monthly archive for January, 2010

As I already announced in the morning an updated version of the FFPasswordRecovery tool is available tonight. So here it is. I reorganised the code a little and added the SQLite support that was integrated into FireFox lately. You can download both the binary version if you don’t want to compile it yourself or the [...]

read full post »

The new code that extracts the Firefox account data out of the SQLite database is more or less done. If everything goes well I’ll upload the new sourcecode tonight (Swiss time) in a new version of the FFPasswordRecovery tool. During spring I plan to conduct some tests with the SkypeTap plugin and other instant messengers. [...]

read full post »

Yesterday on www.lightbluetouchpaper.org. Online transactions with credit cards or debit cards are increasingly verified using the 3D Secure system, which is branded as “Verified by VISA” and “MasterCard SecureCode”. This is now the most widely-used single sign-on scheme ever, with over 200 million cardholders registered. It’s getting hard to shop online without being forced to [...]

read full post »

Researchers are reporting a new worm in the wild that overwrites master boot records (MBRs) of all available drives with its own data, making the data stored on a user’s computer inaccessible. Restoring the corrupted data is complicated, requiring specialized software or a third-party service provider, the researchers say. Win32/Zimuse A and Win32/Zimuse B has [...]

read full post »

At least three US oil companies were victims of highly targeted, email-borne attacks designed to siphon valuable data from their corporate networks and send it abroad, according to a published report citing unnamed people and government documents. The attacks against Marathon Oil, ExxonMobil, and ConocoPhillips began with emails sent to senior executives that included links [...]

read full post »

China on Monday dismissed accusations of any official involvement in hacking attacks on Google and other U.S. companies, adding to tension between the two countries over the issue. A Chinese official also defended online censorship of political topics and said the country would not change how it regulates the Internet, according to the official Xinhua [...]

read full post »

FBI RAT source code.

      Name FBI RAT   Type RAT     Author Albinoskunk     Written in C     Description After calling for your submissions this is the first RAT source that reached me. It was coded by Albinoskunk. The source is based on Aryan v0.5, it was improved at some places and contains [...]

read full post »

The University of Exeter took the unusual step of temporarily taking its network down this week in response to a virulent virus outbreak. Computers at the south west England university were taken offline on Monday for a clean-up in response to an unidentified malware outbreak, which has since been contained. By Thursday the vast majority [...]

read full post »

A new demo exploit proves that browser vendors still haven’t found an effective way of protecting users against clickjacking attacks. Clickjacking involves trying to position items such as a transparent iFrame underneath a visitor’s mouse pointer on a specially crafted web page. This fools users into performing an undesired action when clicking on an apparently [...]

read full post »

From time to time the documents I’ve stumbled uppon in the Internet or people recommended me and I’ve considered as interesting were put on the server and announced afterwards in the blog. Things that seem interesting to me may also be of your interest. The same thing with the software from other places. On the [...]

read full post »

older posts »