Soroush Dalili – Computer Security Is My Interest!

Soroush Dalili's blog – بلاگ سروش دلیلی
icon
  • Home
  • About Me
  • Advisories
  • Contact Me
  • FAQs
  • Links
  • Projects
    • Cross Site Request Forgery (CSRF) PoC Template (by Javascript)
    • Excel Advanced Search Add-In Application
    • Hall of Fame – Challenge Series 1

Microsoft IIS Semi-Colon Vulnerability

On December 25, 2009, in My Advisories, Security Posts, by Soroush Dalili
10 Comments
Leave A Response

Tagged with: Execute ASP by JPG • IIS File Extension Security Bypass • IIS semicolon bug • IIS semicolon vulnerability • Microsoft IIS Vulnerability • Run ASP by JPG 

My belief: 70% of websites are vulnerable

On November 29, 2009, in Security Articles, Security Posts, by Soroush Dalili
0 Comments
Leave A Response

Tagged with: Critical vulnerabilities • CSRF Attacks • OWASP top 10 • SQL Injection Vulnerability • website vulnerability • XSS Vulnerability 

Travian Game Vulnerabilities in progress…

On November 29, 2009, in Normal Posts, Security Posts, by Soroush Dalili
1 Comments
Leave A Response

Tagged with: logical flaw • travian game • travian hack • travian online game • website vulnerability • XSS Vulnerability 

How to prevent phishing attacks? ‐ In 3 Pages ‐

On November 21, 2009, in Security Articles, Security Posts, by Soroush Dalili
2 Comments
Leave A Response

Tagged with: Phishing attacks • Phishing methods • Phishing prevention • XSS in phishing attacks • XSS Vulnerability 

Critical vulnerabilities in the website of my department! … were solved!

On February 21, 2009, in Security Posts, by Soroush Dalili
1 Comments
Leave A Response

Tagged with: computer science vulnerabilities • Critical vulnerabilities • university of birmingham vulnerabilities 
Previous Entries Next Entries

Categories 

  • My Advisories (9)
  • Normal Posts (22)
  • Security Articles (17)
  • Security Posts (33)
 

Recent Posts 

  • SecProject Web AppSec Challenge – Series 1
  • Sometimes no Ninja skill is required to receive money from security bug bounty programs!
  • Drag and Drop XSS in Firefox by HTML5 (Cross Domain in frames)
  • “Advisories” has been updated
  • Flash ExternalInterface.call() JavaScript Injection – can make the websites vulnerable to XSS
 

Tags 

All Facebook Application Walls block ip block isp Blog Template by using iMacros close advertisment computer science vulnerabilities credit card algorithm credit card algorithm is equal to IMEI algorithm Critical vulnerabilities CSRF Attacks educational bug finding Facebook Add Friend Facebook Automatic Friend Add Facebook Automation Friend Facebook Game Cheat FaceBook MobWars Cheat final project article free web hosting ftp vulnerabilities hacking videos IMEI algorithm javascript to close advertisements java vulnerabilities logical flaw Microsoft IIS Vulnerability National ID Code Algorithm National ID Code JavaScript Phishing attacks Phishing prevention Privacy soroush dalili sql injection tutorial travian game travian hack travian online game university of birmingham vulnerabilities Web application security in ASP Web application security in ASP - (simple) JSP Web application security in JSP weblogs website vulnerability XSS XSS in phishing attacks XSS Vulnerability
 

RSS OWASP Feeds 

  • 2 Microsoft Research Papers to Read May 19, 2012
  • Client-Side Storage in HTML5 May 18, 2012
  • UK man to spend year in the clink for Facebook account hack May 17, 2012
  • List of Firms Willing and Able to Fix Vulnerable Code for You May 17, 2012
  • Too XXE For My Shirt May 16, 2012
 

RSS Symantec Security News 

  • EndPoint Protection 12.1 issues May 19, 2012
  • my pgp password is not recognized May 19, 2012
  • Error in web console May 19, 2012
  • SEPM ODBC Password Lost - How to reset? May 19, 2012
  • specify block list provider in mail security for exchange May 19, 2012
 

RSS New Vulnerabilities 

  • Vuln: Pligg CMS 'status' Parameter SQL Injection Vulnerability December 29, 2012
  • Vuln: FFmpeg libavcodec 'vmd decode()' Heap Based Buffer Overflow Vulnerability May 19, 2012
  • Vuln: pidgin-otr 'log_message_cb()' Function Format String Vulnerability May 18, 2012
  • Vuln: HP OpenVMS Integrity Server Unspecified Local Privilege Escalation Vulnerability May 18, 2012
  • Bugtraq: H2HC Brazil 9th Edition - Call for Papers
  • Bugtraq: SEC Consult SA-20120518 :: Memory overwrite vulnerability in libwpd (OpenOffice.org) - CVE-2012-2149
  • Bugtraq: Re: [oss-security] CVE Request: Planeshift buffer overflow
  • Bugtraq: Re: [oss-security] CVE Request: Planeshift buffer overflow
  • More rss feeds from SecurityFocus
 

Soroush Dalili – Computer Security Is My Interest!

Pages

  • About Me
  • Advisories
  • Contact Me
  • FAQs
  • Links
  • Projects
    • Cross Site Request Forgery (CSRF) PoC Template (by Javascript)
    • Excel Advanced Search Add-In Application
    • Hall of Fame – Challenge Series 1

Stay In Touch

  • About Me
  • Advisories
  • Contact Me
  • FAQs
  • Links
  • Projects
    • Cross Site Request Forgery (CSRF) PoC Template (by Javascript)
    • Excel Advanced Search Add-In Application
    • Hall of Fame – Challenge Series 1

More

Thanks for dropping by! Feel free to join the discussion by leaving comments, and stay updated by subscribing to the RSS feed.
© Soroush Dalili blog
iBlog by PageLines


Twitter Twitter 
LinkedIn LinkedIn