Computer Security Is My Interest!
Soroush Dalili's blog – بلاگ سروش دلیلی
Home
About Me
Advisories
Contact Me
FAQs
Links
Projects
Cross Site Request Forgery (CSRF) PoC Template (by Javascript)
Excel Advanced Search Add-In Application
Microsoft Contradiction
On January 3, 2010, in
Security Posts
, by Soroush Dalili
Tagged with:
Microsoft IIS Vulnerability
Browsers’ Pain: A recursive function!
On December 25, 2009, in
Security Articles
,
Security Posts
, by Soroush Dalili
Tagged with:
Browsers’ Pain
•
Mozilla Crash Function
Microsoft IIS Semi-Colon Vulnerability
On December 25, 2009, in
My Advisories
,
Security Posts
, by Soroush Dalili
Tagged with:
Execute ASP by JPG
•
IIS File Extension Security Bypass
•
IIS semicolon bug
•
IIS semicolon vulnerability
•
Microsoft IIS Vulnerability
•
Run ASP by JPG
My belief: 70% of websites are vulnerable
On November 29, 2009, in
Security Articles
,
Security Posts
, by Soroush Dalili
Tagged with:
Critical vulnerabilities
•
CSRF Attacks
•
OWASP top 10
•
SQL Injection Vulnerability
•
website vulnerability
•
XSS Vulnerability
Travian Game Vulnerabilities in progress…
On November 29, 2009, in
Normal Posts
,
Security Posts
, by Soroush Dalili
Tagged with:
logical flaw
•
travian game
•
travian hack
•
travian online game
•
website vulnerability
•
XSS Vulnerability
Previous Entries
Next Entries
Categories
My Advisories
(7)
Normal Posts
(21)
Security Articles
(14)
Security Posts
(25)
Recent Posts
Cross Site Request Forgery (CSRF) PoC Template (by Javascript)
Excel Advanced Search Add-In Application
Clicking on an offline message link in Yahoo Messenger can lead to Session Hijacking
NoScript New Bypass Method by Unicode in ASP
New update – July 2010
Tags
All Facebook Application Walls
block ip
block isp
Blog Template
by using iMacros
close advertisment
computer science vulnerabilities
credit card algorithm
credit card algorithm is equal to IMEI algorithm
Critical vulnerabilities
CSRF Attacks
Dynamic Keyboard
educational bug finding
Facebook Add Friend
Facebook Automatic Friend Add
Facebook Automation Friend
Facebook Game Cheat
FaceBook MobWars Cheat
final project article
free web hosting
ftp vulnerabilities
hacking videos
Hardware Keyloggers
IMEI algorithm
javascript to close advertisements
java vulnerabilities
Keyloggers
Microsoft IIS Vulnerability
National ID Code Algorithm
National ID Code JavaScript
Phishing attacks
Phishing methods
Phishing prevention
soroush dalili
sql injection tutorial
university of birmingham vulnerabilities
Web application security in ASP
Web application security in ASP - (simple) JSP
Web application security in JSP
weblogs
website vulnerability
XSS in phishing attacks
XSS Vulnerability
الگوریتم کد ملی
کد ملی
OWASP Feeds
Bear In Woods Or Prairie Dog Ecosystem
September 9, 2010
Technology News: Mobile Tech: The Ultimate Jailbreaker, Part 3
September 8, 2010
Re-visiting JAVA De-serialization: It can't get any simpler than this !!
September 7, 2010
Troy Hunt: OWASP Top 10 for .NET developers part 4: Insecure ...
September 7, 2010
ASG Ireland » OWASP SAMM – Preventative Software Health
September 7, 2010
Symantec Security News
SMSDOM qurantine emails with excel files contains formula
September 10, 2010
Prevent uninstalling SEP
September 10, 2010
Problem with W32/Conficker.EV
September 10, 2010
SEP "Network scanning"
September 9, 2010
SEP11 Client IP address change
September 9, 2010
New Vulnerabilities
Vuln: Audiotran '.pls' File Remote Buffer Overflow Vulnerability
September 10, 2010
Vuln: Linux Kernel CIFS DNS Lookup Cache Poisoning Vulnerability
September 10, 2010
Vuln: Linux Kernel 'ecryptfs_uid_hash()' Local Buffer Overflow Vulnerability
September 10, 2010
Vuln: Linux Kernel EXT4 Multiple Local Denial of Service Vulnerabilities
September 10, 2010
Bugtraq: Re: etax 2010 failure to validate remote ssl certificate properly
Bugtraq: SQL Injection and XSS vulnerabilities in CubeCart version 4.3.3
Bugtraq: [SECURITY] [DSA 2107-1] New couchdb package fixes arbitrary code execution
Bugtraq: [security bulletin] HPSBMA02576 SSRT090231 rev.1 - HP Data Protector Express and HP Data Protector Express Single Server Edition (SSE), Local Denial of Service (DoS), Execution of Arbitrary Code
More rss feeds from SecurityFocus
Twitter
LinkedIn