Linux Hacks & Cracks - Page 67

We have thousands of posts on a wide variety of open source and security topics, conveniently organized for searching or just browsing.

Discover Hacks/Cracks News

Black Hat gets its video feed hacked

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

A security expert found a way to catch the talks at Black Hat for free, thanks to bugs in the video streaming service used by the security conference. Michael Coates, the head of Web security for Mozilla, said he discovered several problems while trying to sign up for the US$395 service.

When hackers hack hackers

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Security firm Imperva reports a free phishing kit called "Login Spoofer 2010" that turns perpetrators into victims, is currently being touted in hacker forums. "Hackers" who have clicked through the foolproof user interface and used the program's wizard to set up their own online phishing page for PayPal,

Wikileaks editor skips NYC hacker event

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

A Wikileaks editor, deciding not to risk a confrontation with federal agents, skipped a high-profile speaking engagement at a hacker conference here on Saturday. Instead, Jacob Appelbaum, a Seattle-based programmer for the Tor Project, who's involved in the Wikileaks Web site, took over the 1 p.m. ET keynote slot on behalf of co-founder Julian Assange.

Spammers Moving to Disposable Domains

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Spammers and the botnet operators they're allied with are continuing to adapt their techniques to evade security technologies, and now are using what amount to disposable domains for their activities. A new report shows that the spammers are buying dozens of domains at a time and moving from one to another as often as several times a day to prevent shutdowns.

Pirate Bay Hack Exposes User Booty

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Security weaknesses in the hugely popular file-sharing Web site thepiratebay.org have exposed the user names, e-mail and Internet addresses of more than 4 million Pirate Bay users, according to information obtained by KrebsOnSecurity.com.

Hackers Target YouTube With XXX XSS Attacks

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

Hackers apparently used cross-site scripting attacks to prank YouTube users over the weekend, injecting pop-ups and redirecting viewers to pornographic websites. Google says it's identified and fixed the vulnerability. "Preventing XSS attacks requires a lot of code review and, generally, outside consultants to help," explained ESET's Randy Abrams.

Tabnapping Attack On The Increase

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

This is an interesting new attack, I saw a live demo of it a while back here: Tabnabbing: A New Type of Phishing Attack. All you need to do is let the page load, then browse to another tab for 5 seconds or more and you

Trojan attacks now almost solely from legitimate websites

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

According to reports, many online users are almost always attacked from the hacked websites of legitimate providers. Previously a majority of surfers used to assume that malware was only found on sex sites and other shady websites, but these days all you need to do is visit your favourite newspaper to come under attack.

Hackers vandalise 200 web sites, cripple 150

data:image/svg+xml,%3Csvg%20xmlns=%22http://www.w3.org/2000/svg%22%20viewBox=%220%200%20100%20100%22%3E%3C/svg%3E

The web sites of more than a whopping 200 Australian organisations were hijacked and vandalised in a spate of hacks last week. In the largest single attack, a hacker gained administrative access to the Direct Admin server management system used by a hosting provider, who Computerworld Australia will not name, and suspended 159 accounts rendering their web sites inaccessible to the public.