Mais Encore

Aller au contenu | Aller au menu | Aller à la recherche

vendredi 11 juin 2010

Infection en masse en cours de sites ISS/ASP.... - UPDATE - 11/06/2010

Une infection en masse de sites sous IIS et ASP.NET est en train de s'effectuer. Il s'avère que les sites pointent tous vers le site http://ww.robint.us/u.js. Le problème n'est pas limité à des petits sites, mais des gros, voir très gros sont atteints.

D'après Google, plus d'un million de sites est déja infecté....(FR, CA, US, ....)

UPDATE du 11/06/2010: une autre infection SQL fait aussi pointer sur http://2677.in/yahoo.js
 

(Via Sucuri.)

Technorati Tags: , , , ,

lundi 7 juin 2010

OWASP ModSecurity Core Rule Set

OWASP ModSecurity Core Rule Set: "

Hello OWASP Leaders. I wanted to let you all know that a new version of the OWASP ModSecurity Core Rule Set (CRS) is now available (v2.0.7).

(Via Jeff Williams Blog.)

Technorati Tags: , , ,

mercredi 2 juin 2010

Inline Detection of Evil JavaScript

Inline Detection of Evil JavaScript: "Exploit kits are a much more common threat on the web than they used to be. In order to evade detection, the kits frequently contain logic to obfuscate, or hide, the meaning behind the content that they serve to the victim. Additionally, with each visit to the exploit page, the obfuscation techniques will differ slightly so that static, content signatures will be unable to detect the threat. Other threats contain obfuscated JavaScript (JS) which sets up the page to exploit a vulnerability and launch a payload (for example, 'spraying' the heap with shellcode). Still other threats inject obfuscated JS into legitimate sites, which after decoding embeds a hidden (0-pixel) IFrame to malicious content. As we have seen in the past, the JS encodings vary greatly with each incident, and many instances are encoded multiple times and may contain non-standard JS (reference past blog posts, such as

(Via Zscaler Research blog.)

Technorati Tags: , , , ,

lundi 19 avril 2010

Sortie de la nouvelle version du TOP10 OWASP

L'OWASP Top10 2010 est ENFIN sorti !

Lire la suite...

dimanche 17 janvier 2010

Confoo.CA

The schedule for Confoo.CA is published.
I'll be very busy because, I'm speaking in OWASP Montreal the day I arrive about OWASP Application Verification Standard.
Hope to see you in Montreal in March