Browsing Monthly Archive June 2012
PCI-E-CARD-EXPENSION-BOX-FOR-4X-PCI-X-CARDS-2 9

Malicious Code Execution in PCI Expansion ROM

The malicious code in x86/x64 firmware can potentially reside in many places. One of them is in the PCI expansion ROM. In the past, the

June 29, 2012 Hacking
joomla_Wallpaper_tr_by_yasincrow 0

Joomla Security and Vulnerability Scanning

Thanks to recent advances in content management systems (CMS) and content management frameworks (CMF), blogs and websites have become the perfect platform for publishing online

June 29, 2012 Hacking
800pxus_air_force_u2_reconnaissance 5

Reconnaissance with Images

Gathering data on a target is extremely important if we plan to execute an attack in a more efficient manner. A typical attack scenario starts

June 28, 2012 Hacking
remote12 1

Chapter 9: Securing Remote Access

Remote access is no longer just about a laptop or home desktop user connecting to catch up on some work or update customer and order

June 27, 2012 General Security, Hacking
iphonef4 1

iPhone Forensics—Analysis of iOS 5 backups: Video

In the first part of this article, we covered techniques for reading iTunes backups. In the second part of this article, we disclosed the procedure

June 27, 2012 Forensics
wrightson0071760946 0

Chapter 5: CRPD & Security

In Wireless Network Security: A Beginner’s Guide, author Tyler Wrightson discusses the many attack vectors that target wireless networks and clients, and explains how to identify

June 26, 2012 General Security
shutterstock_71973916_large_verge_medium_landscape 0

Complete File Upload Vulnerabilities

Allowing an end user to upload files to your website is like opening another door for a malicious user to compromise your server. However, uploading

June 26, 2012 Hacking
wrightson0071760946 0

Interview: Author Tyler Wrightson

Tyler Wrightson, CISSP, CCSP, CCNA, CCDA, MCSE, is the author of Wireless Security: A Beginner’s Guide (McGraw-Hill; 2012), the founder and president of Leet Systems,

June 26, 2012 Interviews
routerbot-v3 0

Simple Router Pawning Techniques – Getting the Administrative Privileges

  Securing the Access Point (AP) of your router’s web page and the Telnet or SSH access should be considered as part of the overall

June 25, 2012 Hacking
web1 7

Webinspect Part 2

In the first part of this article we have seen how to start a scan using WebInspect. As discussed earlier, Default scan settings tab is

June 22, 2012 Hacking
292633_416924018328437_1076129714_n 0

Interview with Joshua Arvin Lat

Interview with Joshua Arvin Lat: the Kaspersky International Cup 2012 and Kaspersky Asia Pacific & MEA Cup 2012 winner For today’s hot seat we have

June 21, 2012 Interviews
cloud-computing-diagram-small 1

Virtualization Security in Cloud Computing

Virtualization Security in Cloud Computing 2011 ended with the popularization of an idea: Bringing VMs (virtual machines) onto the cloud. Recent years have seen great

June 21, 2012 General Security
Trojan-Horse 0

German Trojans 2

Introduction In the last article, I discussed in quite some detail how exactly the dropper for Bundestrojaner worked. In my next article what I’d been

June 20, 2012 General Security, Hacking
Computer network diagram. 1

How to become a network security engineer

Jim MacLeod’s journey towards becoming a network security engineer wasn’t typical. For one thing, he earned a Religion degree at Swarthmore College in Pennsylvania whereas

June 20, 2012 General Security, Other
ASUS-EFI-01 0

Chapter 8 – UEFI and the TPM: Building a foundation for platform trust

Traditional boot processes cannot stop sophisticated attacks instantiated before operating system load. Consequently, we need a method to ensure that when the operating system (OS)

V20Close 2

Physical Access Control

How many managers think that it makes no sense to spend money protecting information that can be reconstructed? What can really happen? Theoretically, anything and

June 19, 2012 General Security
bigstockphoto_Internet_Security_98254 0

Analysis on pBot – a PHP IRC Bot that has Malicious Functions

For IRC enthusiasts like me, it’s just common to encounter IRC bots in underground channels that have integrated functions like port scanning, nmap, SQL Injection

June 18, 2012 Hacking
firewall 2

Playing by the Rules: Performing Firewall Audits

Anyone who has ever managed a firewall will know that all too often it’s a one way street. From the moment the device is plugged

Wireless-Network4 0

Protect Your Wireless Network from Leechers and Hackers

Nowadays pretty much everyone uses wireless networking from your smart phone to your home and/or business networks. There are many security issues with wireless networking;

June 15, 2012 General Security, Hacking
iobit-security-360 6

IObit Protected Folder Authentication Bypass

Acknowledgements I would like to dedicate this article to all my friends, they know who they are, and to Irene, for her love and support.

June 14, 2012 General Security, Hacking
Back to Top Copyright © 2012 - InfoSec Institute