SpiderLabs Radio: June 26, 2014

June 27, 2014

In this episode:

Weak passwords? Better call The Doctor.

June 24, 2014 | Chris Carlis

Every network presents its own unique opportunity for a penetration tester. ...

NAC doesn’t like your penetration testing device? IPv6 to the rescue!

June 24, 2014

Sometimes when I conduct a network penetration test it's just too easy to get ...

SpiderLabs Radio: June 19, 2014

June 21, 2014

In this episode:

SpiderLabs Radio: June 12, 2014

June 13, 2014

In this episode:

Setting HoneyTraps with ModSecurity: Adding Fake Hidden Form Fields

June 12, 2014 | Ryan Barnett

This blog post continues with the topic of setting "HoneyTraps" within your web ...

Microsoft Patch Tuesday, June 2014

June 10, 2014

June's Microsoft Patch Tuesday contains seven bulletins, including two rated ...

From a Username to Full Account Takeover

June 10, 2014 | Oren Hafif

In the past year there have been many major data breach incidents in which ...

SpiderLabs Radio: June 5, 2014

June 06, 2014

In this episode I talk about some odd ransom ware targeting Apple iDevices and ...

Microsoft Advance Notification for June 2014

June 05, 2014 | Robert Foggia

Microsoft will be releasing the next security patch release on Tuesday, June ...

CVE-2014-0515 Goes to Brazil for World Cup 2014

June 03, 2014 | Arseny Levin

The FIFA World Cup 2014 begings June 12 and enthusiasm about the event has ...

SpiderLabs Radio: May 30, 2014

May 31, 2014

In this episode I talk about:

CVE-2014-2120 – A Tale of Cisco ASA “Zero-Day”

May 30, 2014 | Jonathan Claudius

A few months ago I was trying to PoC a known cross-site scripting vulnerability ...

Third-Party Auth Token Theft: The Big Picture

May 29, 2014 | David Byrne

Nothing sets the technical journalists abuzz like the prospect of a ...

Wireless Cameras and Webcams: Are You Being Watched?

May 27, 2014

Trustwave SpiderLabs recently disclosed vulnerabilities in several models of ...

SpiderLabs Radio: May 22, 2014

May 22, 2014

In this episode I talk about:

Java-based Malware Distributed Through Spam

May 22, 2014 | Rodel Mendrez

For the past few months, we've observed more spam with Java-based malware ...

Mass Malicious PDF Email Campaigns from Cutwail

May 21, 2014

Over the last two weeks we have noticed a high number of emails with PDF ...

Trustkeeper Scan Engine Update - May 21, 2014

May 21, 2014 | Donovan Lampa

We're back to bring you a large Scan Engine update. We've packed this release ...

2014 Trustwave Global Security Report Available Now

May 21, 2014 | Trustwave SpiderLabs

Baby's first NX+ASLR bypass

May 20, 2014 | Dan Crowley

Recently, I've been trying to improve my skills with regards to exploiting ...

DEFCON 22 CTF Qualifiers Writeup

May 20, 2014 | Dan Crowley

Hi folks!

SpiderLabs Radio: May 15, 2014

May 15, 2014

In this episode:

Microsoft Patch Tuesday, May 2014

May 13, 2014

May's Microsoft Patch Tuesday contains eight bulletins, the most of any release ...

SpiderLabs Radio: May 8, 2014

May 10, 2014

In this episode:

Microsoft Advance Notification for May 2014

May 08, 2014 | Robert Foggia

Tuesday, May 13 marks the next Microsoft security patch release. This release ...

Exploit Kit Roundup: Best of Obfuscation Techniques

May 07, 2014 | Anat (Fox) Davidi

The world of exploit kits is an ever-changing one, if you happen to look away ...

[Honeypot Alert] Open Flash Charts File Upload Attacks

May 06, 2014

Our web honeypots picked up some increased scanning/exploit activity for the ...