Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 25 guests and 1 member online
 
Free Business and Tech Magazines and eBooks

You are here: Home
EH-Net
May 19, 2013, 06:27:24 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 21 22 [23] 24 25 ... 29
331  Ethical Hacking Discussions and Related Certifications / Web Applications / DOS bug I found on: August 10, 2012, 06:17:26 PM
Hi all,

I was testing a web app the other day and found a pretty cool DOS bug that I wanted to share as it should work on most sites that use this method.

The site was online site that you could buy item from they took two methods of payment credit card and reserve pay later within 24 hours.

The Bug:
I noticed that if you reserve an item it would take it out of their database so no one else could buy the item. The problems were once it took it out of the database no one else could buy it, and two there was no limit on what you could buy. So in theory you could purchase everything in the store and it would stop anyone else from buying anything for up to 24 hours or until they noticed the issue.

As said any site that use like a reserve and collect could have this issue.
332  Features / Book Reviews / Re: Recomended book for Pen Tester on: August 10, 2012, 02:57:16 PM
Cool there are some good books on that list anyone else have good recommendation
333  Resources / Mass Media / Re: Chat with security experts! [add your messenger] on: August 10, 2012, 02:52:00 PM
Might not be best idea posting email address as they get picked up and you will get spam.

If you want to chat to other professional there are some pretty cool IRC channels to hang out on.
334  Resources / Links to cool sites. / Re: A request to all members! (Compiled list of resources) on: August 10, 2012, 02:49:13 PM
Mixed Security Links (All Levels)
https://code.google.com/p/pentest-bookmarks/wiki/BookmarksList
335  EH-Net / Calendar Of Events / Re: Small UK pen testing event on: August 10, 2012, 07:44:11 AM
Yah the website is the best place but facebook is used to keep everyone uptp date.

It will be in London
336  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Finally took the plunge, started 08/05/12 on: August 10, 2012, 05:03:01 AM
Cool bit fo advice any other advice from people who have passed ?
337  EH-Net / Calendar Of Events / Re: Small UK pen testing event on: August 10, 2012, 05:02:29 AM
The event has not been update on the website yet as they run a few events but most guys who do it work as well so they do it in their free time.

It best to join the Facebook group but they also have website

http://ypisg.bcs.org/
338  Ethical Hacking Discussions and Related Certifications / Other / Re: Just Curious on: August 10, 2012, 05:00:33 AM
hmm I guess but not everyone who get caughty is not just script kiddie. Kevin micknick got caughty I would never class him as script kiddie. I do agree that most probabley are the fact is everyone makes mistakes and that is usally their downdfall.
339  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: pen test documentation on: August 10, 2012, 04:58:38 AM
Yes I agree dont add stuff that it not helpful to a client giving them a reprot of 450 pages you may think you show value for money but if the contents is not help it come back to bite you
340  Ethical Hacking Discussions and Related Certifications / Physical Security / Re: PhysSec Legal Advice on: August 10, 2012, 04:57:33 AM
You might be best trying to contact some speakers I never done a talk at con so not sure on best advice to give you maybe you should try hit up people like dark tagent on twitter or others that have done talks worldwide.
341  Features / Book Reviews / Re: Recomended book for Pen Tester on: August 10, 2012, 04:55:25 AM
hmm I find most books follow the same sort of thing and cover the same topics.
342  EH-Net / Calendar Of Events / Small UK pen testing event on: August 09, 2012, 03:15:48 PM
Hi all,

I do a lot free work for a group and in November we are running a small pen test event it cost about £30 this includes lunch but places are limited.

If you have Facebook you can join out group YPISG to keep up with events.

343  Features / Book Reviews / Re: Recomended book for Pen Tester on: August 09, 2012, 03:13:05 PM
I read the first one and felt was ok a great read for a beginner.
344  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: pen test documentation on: August 09, 2012, 03:10:35 PM
Cool post and like you website
345  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: blog hacked. so , what to do? on: August 09, 2012, 03:07:06 PM
Yah really good point always use protection Tongue

When viewing sites that have been hacked!!
Pages: 1 ... 21 22 [23] 24 25 ... 29
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.077 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.