concept” a sequence of password brute forcing using […]

"Second Life" is also victim of SQL Injection

February 12, 2009

According to Hacker’s Blog, the famous virtual world “Second Life” was susceptible to a SQL injection vulnerability that eventually led to customer’s data, including payment details. Although evidences are obfuscated enough to protect personal data, it is clear that a SQL injection flaw was used to obtain full access to their database under “Events” section […]

« Older Entries