us

US State Bans Forced RFID Tagging Of Humans




us

US State Outlaws RFID Data Theft




us

Mythbusters RFID Episode Axed After Pressure From Credit Card Firms




us

European Commission Launches New Industry Guidelines On RFID Privacy







us

Microsoft Windows Net Use Insufficent Authentication

The Windows "net use" network logon type-3 command does not prompt for authentication when the built-in Administrator account is enabled and both remote and originating systems suffer from password reuse. This also works as "standard" user but unfortunately we do not gain high integrity privileges. However, it opens the door and increases the attack surface if the box we laterally move to has other vulnerabilities present.












us

Avaya IP Office Customer Call Reporter Command Execution

This Metasploit module exploits an authentication bypass vulnerability on Avaya IP Office Customer Call Reporter, which allows a remote user to upload arbitrary files through the ImageUpload.ashx component. It can be abused to upload and execute arbitrary ASP .NET code. The vulnerability has been tested successfully on Avaya IP Office Customer Call Reporter 7.0.4.2 and 8.0.8.15 on Windows 2003 SP2.




us

Defending Islam, Hacker Defaces Thousands Of Dutch Websites




















us

Adobe Fixes Critical Security Flaws In Flash, ColdFusion, Campaign










us

Russian Media Group Rambler Attempting To Hold Nginx Hostage






us

ScanGuard Antivirus Insecure Permissions

Scanguard versions through 2019-11-12 on Windows has insecure permissions for the installation directory, leading to privilege escalation via a trojan horse executable file.