UnHash is a program that performs a brute force attack against a given hash. The hash can be MD5 or SHA1, and the program will auto-detect which one is given.
1f5d9a75ee449dac4cf03a3fc3c5826fbd083f907306b36750a2753f89aaf7a3
zzuf is a transparent application input fuzzer. It works by intercepting file operations and changing random bits in the program's input. zzuf's behavior is deterministic, making it easy to reproduce bugs.
914a543d2230a7b8ce134d8bbe1c8ae18cec7be3c49361770ac04eda12cf3e05
microSSys CMS versions 1.5 and below suffer from a remote file inclusion vulnerability.
551ae3589d809fd7cb1cafebceb3dcbe10ed7df2545764086c02e3e78a0960bd
MeltingIce File System versions 1.0 and below remote arbitrary add user exploit.
0191a133e5722a0fa647c8fa423378617c024b9114236572c158f089f00691cb
PHP AGTC-Membership System version 1.1a and below arbitrary add administrator exploit.
60ac327b922de39519cd24bccf1cc1812c2aa18fa13026d908766ede2ee4a116
MyPicGallery version 1.0 arbitrary add administrator exploit.
3f58e4759f264c770fd1abcf349996596f98650b6cf47ec056b6f280a31917fa
GNU/Gallery versions 1.1.1.0 and below suffer from a local file inclusion vulnerability in admin.php.
b041abbca3d9cba81e19353c085331817f7623ed41864579e36dc48babc70576
easyCMS versions 0.4.2 and below suffer from insecure cookie handling and SQL injection vulnerabilities.
4525fea3087e07b510f74208b5d7ad1810113941bb1a5252bba5a2ce228b9b9f
AlkalinePHP versions 0.77.35 and below suffer from an arbitrary add administrator vulnerability in adduser.php.
38eeafabb6e26508ff52745732afa7a498c8d137154cccb6337821c29c626d8a
LulieBlog version 1.2 suffers from administrative bypass, upload, and blind SQL injection vulnerabilities.
6669581775cef06be7eb599193828cc05d05707eab7406849f2d5c795c858560
rtpBreak detects, reconstructs and analyzes any RTP [rfc1889] session through heuristics over the UDP network traffic. It works well with SIP, H.323, SCCP and any other signaling protocol. In particular, it does not require the presence of RTCP packets (voipong needs them) that are not always transmitted from the recent VoIP clients.
9ec7276e3775c13306bcf90ba573cfb77b8162a18f90d5805a3c5a288f4466f8
The PHP-Nuke module KuraniKerim suffers from a SQL injection vulnerability.
3052a56e095531465a12a611b76bf8ff95cf7b3773b1a487628b281e13d0e502
SQL fuzzing utility written in Python.
051c055fe00407919e7c1c2ffd3567e5a02d5ed2df101486511d5995ffe39ed8
The Call for Papers (CFP) for the 6th Hack In The Box Security Conference in Malaysia is now open. If will be held from October 27th through the 30th.
39ec85c188e8b29e3165fde9bc3713f56ae38edb428a196c2a0c19bf553c0bf9
Call For Papers hack.lu 2008 - The purpose of the hack.lu convention is to give an open and free playground where people can discuss the implication of new technologies in society. The convention will be held in the Grand-Duchy of Luxembourg from October 22nd through the 24th.
962c464af5ae463aae10a07402014a38e5b01fbb44f185772c4c3aedcec15113
Secunia Security Advisory - Lostmon has discovered a vulnerability in bcoos, which can be exploited by malicious users to disclose sensitive information.
d2adabbd2bab22c9e5cf42a00045bfabaf338ac9b9360805d29880528fd450ee
Secunia Security Advisory - 0in has discovered a vulnerability in Smeego, which can be exploited by malicious people to disclose sensitive information.
4fe9d86f2435151b24fc4018e9e0cbc155461e42389b625f449376a761b39864
Secunia Security Advisory - A vulnerability has been reported in testMaker, which can be exploited by malicious users to disclose potentially sensitive information.
653dd2cced7903052b2932ccd2decfac4a992dfcf6a3cf8311df3292d5553830
Secunia Security Advisory - Debian has issued an update for netpbm-free. This fixes a vulnerability, which can potentially be exploited by malicious people to compromise a vulnerable system.
a0f9de3410f001967469a68eabdd5edb175f8d616fbce4fc1c2add1f5aaec2a2
Secunia Security Advisory - Debian has issued an update for php4. This fixes some vulnerabilities, which can be exploited by malicious, local users to bypass certain security restrictions, and malicious people to disclose potentially sensitive information, bypass certain security restrictions, cause a DoS (Denial of Service), and potentially compromise a vulnerable system.
852ea8939994add60263228e89bfb8048fc0afdc83e448331de9b736d6cbee2b
Secunia Security Advisory - dun has reported some vulnerabilities in CMS WebManager-Pro, which can be exploited by malicious people to conduct SQL injection attacks.
42f2367819cc03a37420e778cc20f112da30e0ae1897ca68f3efe04d773e08b9
Secunia Security Advisory - t0pP8uZz has discovered a vulnerability in GNU/Gallery, which can be exploited by malicious people to disclose sensitive information.
556ebacac6f4bd3cc13804967e84eed0529eaf4a1aabdaef0e583ab416b32b46
Ajax framework by zapatec.com suffers from a local file inclusion vulnerability.
5192d58422690e8593a2b89437381fd6c4ee35653b457e5bb1f0434c636df68c
Tagworx CMS suffers from multiple remote SQL injection vulnerabilities.
a4624de385cc068540688e85c3eb64e298cd7108b8be710ddd087aafd1e54943
CMS WebManager-Pro suffers from multiple remote SQL injection vulnerabilities.
032b29fe1a9e3f1d975c988895e17f469d87822c9a5d855ef104b2a60becefc1