<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-7746995296778762053</id><updated>2011-07-30T10:01:14.020-07:00</updated><category term='hack'/><category term='hacking'/><category term='macrumors'/><category term='acunetix'/><category term='scanners'/><category term='appscan'/><category term='webinspect'/><category term='security'/><category term='vulnerability'/><category term='web security'/><title type='text'>Ananta Security</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://anantasec.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7746995296778762053/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://anantasec.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>AnantaSec</name><uri>http://www.blogger.com/profile/13863907561345004092</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='26' height='32' src='http://3.bp.blogspot.com/_AFCg4U-l0DQ/SWeT5OUpwpI/AAAAAAAAABs/nNMpJyVJ_yQ/S220/hacker.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>3</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7746995296778762053.post-7955507298307728180</id><published>2009-01-27T05:51:00.000-08:00</published><updated>2009-01-27T05:54:45.824-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='webinspect'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='scanners'/><category scheme='http://www.blogger.com/atom/ns#' term='appscan'/><category scheme='http://www.blogger.com/atom/ns#' term='acunetix'/><category scheme='http://www.blogger.com/atom/ns#' term='web security'/><title type='text'>Web Vulnerability Scanners Comparison</title><content type='html'>In the past weeks, I've performed an evaluation/comparison of three popular web vulnerability scanners.This evaluation was ordered by a penetration testing company that will remain anonymous. The vendors were not contacted during or after the evaluation. &lt;br /&gt;&lt;br /&gt;The applications (web scanners) included in this evaluation are:&lt;br /&gt;- Acunetix WVS version 6.0 (Build 20081217)&lt;br /&gt;- IBM Rational AppScan version 7.7.620 Service Pack 2&lt;br /&gt;- HP WebInspect version 7.7.869&lt;br /&gt;&lt;br /&gt;I've tested 13 web applications (some of them containing a lot of vulnerabilities), 3 demo applications provided by the vendors (testphp.acunetix.com, demo.testfire.net, zero.webappsecurity.com) and I've done some tests to verify Javascript execution capabilities.&lt;br /&gt;&lt;br /&gt;In total, 16 applications were tested. I've tried to cover all the major platforms, therefore I have applications in PHP, ASP, ASP.NET and Java.&lt;br /&gt;&lt;br /&gt;The report can be found at &lt;a href="http://drop.io/anantasecfiles/"&gt;http://drop.io/anantasecfiles/&lt;/a&gt;&lt;br /&gt;The full URL to the PDF document: &lt;a href="http://drop.io/download/497f0f4e/c1d8b2966f85fb8549a18cbe2d789224ea665f45/759c3010-ce68-012b-dcee-f407c7ff11c2/9eeb1f00-cea5-012b-aa7b-f219675fa758/report.pdf/report_pdf.pdf"&gt;http://drop.io/download/497f0f4e/c1d8b2966f85fb8549a18cbe2d789224ea665f45/759c3010-ce68-012b-dcee-f407c7ff11c2/9eeb1f00-cea5-012b-aa7b-f219675fa758/report.pdf/report_pdf.pdf&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I've included enough information in this report (the javascript files used for testing, exact version and URL for all the tested applications) so anybody with enough patience can verify and reproduce the results presented here.&lt;br /&gt;&lt;br /&gt;Therefore, I will not respond to emails for vendors. You have the information, fix your scanners!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7746995296778762053-7955507298307728180?l=anantasec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://anantasec.blogspot.com/feeds/7955507298307728180/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://anantasec.blogspot.com/2009/01/web-vulnerability-scanners-comparison.html#comment-form' title='43 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7746995296778762053/posts/default/7955507298307728180'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7746995296778762053/posts/default/7955507298307728180'/><link rel='alternate' type='text/html' href='http://anantasec.blogspot.com/2009/01/web-vulnerability-scanners-comparison.html' title='Web Vulnerability Scanners Comparison'/><author><name>AnantaSec</name><uri>http://www.blogger.com/profile/13863907561345004092</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='26' height='32' src='http://3.bp.blogspot.com/_AFCg4U-l0DQ/SWeT5OUpwpI/AAAAAAAAABs/nNMpJyVJ_yQ/S220/hacker.jpg'/></author><thr:total>43</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7746995296778762053.post-2241084516132100154</id><published>2009-01-09T09:56:00.000-08:00</published><updated>2009-01-09T10:03:41.855-08:00</updated><title type='text'>Windows XP Local Privilege Escalation</title><content type='html'>&lt;a href="http://www.houseofhackers.org/xn/detail/u_23c7kl8mh4vep"&gt;d@v|d&lt;/a&gt;from &lt;a href="http://www.houseofhackers.org/"&gt;House of Hackers&lt;/a&gt; just posted a very easy way to escalate your privileges on Windows XP using the &lt;span style="font-weight: bold;"&gt;at &lt;/span&gt;command. Cool stuff :)&lt;br /&gt;You can find the original post &lt;a href="http://www.houseofhackers.org/profiles/blogs/how-to-windows-xp-local"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7746995296778762053-2241084516132100154?l=anantasec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://anantasec.blogspot.com/feeds/2241084516132100154/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://anantasec.blogspot.com/2009/01/windows-xp-local-privilege-escalation.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7746995296778762053/posts/default/2241084516132100154'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7746995296778762053/posts/default/2241084516132100154'/><link rel='alternate' type='text/html' href='http://anantasec.blogspot.com/2009/01/windows-xp-local-privilege-escalation.html' title='Windows XP Local Privilege Escalation'/><author><name>AnantaSec</name><uri>http://www.blogger.com/profile/13863907561345004092</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='26' height='32' src='http://3.bp.blogspot.com/_AFCg4U-l0DQ/SWeT5OUpwpI/AAAAAAAAABs/nNMpJyVJ_yQ/S220/hacker.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7746995296778762053.post-2015196745828387291</id><published>2009-01-07T14:00:00.000-08:00</published><updated>2009-01-08T11:17:04.453-08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='macrumors'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='hacking'/><category scheme='http://www.blogger.com/atom/ns#' term='hack'/><title type='text'>MacRumorsLive feed hack details</title><content type='html'>&lt;p&gt;I was watching the MacRumors live feed yesterday and I was lucky enough to  see the hack live.&lt;/p&gt; &lt;p&gt;It was kind of funny, I was following the updates and at some point this text  appeared:&lt;/p&gt; &lt;p&gt;&lt;em&gt;STEVE JOBS JUST DIED:&lt;/em&gt;&lt;/p&gt; &lt;p&gt;A few seconds later the guys from MacRumors figured out that something  happened and posted a retraction. And then the hacker posted another funny  message:&lt;/p&gt; &lt;p&gt;&lt;em&gt;Oh, wait, sorry. Steve did die. Our condolences.&lt;/em&gt;&lt;/p&gt; &lt;p&gt;And after that things started to get out of control. A lot of people started  to post a lot of crap. You can see a screen shot &lt;a href="http://i39.tinypic.com/apdatw.png" target="_blank"&gt;here&lt;/a&gt;. &lt;/p&gt; &lt;p&gt;Anyway, I was curious what happened and started searching on Google. I was  thinking they found an SQL injection or guessed their passwords or something  like that.&lt;/p&gt; &lt;p&gt;However, things were much more simpler (as they usually are). Some guy/guys  from 4chan found a directory listing for the admin directory.&lt;/p&gt; &lt;p&gt;&lt;a href="http://img388.imageshack.us/my.php?image=macrumorsliveadmindz0.jpg" target="_blank"&gt;&lt;img src="http://img388.imageshack.us/img388/9108/macrumorsliveadmindz0.th.jpg" alt="Free Image Hosting at www.ImageShack.us" border="0" /&gt;&lt;/a&gt;&lt;/p&gt; &lt;p&gt;As if this wasn't bad enough, this directory was not properly configured and  was showing the source code of PHP files instead of executing them.&lt;/p&gt; &lt;p&gt;More than that, you could read the htpasswd file (named .passwd) with all the  password hashes :)&lt;br /&gt;&lt;/p&gt;&lt;p&gt;Wait, there is more :)&lt;/p&gt; &lt;p&gt;They didn't even need those passwords, because if you read some of the files  from that directory you could get the URL of the administrative interface. From  there you could post live updates and stuff. And guess what: this administrative  interface wasn't password protected. Now, that's just funny :)&lt;/p&gt; &lt;p&gt; &lt;a href="http://img135.imageshack.us/my.php?image=admininterfacesc8.png" target="_blank"&gt;&lt;img src="http://img135.imageshack.us/img135/3055/admininterfacesc8.th.png" alt="Free Image Hosting at www.ImageShack.us" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;Here is the response from &lt;strong&gt;arn&lt;/strong&gt;, the guy  that runs MacRumors.&lt;/p&gt; &lt;p&gt;&lt;em&gt;The cause of the security breach is best described as "user error" due to  admin files being inadvertently mirrored across multiple server instances with  incorrect permissions. This allowed php code to be displayed rather than  executed, which was clearly a "bad thing". Our actual admin panel is password  protected, of course.&lt;/em&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7746995296778762053-2015196745828387291?l=anantasec.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://anantasec.blogspot.com/feeds/2015196745828387291/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://anantasec.blogspot.com/2009/01/i-was-watching-macrumors-live-feed.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7746995296778762053/posts/default/2015196745828387291'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7746995296778762053/posts/default/2015196745828387291'/><link rel='alternate' type='text/html' href='http://anantasec.blogspot.com/2009/01/i-was-watching-macrumors-live-feed.html' title='MacRumorsLive feed hack details'/><author><name>AnantaSec</name><uri>http://www.blogger.com/profile/13863907561345004092</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='26' height='32' src='http://3.bp.blogspot.com/_AFCg4U-l0DQ/SWeT5OUpwpI/AAAAAAAAABs/nNMpJyVJ_yQ/S220/hacker.jpg'/></author><thr:total>0</thr:total></entry></feed>
