This whitepaper is a brief introduction to social engineering. Written in Persian.
59423ee9b91dfc72cacb2c417b023dc888347033a0bc2af04e843286f11f84e4
Whitepaper discussing the anatomy of a null session attack, how it works, and how to prevent it from happening to you. Written in Persian.
0a75c5fb650708bf7ac50efc1d8e0b4ab72bab8961ebc5e8d3490582f9c999ba
Short whitepaper discussing path traversal and bypass methods of exploitation.
11be4413b6236ab6fecdd5a45447e873eb69c85333a414919a70d7f54de08046
Whitepaper called Introduction to Man-in-the-middle Attacks. Written in Persian.
e60e9bf0ce6d14c4bdc69596983c40b4c0d29d697c8baf3f539de433ec209dd1
The author of this file claims that naming a directory with a .asp extension on IIS 6 will causing all files inside of it to be executed as such.
7d3a817a22ee42fe51d188e334502eb335489a020414bfe1d8e9ebcb14d8ed1f
Sigma Portal suffers from a denial of service vulnerability.
593b1cbc190866506dfcef5f9d9f43fa59e91023a3ad7d364d5ecf5288b68e9d
Firefox version 3.6.7 / SeaMonkey version 2.0.6 clickjacking proof of concept exploits.
8ac8b458548c4b133b6d9c32e2eda14ae488227da9b79765f8eca5349c291dc5
Netscape Browser version 9.0.0.6 clickjacking proof of concept exploit.
a97b5d162bdb289c3c56bd5328ad7a284f98b1b0906436a6922b33423cd0e1b1
Safari Browser version 4.0.2 clickjacking proof of concept exploit.
92a97e4e201eceb00f7b12084f91153b1727872eac7289f9bf13a909e4bc50c0
Opera Browser version 10.60 clickjacking proof of concept exploit.
ccf51b795e47ea2e47274de27433e355d7d39e55d0dc0274ccdc424ffc8a193d
Avant Browser version 11.7 build 45 clickjacking proof of concept exploit.
435a77eae99b8b2e485547ee5eed7b0ca3cc03a847f4250367fa00fc7d102f09
KF Web Server version 3.2.0 suffers from an unauthenticated remote contents change vulnerability.
89f13c8e921102bcf7b3ef585442122da7b9de4c25f97d8b271c289b50382a02
Cherokee Web Server version 0.5.3 suffers from directory traversal and source disclosure vulnerabilities.
7da17005444a418831899b3bfedf69e31a9a0fcd807d6a386ca1796cbefc1d51
Parallels System Automation (PSA) suffers from a local file inclusion vulnerability.
8ca04fbae8b6fd7fb878107d46cdd66d1d9dabba4bedbef6a4974083a60e33d1
Nginx version 0.8.35 suffers from a source code disclosure vulnerability.
8dca4d5306ce6d058ef43259af7bf95a987b30ca83476d447aafdaa50c0608b7
Whitepaper called Introduction to Cross Site Request Forgery. Written in Persian.
acc26b2546c9db860528e7369f90e357f092c1dc969f3867a61a5d32f0eea508
Smart Douran CMS suffers from a remote file disclosure vulnerability.
bd0c8d16f0db26a6b515c42ce23cbfd05aabc23a18d8c23f90acdc5f9fb76a23
Tadbir CMS suffers from a remote shell upload vulnerability.
7812e8cd15c1692c7ef7f5ad099638048567c15360f927f64e3094bcc32ce447
MojeNoo suffers from a remote shell upload vulnerability.
3d72b507b4eed3a9a36fc0ffc0982e8a57c21013280a79bd17f70a9b703f7592
Pargoon suffers from a remote denial of service vulnerability.
7e7376a56667203c9f3d05aad2ca66f7983a438020ef75ba5ca603219384f1f2
Web Negar suffers from a directory traversal vulnerability.
d475c2724c2bf1c6f53d7d30f39f9b72af1c687e870a3b3f2590277c479385f4
Ziggurat CMS suffers from arbitrary file upload, arbitrary file download and cross site scripting vulnerabilities.
874c7427aa7a2638495b9b9d17e8d673ba082f4f464b3eac71f80f396b23ddab
Espinas CMS suffers from a remote SQL injection vulnerability.
de55827e9e2ec2583cde39eb8515f9aea5b52b3b90caa4cbf8ad1ad07d3d03dd
Easy Page suffers from a cross site scripting vulnerability.
3d0e4eb618caceb7a05eebb0fd603c7cc93d96a3b9a75e37d33aeaf1003b8cd6
The Joomla Xmap component suffers from a remote SQL injection vulnerability.
a2c881ed75bffa97fc8d2e64d5e8c0bc6705faa9be17070b2890678e5c19640f