Android malware said to be targeting Indian politicians

am

Android as of now has gain popularity much more than desired by its creator! Anything that has popularity and relays on internet for major function, becomes an easy target for cyber crooks. Though security loopholes have been updated and brought in android time to time, cyber crooks relay on malwares and sophisticated zero days to ... [Read More]

Tagged , , , , , , , , , , | Leave a comment

Beware! RBI lottery scam on the way

s2

One fine morning while doing routine work to analyze malicious mails and samples, I came across one such mail hailing from RBI offering lottery. Obviously this ain't gonna be legitimate! :) But this kind of mail landing in inbox is an alarming issue though I will uncover why this happened. Working with Law enforcement agencies, ... [Read More]

Tagged , , , , , , , | Leave a comment

Kali Linux: A complete infosec distro

k

BackTrack has always been the most popular choice when it comes to choose a security purpose distro. The offensive security open source distro gained a lot of popularity and was rolled till version 5 with frequent changes to the variants. The project has been moved to debain now and the operating system has been renamed ... [Read More]

Tagged , , , , | Leave a comment

Innobuzz Cloud Campus : Becoming digitally engaged

inks

Online Education is the buzzword today. Many startups have initiated their idea in this area. But, changing the motion of e-learning wave and cutting through the clutter can only bring an initiative at the forefront. I happened to come across this amazing new website that claims to be the best cloud campus. It is Innobuzz ... [Read More]

Leave a comment

XSS in Dell

XSS alert

Dell is a leading name in the Information Technology industry, especially the hardware segment of the industry. From servers to work stations, desktops, laptops, mobiles, Dell has got its name and a good hold on leading forms of IT gadgets. Due to its popularity, security should be a good concern for Dell. Unfortunately, its not! ... [Read More]

Tagged , , , , , , , | 1 Comment

No, not a Java Zero Day again!

Java_Bullet

For all netizens, I have a simple advice: either disable Java or uninstall it! A brand new Java Zero Day has been identified by security firm FireEye. The constant targets are browsers that have Java v1.6 Update 41 and Java v1.7 Update 15 installed. According to the researchers, like other popular Java vulnerabilities in which ... [Read More]

Tagged , , , , , , , | Leave a comment

Critical vulnerabilities in Adobe Flash Player fixed

flp

Flash player and Acrobat reader are the two products of Adobe who have been heavily under constant attacks of cyber crooks. Be it zero days flaws or bypassing sandbox, the end user security has been left to get compromised. Yesterday Adobe released flash player update to fix three exploits, two of which are under active ... [Read More]

Leave a comment

APTs and the Red Dragon

apt1

Yesterday following a tweet, I came across a newly published report pointing towards the involvement of the Chinese government and its People's Liberation Army (PLA) involvement in some long time cyber espionage carried out in the past. A leading security firm Mandiant has published a comprehensive report detailing the activities of Unit 61398, the organization ... [Read More]

Tagged , , , , , , , , | Leave a comment

HealthKart.com XSS

XSS alert

Many a times passing by few websites, we have responsibly disclosed security related issues especially XSS and SQL injection threats. This is one of the findings of our. HealthKart.com is an e-commerce website dealing in health care products, providing online shopping of them. While passing by the website, we as usual :) thought of checking ... [Read More]

Tagged , , , , , | 1 Comment

Exploit Diary: Ruby on Rails and Java back with exploits

Java_Bullet

The New Year welcomed Ruby on Rails and Java with exploits and zero days! Talking about Ruby on Rails first, an SQL injection vulnerability was identified on the active record in all versions. Due to the way dynamic finders in Active Record extract options from method parameters, a method parameter can mistakenly be used as ... [Read More]

Tagged , , , , , , , | Leave a comment