Survivng the Week 6/22/2012

10 Vulnerable Web Applications You Can Play With

There are number of vulnerable web applications to be discoverd.  Many times we are asked for known vulnerable web applications that can be used for self training or for scan tool evaluation. You can use your existing scanner on these applications and try NTOSpider against vulnerable applications to find the difference between scanners. Contact us for an evaluation of NTOSpider. A good list of 10 vulnerable application can be found at -

http://pentestlab.org/10-vulnerable-web-applications-you-can-play-with/

We also have an online application where you can alst test against – http://www.webscantest.com/

Pro Clan Manager version 0.4.2 suffer from administrative bypass and shell upload vulnerabilities.

Pro Clan Manager is a framework which can be used to develop international content management system dedicated to helping Clans. A high risk vulnerability has been discovered in Pro Clan Manager which allows an attacker to execute commands on the server.

http://packetstormsecurity.org/files/113911/proclanmanager-shellbypass.txt

Member Sues LinkedIn for $5 Million over Hack

Last week, we posted about the LinkedIn password compromise. A LinkedIn member has posted a lawsuit against LinkedIn for $5 Million for the loss of his password. Test your application with NTOSpider to discover vulnerabilities and help protect your company against possible lawsuits..

http://www.inforisktoday.in/member-sues-linkedin-for-5-million-over-hack-a-4878

Last updated by at .

About Dan Kuykendall

Dan Kuykendall is the CTO and Co-CEO at NT OBJECTives. Dan is a founder of NT OBJECTives and has been with the company for more than 10 years. He is responsible for the strategic direction and development of products and services and works closely with technology partners to make sure integrations are both deep and valuable. As a result of Dan’s dedication to security, technology innovation and software development, NTO application security scanning software is often recognized as the most accurate because of its sophisticated automation techniques. Dan joined NT OBJECTives from Foundstone, where he was responsible for the portal interface to the company’s flagship product, FoundScan. Prior to Foundstone, Dan was the founder of the Information Security team in the United States branches of Fortis. Dan is a regular blogger on web application security issues on ManVsWebApp.com and co-hosts An Information Security Place Podcast. His has presented on the topics of mobile and application security at many of the top security industry conferences such as ISSA (2011), B-Sides (2012-2013), OWASP AppSecUSA (2012), HouSecCon (2010-2012), ToorCon (2013) and THOTCON (2013). Dan has been involved with Web Application Security Consortium and is a regular contributor to many open source development projects including founding the RPM Builder, phpGroupWare and podPress projects. Connect with Dan on Google+

Leave a Reply

Your email address will not be published. Required fields are marked *