<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Online Vulnerability Scanners and Port Scans &#187; Security Breaches</title>
	<atom:link href="http://hackertarget.com/category/news/feed/" rel="self" type="application/rss+xml" />
	<link>http://hackertarget.com</link>
	<description>Security Vulnerability Scanners and Assessments</description>
	<lastBuildDate>Fri, 17 May 2013 22:46:13 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
		<item>
		<title>Joomscan added to the online Joomla Security Scan</title>
		<link>http://hackertarget.com/joomscan-added-to-the-online-joomla-security-scan/</link>
		<comments>http://hackertarget.com/joomscan-added-to-the-online-joomla-security-scan/#comments</comments>
		<pubDate>Tue, 15 May 2012 09:08:09 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=2480</guid>
		<description><![CDATA[<p>Our Joomla Security Scanner tool has been extended with the Joomscan security testing tool. Joomscan is a tool that tests a Joomla installation for known vulnerable plugins and core security configuration mistakes. Detection of these vulnerabilities will allow a web site owner to get the plugins update or fixed before they get attacked. Joomla is [...]</p><p>The post <a href="http://hackertarget.com/joomscan-added-to-the-online-joomla-security-scan/">Joomscan added to the online Joomla Security Scan</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>Our <a href="http://hackertarget.com/joomla-security-scan/">Joomla Security Scanner</a> tool has been extended with the Joomscan security testing tool. <a href="https://www.owasp.org/index.php/Category:OWASP_Joomla_Vulnerability_Scanner_Project">Joomscan</a> is a tool that tests a Joomla installation for known vulnerable plugins and core security configuration mistakes. Detection of these vulnerabilities will allow a web site owner to get the plugins update or fixed before they get attacked.</p>
<p><a href="http://www.joomla.org">Joomla</a> is a popular content management system; that is very extensible. This popularity and wide range of extensions makes it a popular target for hackers.</p>
<p>The Joomscan tool has the following features:<br />
<div class="shortcode-unorderedlist arrow"></p>
<ul>
<li>Exact version Detection &#8211; the scanner can pinpoint versions with a greater accuracy than just the meta generator tag.</li>
<li>Joomla! based web application firewall plugin detection</li>
<li>Probes for known vulnerable Joomla Core security issues as well as extensions / plugins</li>
<p></url><br />
</div>
</p>
<p>Back in 2009 HackerTarget.com had the Joomscan scanner as a free scanning tool, however due to abuse we decided to dis-continue the tool. With a recent update we have decided to make this version an extension of our current non-intrusive tool. Use of the active Joomscan component will require a valid <a href="http://hackertarget.com/scan-membership/">HackerTarget.com membership</a>. This will ensure any abuse of the tool is limited; and will provide a better experience for all our users.</p>
<p>Joomscan is a perl based tool that anyone can download and install. Why not give it a go yourself. Head over to the project page and start your own testing.</p>
<p>The post <a href="http://hackertarget.com/joomscan-added-to-the-online-joomla-security-scan/">Joomscan added to the online Joomla Security Scan</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/joomscan-added-to-the-online-joomla-security-scan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Scan Restrictions and Updates</title>
		<link>http://hackertarget.com/security-scan-restrictions-and-updates/</link>
		<comments>http://hackertarget.com/security-scan-restrictions-and-updates/#comments</comments>
		<pubDate>Sun, 08 Apr 2012 12:28:28 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=2064</guid>
		<description><![CDATA[<p>After performing over a quarter of a million free security scans, HackerTarget.com has decided to remove access to some of the free security scanning options. This will be a disappointment for some users but in the long run it will mean added functionality and improvements to our overall service. The primary reason for the change [...]</p><p>The post <a href="http://hackertarget.com/security-scan-restrictions-and-updates/">Security Scan Restrictions and Updates</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>After performing over a quarter of a million free security scans, <a href="http://hackertarget.com">HackerTarget.com</a> has decided to remove access to some of the free security scanning options. This will be a disappointment for some users but in the long run it will mean added functionality and improvements to our overall service.</p>
<p>The primary reason for the change is that even with multiple layers of restrictions in place, a very small percentage of users continued to attempt to abuse the systems.</p>
<p>While the occurrences of abuse was very low, the ongoing maintenance required when playing a game of whack a mole was taking time away from further development and improvements to the services on offer. Blacklists were continually being updated with free email provider domains, Tor IP addresses, and other anonymous services.</p>
<p>Security Scans that are now restricted include the <a href="http://hackertarget.com/website-scan/" title="Web Site Security Test">Nikto Web Site Scanner</a>, the <a href="http://hackertarget.com/free-sql-scan/" title="SQL Injection Scanner">SQL Injection Scan</a> and the <a href="http://hackertarget.com/openvas-scan/">OpenVas Vulnerability Scan</a>. These are scans that are quite noisy and can result in Intrusion Detection Systems Alerts and large numbers of log file entries.</p>
<p>All non-intrusive security scans and information gathering tools will continue to be available for Free as will be the most popular on-line Nmap scan.</p>
<p>Membership will provide access to all current scans and some new tools that are under development. The requirement to pay for membership adds an additional layer of identification before any intrusive scans can be initiated.</p>
<p>Information technology professionals who use our services will find the low cost and enhanced service offerings a most welcome addition.</p>
<p>Stay in touch with <a href="http://twitter.com/hackertarget/">twitter</a> or our new <a href="http://eepurl.com/jDaVL" title="Subscribe to Mailing List">mailing list</a> for these exciting new developments.</p>
<p>Regards,</p>
<p>Peter<br />
Director and Lead Analyst</p>
<p>The post <a href="http://hackertarget.com/security-scan-restrictions-and-updates/">Security Scan Restrictions and Updates</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/security-scan-restrictions-and-updates/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SQL Injection Recap</title>
		<link>http://hackertarget.com/sql-injection-recap/</link>
		<comments>http://hackertarget.com/sql-injection-recap/#comments</comments>
		<pubDate>Fri, 06 Jan 2012 09:20:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>
		<category><![CDATA[mssql]]></category>
		<category><![CDATA[sql injection]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=1622</guid>
		<description><![CDATA[<p>During the Christmas break the Internet Storm Center had good coverage on the latest MSSQL based sql injection worm that appears to have infected over 1 million Microsoft based web pages. Recall back in November last year when we published a history of sql injection attacks, and followed that up with a sql injection tutorial. [...]</p><p>The post <a href="http://hackertarget.com/sql-injection-recap/">SQL Injection Recap</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>During the Christmas break the <a href="httpt://isc.sans.edu" title="ISC Diary">Internet Storm Center</a> had good coverage on the <a href="http://isc.sans.edu/diary.html?storyid=12304" title="Lilupophilupop tops 1million infected pages">latest MSSQL based sql injection</a> worm that appears to have infected over 1 million Microsoft based web pages.</p>
<p>Recall back in November last year when we published a <a href="http://hackertarget.com/10-years-of-sql-injection" title="sql injection attacks">history of sql injection</a> attacks, and followed that up with a <a href="http://hackertarget.com/sql-injection/" title="what is sql injection">sql injection tutorial</a>. The purpose of these publications is to increase awareness of sql injection and to familiarize users with securing dynamic web applications. For testing and understanding the attack we have an online <a href="http://hackertarget.com/free-sql-scan/" title="Free SQL Injection Scanner">sql injection test</a> that allows anyone to quickly test a HTTP GET based URL for a sql injection vulnerability.</p>
<p>It is normal to assume that when implementation of security has a cost associated with it; in the form of development time or code fixing, there will be those who hold off until disaster strikes. However it seems that unless that disaster directly affects the organisation, pushing applications out that have been untested or security reviewed continues to be the normal practice.</p>
<p>The post <a href="http://hackertarget.com/sql-injection-recap/">SQL Injection Recap</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/sql-injection-recap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Data Breaches Visualized</title>
		<link>http://hackertarget.com/data-breaches-visualized/</link>
		<comments>http://hackertarget.com/data-breaches-visualized/#comments</comments>
		<pubDate>Mon, 11 Jul 2011 01:52:23 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=1233</guid>
		<description><![CDATA[<p>Nathan from Flowing data has put together an excellent graphical representation of the largest data breaches of all time. Data was sourced from Dataloss DB. Sony has been having all sorts of data breach problems lately — namely a million passwords from the Sony Pictures site, 77 million accounts from the PlayStation Network, and nearly [...]</p><p>The post <a href="http://hackertarget.com/data-breaches-visualized/">Data Breaches Visualized</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>Nathan from <a href="http://flowingdata.com/" target="_blank">Flowing data</a> has put together an excellent graphical representation of the <a href="http://flowingdata.com/2011/06/13/largest-data-breaches-of-all-time/" target="_blank">largest data breaches of all time</a>. Data was sourced from <a href="http://datalossdb.org/" target="_blank">Dataloss DB</a>.</p>
<blockquote class="bubble"><p>Sony has been having all sorts of data breach problems lately — namely a million passwords from the Sony Pictures site, 77 million accounts from the PlayStation Network, and nearly 25 million user accounts from Online Entertainment. I was curious how these recent attacks compared to the largest known data loss incidents, so I headed over to DataLossDB. Sony now holds spots #4 and #10 for largest breaches of all time.</p></blockquote>
<p>Recently I put together a slide rocket of <a href="http://hackertarget.com/10-years-of-sql-injection/" title="SQL Injection History">10 years of SQL Injection History</a>, however I don&#8217;t think my design Fu is quite up there with the flowing data guys. <img src='http://cdn.hackertarget.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p><a href="http://flowingdata.com/2011/06/13/largest-data-breaches-of-all-time/">Largest Data Breaches of All Time</a> &#8211; FlowingData.com</p>
<p>The post <a href="http://hackertarget.com/data-breaches-visualized/">Data Breaches Visualized</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/data-breaches-visualized/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>TechCrunch Europe hacked</title>
		<link>http://hackertarget.com/techcrunch-europe-hacked/</link>
		<comments>http://hackertarget.com/techcrunch-europe-hacked/#comments</comments>
		<pubDate>Tue, 07 Sep 2010 00:59:53 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[drive by downloads]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=623</guid>
		<description><![CDATA[<p>Drive by downloads, adobe exploits and a zeus variant trojan that is only detected by 2 of 43 Anti-virus products. This is a good example of current threats that website operators as well as end users should all be aware of, a high profile site gets hacked and poses a signifcant threat to the end [...]</p><p>The post <a href="http://hackertarget.com/techcrunch-europe-hacked/">TechCrunch Europe hacked</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>Drive by downloads, adobe exploits and a zeus variant trojan that is only detected by 2 of 43 Anti-virus products.</p>
<p>This is a good example of current threats that website operators as well as end users should all be aware of, a high profile site gets hacked and poses a signifcant threat to the end user.</p>
<blockquote><p>Once downloaded and run, the PDF files exploit a vulnerability and make the system download a version of the ever-so-popular ZeuS Trojan.</p>
<p>According to Trend Micro&#8217;s Rik Ferguson, the server in question is located in Germany and is hosted by Netdirect &#8211; not a stranger to hosting malicious sites.</p>
<p>A few hours ago, TechCrunch tweeted that they &#8220;are aware of the (annoying) malware warning about the @TCEurope site&#8221;, and that they are trying to fix it.</p>
<p>The awkward phrasing makes me think they thought at the time that there was some kind of mistake and not a legitimate warning. The site hasn&#8217;t been taken down in the meantime, and there is no official<br />
update on the situation.</p>
<p>Ferguson warns that the ZeuS variant is currently detected by only 2 out of 43 anti-malware solutions used by VirusTotal, so it&#8217;s best to avoid the site altogether until they manage to clean its code.</p></blockquote>
<p><a href="http://www.net-security.org/malware_news.php?id=1457" target="_blank">TechCrunch Europe hacked, serving malware</a></p>
<p>The post <a href="http://hackertarget.com/techcrunch-europe-hacked/">TechCrunch Europe hacked</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/techcrunch-europe-hacked/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Iran&#8217;s Cyber Army Hacks 1,000 US, British, French Gov&#8217;t Websites</title>
		<link>http://hackertarget.com/irans-cyber-army-hacks-1000-us-british-french-govt-websites/</link>
		<comments>http://hackertarget.com/irans-cyber-army-hacks-1000-us-british-french-govt-websites/#comments</comments>
		<pubDate>Fri, 03 Sep 2010 01:09:17 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=616</guid>
		<description><![CDATA[<p>While political hacking has been around for years, this is a good reminder that credit cards and identity theft are not the only targets when it comes to securing systems. Anyone is a potential target, and organisations who have parties that are opposed to their agenda will be targeted. Whether they are non-governmental entities or [...]</p><p>The post <a href="http://hackertarget.com/irans-cyber-army-hacks-1000-us-british-french-govt-websites/">Iran&#8217;s Cyber Army Hacks 1,000 US, British, French Gov&#8217;t Websites</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>While political hacking has been around for years, this is a good reminder that credit cards and identity theft are not the only targets when it comes to securing systems. Anyone is a potential target, and organisations who have parties that are opposed to their agenda will be targeted. Whether they are non-governmental entities or minor government departments.</p>
<blockquote><p>TEHRAN (FNA)- An Iranian cyber group announced that it has hacked more than 1,000 important governmental websites of the US, Britain and France in protest at their support and financial aids to anti-Iran terrorist groups.</p>
<p>&#8220;To commemorate the Day of Campaign against Terrorism and the martyrdom anniversary of (former Iranian President Mohammad Ali) Rajayee and (his Prime Minister Mohammad Javad) Bahonar (by the terrorist Mojahedin-e Khalq Organization), the group rose to protest at the inhumane measures of the supporters of terrorism, with the US<br />
and Britain standing on top of them, through a new method and hacked and changed the pages of more than 1,000 of their websites,&#8221; Behrouz Kamalian, Head of the Iranian Ashiyaneh (nest) cyber group, told FNA on Monday.</p></blockquote>
<p><a href="http://english.farsnews.com/newstext.php?nn=8906081424" target="_blank">Iran&#8217;s Cyber Army Hacks 1,000 US, British, French Gov&#8217;t Websites</a></p>
<p>The post <a href="http://hackertarget.com/irans-cyber-army-hacks-1000-us-british-french-govt-websites/">Iran&#8217;s Cyber Army Hacks 1,000 US, British, French Gov&#8217;t Websites</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/irans-cyber-army-hacks-1000-us-british-french-govt-websites/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacked US Treasury websites serve visitors malware</title>
		<link>http://hackertarget.com/hacked-us-treasury-websites-serve-visitors-malware/</link>
		<comments>http://hackertarget.com/hacked-us-treasury-websites-serve-visitors-malware/#comments</comments>
		<pubDate>Wed, 05 May 2010 12:44:55 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>

		<guid isPermaLink="false">http://hackertarget.com/2010/05/hacked-us-treasury-websites-serve-visitors-malware/</guid>
		<description><![CDATA[<p>Oops, lets hope the money is safe. You would think of all the US Government departments and targets this one would be well protected. [QUOTE]Websites operated by the US Treasury Department are redirecting visitors to websites that attempt to install malware on their PCs, a security researcher warned on Monday. The infection buries an invisible [...]</p><p>The post <a href="http://hackertarget.com/hacked-us-treasury-websites-serve-visitors-malware/">Hacked US Treasury websites serve visitors malware</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>Oops, lets hope the money is safe. You would think of all the US<br />
Government departments and targets this one would be well protected.<br />
 <img src='http://cdn.hackertarget.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>[QUOTE]Websites operated by the US Treasury Department are redirecting<br />
visitors to websites that attempt to install malware on their PCs, a<br />
security researcher warned on Monday.</p>
<p>The infection buries an invisible iframe in bep.treas.gov,<br />
moneyfactory.gov, and bep.gov that invokes malicious scripts from<br />
grepad.com, Roger Thompson, chief research officer of AVG<br />
Technologies, told The Register. The code was discovered late Sunday<br />
night and was active at time of writing, about 12 hours later.[/QUOTE]</p>
<p>http://www.theregister.co.uk/2010/05/03/treasury_websites_attack/</p>
<p>The post <a href="http://hackertarget.com/hacked-us-treasury-websites-serve-visitors-malware/">Hacked US Treasury websites serve visitors malware</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/hacked-us-treasury-websites-serve-visitors-malware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>When Neo Hacked the Latvian SRS Database</title>
		<link>http://hackertarget.com/when-neo-hacked-the-latvian-srs-database/</link>
		<comments>http://hackertarget.com/when-neo-hacked-the-latvian-srs-database/#comments</comments>
		<pubDate>Sat, 27 Feb 2010 06:09:38 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[sql injection]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=441</guid>
		<description><![CDATA[<p>Movie plots cross into real life in Latvia where a significant security breach has occurred in the hacking of the Latvian SRS Databse. A group of hackers has stirred the nation after hacking into the countries taxation web site and revealing details of the powerful political elites wages and bonuses. One of the hackers used [...]</p><p>The post <a href="http://hackertarget.com/when-neo-hacked-the-latvian-srs-database/">When Neo Hacked the Latvian SRS Database</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>Movie plots cross into real life in Latvia where a significant security breach has occurred in the hacking of the Latvian SRS Databse. A group of hackers has stirred the nation after hacking into the countries taxation web site and revealing details of the powerful political elites wages and bonuses. One of the hackers used the name Neo, and has explained his motivations and reasons for the attack to a Latvian current affairs program.</p>
<p><strong>From the Matrix:</strong><br />
<em>Trinity: Hello Neo.<br />
Neo:How do you know that name<br />
Trinity: I know a lot about you<br />
Neo: Who are you?<br />
Trinity: My name&#8217;s Trinity<br />
Neo: Trinity&#8230;THE Trinity? The one who hacked the IRS D-Base?<br />
Trinity: That was a long time ago<br />
Neo: Jesus<br />
Trinity: What?<br />
Neo: I just thought&#8230;you were a guy<br />
Trinity: Most guys do</em></p>
<blockquote><p>To the horror of Latvia’s political establishment, a mysterious group of computer hackers is threatening to expose the incomes of top officials after stealing millions of government tax records.</p>
<p>The group, calling itself the People’s Army of the Fourth Awakening, claimed to have downloaded more than 7.5 million documents, including VAT receipts and income tax returns, from the State Revenue Service<br />
(SRS) after exploiting a security loophole on its website.</p>
<p>One hacker used the name Neo, in apparent tribute to the hero of The Matrix science-fiction films, in which a vast system for enslaving humanity is exposed. He or she claimed that the documents revealed the<br />
extent of official hypocrisy over belt-tightening reforms introduced as Latvia’s economy reeled under the impact of the global economic crisis. “The purpose of the group is to unmask those who gutted the country,”<br />
Neo told the Latvian television current affairs programme Kas Notiek Latvija in an interview posted on its website.</p>
<p>Neo has been hailed as a digital Robin Hood by disgruntled Latvians after posting details from the documents on the internet to contrast the earnings of top officials with cuts experienced by other workers.</p></blockquote>
<p><a href="http://www.timesonline.co.uk/tol/news/world/europe/article7041727.ece" target="_blank">Times Online &#8211; Latvia in turmoil after hacker exposes establishment salaries</a></p>
<p>The post <a href="http://hackertarget.com/when-neo-hacked-the-latvian-srs-database/">When Neo Hacked the Latvian SRS Database</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/when-neo-hacked-the-latvian-srs-database/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BackTrack 4 Release</title>
		<link>http://hackertarget.com/backtrack-4-release/</link>
		<comments>http://hackertarget.com/backtrack-4-release/#comments</comments>
		<pubDate>Mon, 01 Feb 2010 00:40:56 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[tutorial]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=428</guid>
		<description><![CDATA[<p>In case you missed it the worlds leading penetration testing Linux Distribution BackTrack has hit version 4.0. A new web site, great video tutorials for those wanting to learn and a complete guide to Metasploit are just a few of the new bits for you to check out. Based on Ubuntu and well tested this [...]</p><p>The post <a href="http://hackertarget.com/backtrack-4-release/">BackTrack 4 Release</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p>In case you missed it the worlds leading penetration testing Linux Distribution <a href="http://www.backtrack-linux.org/" target="_blank">BackTrack</a> has hit <a href="http://www.backtrack-linux.org/downloads/" target="_blank">version 4.0</a>. A new web site, great <a href="http://www.backtrack-linux.org/tutorials/" target="_blank">video tutorials</a> for those wanting to learn and a complete guide to <a href="http://www.metasploit.org" target="_blank">Metasploit</a> are just a few of the new bits for you to <a href="http://www.backtrack-linux.org/backtrack/backtrack4-release/" target="_blank">check out</a>.</p>
<p>Based on <a href="http://www.ubuntu.com/" target="_blank">Ubuntu</a> and well tested this is an outstanding release, and we wish the <a href="http://www.offensive-security.com/" target="_blank">Offensive Security Team</a> all the best with the 2010.</p>
<p><a href="http://www.backtrack-linux.org/downloads/" target="_blank">Download Back-Track now</a> and get cracking with some serious Security Testing.  Explore the Offensive-Security, Back-Track websites, and the forums for Guides, Tutorials and FAQ&#8217;s.</p>
<p>Real security can only be achieved through awareness, knowledge and some clever tools.</p>
<p>The post <a href="http://hackertarget.com/backtrack-4-release/">BackTrack 4 Release</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/backtrack-4-release/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SQL Injection Demystified</title>
		<link>http://hackertarget.com/sql-injection-demystified/</link>
		<comments>http://hackertarget.com/sql-injection-demystified/#comments</comments>
		<pubDate>Mon, 24 Aug 2009 09:35:27 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Security Breaches]]></category>
		<category><![CDATA[sql injection]]></category>

		<guid isPermaLink="false">http://hackertarget.com/?p=372</guid>
		<description><![CDATA[<p>Darkreading has a great article up on SQL Injection. This form of attack has been around for a long time, and happens because of poor dynamic website coding practices. A simple SQL injection vulnerability can often be exploited to gain full access to the database and / or full control of the database server. Now [...]</p><p>The post <a href="http://hackertarget.com/sql-injection-demystified/">SQL Injection Demystified</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></description>
				<content:encoded><![CDATA[<p><a href="http://www.darkreading.com" target="_blank">Darkreading</a> has a great article up on SQL Injection. This form of attack has been around for a long time, and happens because of poor dynamic website coding practices. A simple SQL injection vulnerability can often be exploited to gain full access to the database and / or full control of the database server.</p>
<p>Now would be a good time to check your site<a href="http://hackertarget.com/free-sql-scan/"> try our scanner</a> for a quick check against possible HTTP GET injection. Be sure to enter the full url with the additional parameters that will be tested. Ie: www.mysitetotest.com/listproducts.php?cat=3 or www.examplesite.com/article.asp?id=3. Once you have checked this form don&#8217;t forget that form based SQL Injection is also very easy to exploit. For testing form based sql injection attacks try the firefox plugin SQL from <a href="http://www.securitycompass.com" taget="_blank">Security Compass</a> &#8211; <a href="https://addons.mozilla.org/en-US/firefox/addon/7597" target="_blank">SQL Injection &#8211; Exploit Me &#8211; Firefox Plugin</a></p>
<blockquote><p>Several high-profile hacks over the past year including those at Heartland, Hannaford Bros., and 7-11, all have had one thing in common: they were launched with a SQL injection attack.</p>
<p>Cross-site scripting (XSS) had been the king of Web attack techniques for some time, and for good reason &#8212; the ability to steal user credentials, hijack active Web sessions and take action on behalf of a user without their knowledge is particularly nasty. But the classic SQL injection attack has regained the lead as the most popular of Web attacks. Most of all reported Web breaches the first half of this year, according to the new Web Hacking Incidents Database (WHID) report, were conducted via SQL injection. And SQL injection is one of the most common vulnerabilities in Web applications today. </p></blockquote>
<p><a href="http://darkreading.com/database_security/security/app-security/showArticle.jhtml;jsessionid=03PIMS0F0QX3BQE1GHPCKHWATMY32JVN?articleID=219401046" target="_blank">Dark Reading &#8211; SQL Injection Demystified</a></p>
<p>The post <a href="http://hackertarget.com/sql-injection-demystified/">SQL Injection Demystified</a> appeared first on <a href="http://hackertarget.com">Online Vulnerability Scanners and Port Scans</a>.</p>]]></content:encoded>
			<wfw:commentRss>http://hackertarget.com/sql-injection-demystified/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using disk: basic
Content Delivery Network via cdn.hackertarget.com

 Served from: www.hackertarget.com @ 2013-05-18 16:28:02 by W3 Total Cache -->