<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:series="http://unfoldingneurons.com/"
	>

<channel>
	<title>a4apphack &#187; Security</title>
	<atom:link href="http://a4apphack.com/index.php/category/security/feed" rel="self" type="application/rss+xml" />
	<link>http://a4apphack.com</link>
	<description>Get more out of the Apps!</description>
	<lastBuildDate>Tue, 31 Aug 2010 21:39:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
<image>
<link>http://a4apphack.com</link>
<url>http://a4apphack.com/blog/wp-content/themes/primus/favicon.ico</url>
<title>a4apphack</title>
</image>
		<item>
		<title>Choosing Strong And Secure Password</title>
		<link>http://a4apphack.com/security/choosing-strong-and-secure-password</link>
		<comments>http://a4apphack.com/security/choosing-strong-and-secure-password#comments</comments>
		<pubDate>Fri, 27 Aug 2010 01:20:30 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[passwords]]></category>

		<guid isPermaLink="false">http://a4apphack.com/?p=1992</guid>
		<description><![CDATA[How to choose a strong and secure password? The obvious answer is to choose a very long password and the next answer in the list is to include as much special characters as possible. But doing so would make it more difficult to remember and would even force us to jot it in postits. But [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1992.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>How to choose a strong and secure password? The obvious answer is to choose a very long password and the next answer in the list is to include as much special characters as possible. But doing so would make it more difficult to remember and would even force us to jot it in postits.</p>
<p>But the ideal solution would be to choose a password which takes longer time to crack. Hackers can find someway to crack our password, all we have to make them try stronger and harder. Passwords are usually cracked using a method called as Bruteforce attack where a malicious tool tries to match all the type of password combination available against the target system. More complex the password is, more are the combinations to be tried and less probable it becomes for the tool to guess our password right.</p>
<p>This website, HowSecureIsMyPassword, gives us an idea on how long it takes to crack a password with a normal desktop PC. We can try various combinations, longer password/different character sets and analyze the results.</p>
<p style="text-align: center;"><img class="aligncenter" style="border: 1px solid black;" title="Time to Crack Calculator" src="http://img.a4apphack.com/securepass-crackcalc.jpg" alt="Time to Crack Calculator" width="499" height="347" /></p>
<p>So as mentioned earlier we should choose a password which takes at least more than &#8216;a year&#8217; to crack. This arbitrary value &#8211; &#8216;a year&#8217; is based on the assumption that we would change our passwords once in every year so by the time the cracker obtains our password, we would have changed it <img src='http://a4apphack.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p><span id="more-1992"></span>Guys from Whatsmypass have published a list of Top 500 worst passwords, check it out <a title="Top 500 Worst Passwords" href="http://www.whatsmypass.com/the-top-500-worst-passwords-of-all-time">here</a>, and make sure that you don&#8217;t use any one of them.</p>
<p>Another site provides crack time matrix of different types of character sets, length based on the system which is used for cracking it. HowSecureIsMyPassword assumes that the cracker uses class D and estimates the time, <a title="Password Crack Time Tables" href="http://www.lockdown.co.uk/?pg=combi">link</a>.</p>
<p style="text-align: center;"><a href="http://img.a4apphack.com/securepass-refcard.jpg" rel="shadowbox[post-1992];player=img;" title="Comparison of Several Char Combinations"><img class="aligncenter" style="border: 1px solid black;" title="Comparison of Several Char Combinations" src="http://img.a4apphack.com/securepass-refcard.jpg" alt="Comparison of Several Char Combinations" width="600" height="387" /></a></p>
<p>Check the site to calculate approx time taken to crack your password.</p>
<p><a title="How Secure Is My Password" href="http://howsecureismypassword.net/">HowSecureIsMyPassword</a></p>
<table id="cft">
  <thead>
  <tr>
    <th colspan="2">How Secure Is Your Password Info</th>
  </tr>
  </thead>
  <tbody>
    <tr>
      <td  width="40%">App Name</td>
      <td>How Secure Is Your Password</td>
    </tr>
    <tr>
      <td>License</td>
      <td>free</td>
    </tr>
    <tr>
      <td>Type</td>
      <td>online</td>
    </tr>
    <tr>
      <td>App URL</td>
      <td>
      <a target="_blank" href="http://howsecureismypassword.net/" title="Download"><img
 style="" alt="Download"
 src="http://img.a4apphack.com/site/a4apphack-download.png"
 title="Download" witdh="30" height="30"></a></td>
    </tr>
    <tr>
      <td>More Info</td>
      <td> <a href="http://www.lockdown.co.uk/?pg=combi">link</a></td>
    </tr>
  </tbody>
</table>



<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Choosing+Strong+And+Secure+Password+-+http://bit.ly/cZHpYE&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;title=Choosing+Strong+And+Secure+Password" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;title=Choosing+Strong+And+Secure+Password" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;t=Choosing+Strong+And+Secure+Password" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;title=Choosing+Strong+And+Secure+Password&amp;summary=How%20to%20choose%20a%20strong%20and%20secure%20password%3F%20The%20obvious%20answer%20is%20to%20choose%20a%20very%20long%20password%20and%20the%20next%20answer%20in%20the%20list%20is%20to%20include%20as%20much%20special%20characters%20as%20possible.%20But%20doing%20so%20would%20make%20it%20more%20difficult%20to%20remember%20and%20would%20even%20force%20us%20to%20jot%20it%20in%20postits.%0D%0A%0D%0ABut%20the%20ideal%20&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Choosing+Strong+And+Secure+Password&amp;du=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;cn=How%20to%20choose%20a%20strong%20and%20secure%20password%3F%20The%20obvious%20answer%20is%20to%20choose%20a%20very%20long%20password%20and%20the%20next%20answer%20in%20the%20list%20is%20to%20include%20as%20much%20special%20characters%20as%20possible.%20But%20doing%20so%20would%20make%20it%20more%20difficult%20to%20remember%20and%20would%20even%20force%20us%20to%20jot%20it%20in%20postits.%0D%0A%0D%0ABut%20the%20ideal%20" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;title=Choosing+Strong+And+Secure+Password" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/choosing-strong-and-secure-password&amp;title=Choosing+Strong+And+Secure+Password" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/choosing-strong-and-secure-password" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1992&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/choosing-strong-and-secure-password/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Default Secure Google Search for Firefox, Chrome and IE</title>
		<link>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie</link>
		<comments>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie#comments</comments>
		<pubDate>Mon, 24 May 2010 23:23:31 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[addons]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[va]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1981</guid>
		<description><![CDATA[Google has launched Secure Google search hosted on SSL lately . This post talks on how to enable this Secure Google search to the browser search bar/search suggestions in Firefox, Chrome and IE browsers. Updated: Added Screenshots for IE 1. Firefox Go to the Mozilla Addons Page and add Google SSL Search Plugin Select &#8216;Start [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1981.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Google has launched Secure Google search hosted on SSL lately . This post talks on how to enable this Secure Google search to the browser search bar/search suggestions in Firefox, Chrome and IE browsers.</p>
<p><span style="color: #800000;"><em><strong>Updated: Added Screenshots for IE</strong></em></span></p>
<h3>1. Firefox</h3>
<p>Go to the Mozilla Addons Page and add <a title="Google SSL Search" href="https://addons.mozilla.org/en-US/firefox/addon/161916/">Google SSL Search</a> Plugin</p>
<p><img title="Google  SSL Search in Firefox" src="http://img.a4apphack.com/googlessl-firefox1.jpg" alt="Google SSL Search in Firefox" width="270" height="92" /></p>
<p>Select &#8216;Start using it right away in the dialog box that displays &#8211; Add &#8220;Google SSL&#8221; to the list of engines available in the search bar?</p>
<p><img title="Make  Default in Firefox" src="http://img.a4apphack.com/googlessl-firefox2.jpg" alt="Make Default in Firefox" width="403" height="197" /></p>
<h3>2. Chrome</h3>
<p>Right Click on Chrome Omnibar(Address bar) and Select &#8216;Edit Search Engines&#8217;.</p>
<p><img title="Edit  Search Engines in Chrome" src="http://img.a4apphack.com/googlessl-chrome1.jpg" alt="Edit Search Engines in Chrome" width="502" height="181" /></p>
<p>In the Edit Search Engines Dialog box add <a title="https://www.google.com/searchq=%s" href="https://www.google.com/searchq=%s"><strong>https://www.google.com/search?q=%s</strong></a> in the URL field and click on Make Default Button.</p>
<p><img class="alignnone" title="Add Google SSL in Chrome" src="http://img.a4apphack.com/googlessl-chrome2.jpg" alt="Add Google SSL in Chrome" width="449" height="365" /></p>
<p>Dont forget to check the Chrome Extensions List for Security Testers, <a title="here" href="http://a4apphack.com/index.php/featured/13-chrome-extensions-for-security-testers">here</a> (Internal Post)</p>
<p><strong>3. Internet Explorer</strong></p>
<ul>
<li>Access the <a title="Add Search Providers to Internet Explorer" href="http://www.microsoft.com/windows/ie/searchguide/en-en/default.mspx">Add Search Providers page</a></li>
</ul>
<ul>
<li>In the Create Your Own enter <a href="https://www.google.com/search?q=TEST"><strong>https://www.google.com/search?q=TEST</strong></a> in the URL field</li>
</ul>
<p style="padding-left: 30px;"><img class="alignnone" title="Add Google SSL in IE" src="http://img.a4apphack.com/googlessl-ie1.jpg" alt="Add Google SSL in IE" width="313" height="326" /></p>
<p>Click on the Install Button to see the following screen. Check the &#8216;Make this my default search provider&#8217;</p>
<p style="padding-left: 30px;"><img class="alignnone" title="Google SSL IE Add Screen" src="http://img.a4apphack.com/googlessl-ie2.jpg" alt="Google SSL IE Add Screen" width="397" height="271" /></p>
<p>Now the Search box in IE will display Google.</p>
<p style="padding-left: 30px;"><img class="alignnone" title="Google SSL Installed in IE8" src="http://img.a4apphack.com/googlessl-ie3.jpg" alt="Google SSL Installed in IE8" width="303" height="90" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p>via <a title="Search more securely with encrypted Google web search" href="http://googleblog.blogspot.com/2010/05/search-more-securely-with-encrypted.html">Google Blog</a> and <a title="TechDows" href="http://techdows.com/2010/05/make-google-ssl-search-as-the-default-search-engines-in-firefox-chrome-and-internet-explorer.html">TechDows</a></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE+-+http://bit.ly/9W9nVj&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;t=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE&amp;summary=Google%20has%20launched%20Secure%20Google%20search%20hosted%20on%20SSL%20lately%20.%20This%20post%20talks%20on%20how%20to%20enable%20this%20Secure%20Google%20search%20to%20the%20browser%20search%20bar%2Fsearch%20suggestions%20in%20Firefox%2C%20Chrome%20and%20IE%20browsers.%0D%0A%0D%0AUpdated%3A%20Added%20Screenshots%20for%20IE%0D%0A%0D%0A1.%20Firefox%0D%0A%0D%0AGo%20to%20the%20Mozilla%20Addons%20Page%20and%20add%20Goog&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE&amp;du=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;cn=Google%20has%20launched%20Secure%20Google%20search%20hosted%20on%20SSL%20lately%20.%20This%20post%20talks%20on%20how%20to%20enable%20this%20Secure%20Google%20search%20to%20the%20browser%20search%20bar%2Fsearch%20suggestions%20in%20Firefox%2C%20Chrome%20and%20IE%20browsers.%0D%0A%0D%0AUpdated%3A%20Added%20Screenshots%20for%20IE%0D%0A%0D%0A1.%20Firefox%0D%0A%0D%0AGo%20to%20the%20Mozilla%20Addons%20Page%20and%20add%20Goog" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie&amp;title=Default+Secure+Google+Search+for+Firefox%2C+Chrome+and+IE" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1981&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-browser/default-secure-google-search-for-firefox-chrome-and-ie/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Gruyere &#8211; Vulnerable Web Application At Google Code (Previously Jarlsberg)</title>
		<link>http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code</link>
		<comments>http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code#comments</comments>
		<pubDate>Mon, 17 May 2010 19:11:29 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[code]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[learn]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[va]]></category>
		<category><![CDATA[xsrf]]></category>
		<category><![CDATA[xss]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1936</guid>
		<description><![CDATA[Gruyere is a vulnerable application which can be used to learn and understand web vulnerabilities. Detailed documentation is provided on the type of the vulnerabilities present in the application and ways to exploits it. Update: Jarlsberg is now Gruyere This codelab shows how web application vulnerabilities can be exploited and how to defend against these attacks. [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1936.png&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Gruyere is a vulnerable application which can be used to learn and understand web vulnerabilities. Detailed documentation is provided on the type of the vulnerabilities present in the application and ways to exploits it.</p>
<p><strong><span style="color: #800000;">Update</span>: Jarlsberg is now Gruyere<br />
</strong></p>
<ul>
</ul>
<p><em>This codelab shows how web application vulnerabilities can be exploited and how to defend against these attacks. The best way to learn things is by doing, so you&#8217;ll get a chance to do some real penetration testing, actually exploiting a real application. Specifically, you&#8217;ll learn the following:</em></p>
<ul>
<li><em> How an application can be attacked using common web security vulnerabilities, like cross-site scripting vulnerabilities (XSS) and cross-site request forgery (XSRF). </em></li>
<li><em> How to find, fix, and avoid these common vulnerabilities and other bugs that have a security impact, such as denial-of-service, information disclosure, or remote code execution. </em></li>
</ul>
<p><a title="Jarlsberg Documentation" href="http://jarlsberg.appspot.com/part2">Documentation Here</a></p>
<p><img class="alignnone" title="Jarlsberg - Hosted Vulnerable App" src="http://img.a4apphack.com/jarlsbergapp-main.jpg" alt="Jarlsberg - Hosted Vulnerable App" width="600" height="412" /></p>
<p><span id="more-1936"></span></p>
<p><strong>Some Exploit Screenshots</strong></p>
<p>Information Disclosure &#8211; Read the contents of the database off of a running server by exploiting a configuration vulnerability.</p>
<p><em>Debug Dump Page URL</em> &#8211; http://google-gruyere.appspot.com/<span style="color: #ff0000;">457262944951</span>/dump.jtl</p>
<p>The id changes based on your session.</p>
<p><img class="alignnone" title="Jarlsberg Dump Page" src="http://img.a4apphack.com/jarlsbergapp-dump.jpg" alt="Jarlsberg Dump Page" width="600" height="405" /></p>
<p><strong>Reflected XSS</strong></p>
<p>Alert Dialog box which indicates the presence of <a title="Cross Site Scripting Vulnerability" href="http://a4apphack.com/index.php/security/xss-made-simple-flash-animation">Cross Site Scripting Vulnerability</a> present in Jarlsberg</p>
<p><br class="spacer_" /></p>
<div class="wp-caption alignnone" style="width: 610px"><img class=" " title="Stored XSS alert" src="http://img.a4apphack.com/jarlsbergapp-storedxss.jpg" alt="Stored XSS alert" width="600" height="340" /><p class="wp-caption-text">Stored XSS alert</p></div>
<p><br class="spacer_" /></p>
<h3><strong>Features</strong></h3>
<p>Jarlsberg includes a number of special features and technologies which add attack surface.</p>
<ul>
<li> HTML in Snippets: Users can include a limited subset of HTML in their snippets. </li>
<li> File upload: Users can upload files to the server, e.g., to include pictures in their snippets. </li>
<li> Web administration: System administrators can manage the system using a web interface. </li>
<li> New accounts: Users can create their own accounts. </li>
<li> Template language: Jarlsberg Template Language(JTL) is a new language that makes writing web pages easy as the templates connect directly to the database. Documentation for JTL can be found in <code><a href="http://google-gruyere.appspot.com/code/?jtl.py">gruyere/jtl.py</a></code>. </li>
<li> AJAX: Jarlsberg uses AJAX to implement refresh on the home and snippets page. You should ignore the AJAX parts of Jarlsberg except for the challenges that specifically tell you to focus on AJAX. </li>
</ul>
<h3><strong>Vulnerabilities In Gruyere</strong></h3>
<ul>
<li>Cross-Site Scripting (XSS)
<ul>
<li>File Upload XSS</li>
<li>Reflected XSS</li>
<li>Stored XSS</li>
<li>Stored XSS via HTML Attribute</li>
<li>Stored XSS via AJAX</li>
<li>Reflected XSS via AJAX</li>
</ul>
</li>
<li>Client-State Manipulation
<ul>
<li>Elevation of Privilege</li>
<li>Cookie Manipulation</li>
</ul>
</li>
<li>Cross-Site Request Forgery (XSRF)</li>
<li>Cross Site Script Inclusion (XSSI)</li>
<li>Path Traversal
<ul>
<li>Information disclosure via path traversal</li>
<li>Data tampering via path traversal</li>
</ul>
</li>
<li>Denial of Service
<ul>
<li>DoS &#8211; Quit the Server</li>
<li>DoS &#8211; Overloading the Server</li>
</ul>
</li>
<li>Code Execution</li>
<li>Information disclosure</li>
<li>AJAX vulnerabilities
<ul>
<li>DoS via AJAX</li>
<li>Phishing via AJAX</li>
</ul>
</li>
<li>Buffer Overflow and Integer Overflow</li>
<li>SQL Injection</li>
</ul>
<p>Explore hosted version of Jarlsberg and start uncovering the vulnerabilities</p>
<p><a title="Gruyere" href="http://google-gruyere.appspot.com/start">Gruyere Hosted Version</a></p>
<table id="cft">
  <thead>
  <tr>
    <th colspan="2">Gruyere (Previously Jarlsberg) Info</th>
  </tr>
  </thead>
  <tbody>
    <tr>
      <td  width="40%">App Name</td>
      <td>Gruyere (Previously Jarlsberg)</td>
    </tr>
    <tr>
      <td>License</td>
      <td>free</td>
    </tr>
    <tr>
      <td>Type</td>
      <td><ul>
<li>online</li>
<li>code</li>
</ul>
</td>
    </tr>
    <tr>
      <td>App URL</td>
      <td>
      <a target="_blank" href="http://google-gruyere.appspot.com//start" title="Download"><img
 style="" alt="Download"
 src="http://img.a4apphack.com/site/a4apphack-download.png"
 title="Download" witdh="30" height="30"></a></td>
    </tr>
    <tr>
      <td>More Info</td>
      <td> <a href="http://google-gruyere.appspot.com/">link</a></td>
    </tr>
  </tbody>
</table>

<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29+-+http://bit.ly/a9bz1R&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;title=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;title=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;t=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;title=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29&amp;summary=Gruyere%20is%20a%20vulnerable%20application%20which%20can%20be%20used%20to%20learn%20and%20understand%20web%C2%A0vulnerabilities.%20Detailed%20documentation%20is%20provided%20on%20the%20type%20of%20the%20vulnerabilities%20present%20in%20the%20application%20and%20ways%20to%20exploits%20it.%0D%0A%0D%0AUpdate%3A%20Jarlsberg%20is%20now%20Gruyere%0D%0A%0D%0A%0D%0A%0D%0A%0D%0A%0D%0AThis%20codelab%20shows%20how%20web%20appl&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29&amp;du=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;cn=Gruyere%20is%20a%20vulnerable%20application%20which%20can%20be%20used%20to%20learn%20and%20understand%20web%C2%A0vulnerabilities.%20Detailed%20documentation%20is%20provided%20on%20the%20type%20of%20the%20vulnerabilities%20present%20in%20the%20application%20and%20ways%20to%20exploits%20it.%0D%0A%0D%0AUpdate%3A%20Jarlsberg%20is%20now%20Gruyere%0D%0A%0D%0A%0D%0A%0D%0A%0D%0A%0D%0AThis%20codelab%20shows%20how%20web%20appl" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;title=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code&amp;title=Gruyere+-+Vulnerable+Web+Application+At+Google+Code+%28Previously+Jarlsberg%29" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1936&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-code/jarlsberg-vulnerable-web-application-at-google-code/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>13 Chrome Extensions for Security Testers</title>
		<link>http://a4apphack.com/featured/13-chrome-extensions-for-security-testers</link>
		<comments>http://a4apphack.com/featured/13-chrome-extensions-for-security-testers#comments</comments>
		<pubDate>Mon, 17 May 2010 02:01:48 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Featured]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[Secfox]]></category>
		<category><![CDATA[va]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1967</guid>
		<description><![CDATA[This post lists 13 Chrome Extensions to aid security testers during their web application pen testing. 1. WebDeveloper Adds a toolbar button with various web developer tools. The official port of the Web Developer extension for Firefox. Internal post here. 2. Firebug Lite Firebug Lite provides the rich visual representation we are used to see [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1967&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>This post lists 13 Chrome Extensions to aid security testers during their web application pen testing.</p>
<h3>1. WebDeveloper</h3>
<div>
<div>Adds a toolbar button with various web developer tools. The official port of the Web Developer extension for Firefox. Internal post <a title="here" href="http://a4apphack.com/index.php/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts">here</a>.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/bfbameneiokkgbdmiekhjnmfkcnldhhm " title="WebDeveloper"><img class="alignnone" title="WebDeveloper" src="http://img.a4apphack.com/chromesecextn-webdeveloper.jpg" alt="WebDeveloper" width="600" height="277" /></a></div>
<h3>2. Firebug Lite</h3>
<div>
<div>Firebug Lite provides the rich visual representation we are used to see in Firebug when it comes to HTML elements, DOM elements, and Box Model shading</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/bmagokdooijbeehmkpknfglimnifench " title="Firebug Lite"><img class="alignnone" title="Firebug Lite" src="http://img.a4apphack.com/chromesecextn-firebug.jpg " alt="Firebug Lite" width="600" height="332" /></a></div>
<h3>3. Pendule</h3>
<div>
<div>This addon is similar to webdeveloper but not as powerful as it is. Internal Post <a title="here" href="http://a4apphack.com/index.php/featured/pendule-webdeveloper-equivalent-in-chrome-for-security-analysts">here</a>.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/gbkffbkamcejhkcaocmkdeiiccpmjfdi " title="Pendule"><img class="alignnone" title="Pendule" src="http://img.a4apphack.com/chromesecextn-pendule.jpg" alt="Pendule" width="600" height="271" /></a></div>
<p><span id="more-1967"></span></p>
<h3>4. Chrome Web Developer Tools</h3>
<div>
<div>Tool to dynamically view and modify HTML elements.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/fbmlldeibipeppiabbdjajcneipfbocm " title="Chrome Web Dev Tools"><img class="alignnone" title="Chrome Web Dev Tools" src="http://img.a4apphack.com/chromesecextn-chromewebdevtools.jpg" alt="Chrome Web Dev Tools" width="600" height="269" /></a></div>
<h3>5. Simple REST Client</h3>
<div>
<div>Construct custom HTTP requests to directly test your web services.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/fhjcajmcbmldlhcimfajhfbgofnpcjmb " title="Simple REST Client"><img class="alignnone" title="Simple REST Client" src="http://img.a4apphack.com/chromesecextn-simplerestclient.jpg" alt="Simple REST Client" width="600" height="433" /></a></div>
<h3>6. View Selection Source</h3>
<div>
<div>View selection source in resizable popup. Drag the bottom right corner to resize. Simple, but very useful for web developers.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/fbhgckgfljgjkkfngcoeajbgndkeoaaj " title="View Selection Source"><img class="alignnone" title="View Selection Source" src="http://img.a4apphack.com/chromesecextn-viewselsource.jpg" alt="View Selection Source" width="600" height="342" /></a></div>
<h3>7. Domain Details</h3>
<div>
<div>Shows server&#8217;s IP address, country flag, software, headers, and provides links to whois reports. This is similar to the <a title="Domain Details addon for Firefox" href="http://a4apphack.com/index.php/featured/secfox-http-header-analysis-domain-details-part-2">Domain Details addon for Firefox</a></div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/ekgdjkmnfildhenmlbefaajoljlkekfg " title="Domain Details"><img class="alignnone" title="Domain Details" src="http://img.a4apphack.com/chromesecextn-domaindetails.jpg" alt="Domain Details" width="600" height="329" /></a></div>
<h3>8. Chrome Sniffer</h3>
<div>
<div>Detect web frameworks and javascript libraries run on browsing website.</div>
<div>At the time of writing, this extension identifies the following apps/frameworks</div>
<div>
<p><strong>Blogging Services</strong></p>
<ul>
<li>Tumblr</li>
</ul>
<p><strong>Web Application</strong></p>
<ul>
<li>vBulletin</li>
<li>SMF</li>
<li>phpBB</li>
<li>IPB</li>
<li>miniBB</li>
<li>Drupal</li>
<li>Ubercart</li>
<li>WordPress</li>
<li>bbPress</li>
<li>Movable Type</li>
<li>MediaWiki</li>
<li>DokuWiki</li>
<li>Joomla</li>
<li>Magento</li>
<li>Xoops</li>
<li>Plone</li>
<li>CMS Made Simple</li>
<li>SilverStripe</li>
<li>MODx</li>
<li>Amiro.CMS</li>
<li>Koobi</li>
<li>LifeRay</li>
<li>PHP Fusion</li>
<li>PHP Nuke</li>
<li>WebGUI</li>
<li>ezPublish</li>
<li>DotNetNuke</li>
<li>Sitefinity</li>
</ul>
<p><strong>Javascript framework &amp; tools</strong></p>
<ul>
<li>jQuery &amp; jQuery UI</li>
<li>ExtJS</li>
<li>Prototype</li>
<li>Closure</li>
<li>MooTools</li>
<li>Dojo</li>
<li>script.aculo.us</li>
<li>YUI</li>
<li>Google Analytics</li>
<li>Disqus</li>
<li>GetSatisfaction</li>
<li>Wibiya</li>
<li>reCaptcha</li>
<li>Mollom</li>
</ul>
</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/homgcnaoacgigpkkljjjekpignblkeae " title="Chrome Sniffer"><img class="alignnone" title="Chrome Sniffer" src="http://img.a4apphack.com/chromesecextn-chromesniffer.jpg" alt="Chrome Sniffer" width="359" height="162" /></a></div>
<h3>9. User-Agent Switcher</h3>
<div>
<div>Spoofs &amp; Mimics navigator.userAgent and navigator, vendor strings for specific sites.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/aafciojnlamllgpkpdkbamkfgbofhgcj " title="User Agent Switcher"><img class="alignnone" title="User Agent Switcher" src="http://img.a4apphack.com/chromesecextn-useragentswitcher.jpg" alt="User Agent Switcher" width="600" height="301" /></a></div>
<h3>10. Unencrypted Password Warning</h3>
<div>
<div>Unencrypted Password Warning detects whether a password or credit card number is about to be sent with a form that does not use HTTPS.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/mjpinemnkjlppmemjfabdaelpfgfjgkj " title="Unencrypted Password Warning"><img class="alignnone" title="Unencrypted Password Warning" src="http://img.a4apphack.com/chromesecextn-httppasswarning.jpg" alt="Unencrypted Password Warning" width="600" height="276" /></a></div>
<h3>11. JSONView</h3>
<div>
<div>JSONView for chrome is an extension that helps you view JSON documents in the browser.</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/chklaanhfefbnpoihckbnefhakgolnmc " title="JSON View"><img class="alignnone" title="JSON View" src="http://img.a4apphack.com/chromesecextn-jsonview.jpg" alt="JSON View" width="600" height="294" /></a></div>
<h3>12. Cookie Editor</h3>
<p>View and Edit the Cookies created by the site visible in the active page</p>
<p><a href="https://chrome.google.com/extensions/detail/mkfjmbbghhjglaldohfnmccfofoogbik?hl=en" title="Cookie Editor"><img class="alignnone" title="Cookie Editor" src="http://img.a4apphack.com/chromesecextn-cookieedit.jpg" alt="Cookie Editor" width="602" height="474" /></a></p>
<h3>13. Light Shot</h3>
<div>
<div>Easy and convenient screen capture tool. Allows you to make screenshot of any selected area, edit and upload it to server. (Not really a security tool, but this can be of help to capture evidences)</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/mbniclmhobmnbdlbpiphghaielnnpgdp " title="LightShot"><img class="alignnone" title="LightShot" src="http://img.a4apphack.com/chromesecextn-lightshot.jpg" alt="LightShot" width="600" height="316" /></a></div>
<h3>14. Note Anywhere (Bonus)</h3>
<div>
<div>With this ext, you can make notes on any web page, any position. The notes get loaded automatically whenever the page is opened. (Not really a security tool, but this can be of help to quickly jot comments on the pages where further investigation is to be done later.)</div>
</div>
<div><a href="https://chrome.google.com/extensions/detail/bohahkiiknkelflnjjlipnaeapefmjbh " title="Note Anywhere"><img class="alignnone" title="Note Anywhere" src="http://img.a4apphack.com/chromesecextn-noteanywhere.jpg" alt="Note Anywhere" width="600" height="305" /></a></div>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=13+Chrome+Extensions+for+Security+Testers+-+http://bit.ly/dphBGd&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;title=13+Chrome+Extensions+for+Security+Testers" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;title=13+Chrome+Extensions+for+Security+Testers" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;t=13+Chrome+Extensions+for+Security+Testers" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;title=13+Chrome+Extensions+for+Security+Testers&amp;summary=This%20post%20lists%2013%20Chrome%20Extensions%20to%20aid%20security%20testers%20during%20their%20web%20application%20pen%20testing.%0D%0A%0D%0A1.%20WebDeveloper%0D%0A%0D%0AAdds%20a%20toolbar%20button%20with%20various%20web%20developer%20tools.%20The%20official%20port%20of%20the%20Web%20Developer%20extension%20for%20Firefox.%20Internal%20post%20here.%0D%0A%0D%0A%0D%0A2.%20Firebug%20Lite%0D%0A%0D%0AFirebug%20Lite%20&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=13+Chrome+Extensions+for+Security+Testers&amp;du=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;cn=This%20post%20lists%2013%20Chrome%20Extensions%20to%20aid%20security%20testers%20during%20their%20web%20application%20pen%20testing.%0D%0A%0D%0A1.%20WebDeveloper%0D%0A%0D%0AAdds%20a%20toolbar%20button%20with%20various%20web%20developer%20tools.%20The%20official%20port%20of%20the%20Web%20Developer%20extension%20for%20Firefox.%20Internal%20post%20here.%0D%0A%0D%0A%0D%0A2.%20Firebug%20Lite%0D%0A%0D%0AFirebug%20Lite%20" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;title=13+Chrome+Extensions+for+Security+Testers" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers&amp;title=13+Chrome+Extensions+for+Security+Testers" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/13-chrome-extensions-for-security-testers" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1967&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/13-chrome-extensions-for-security-testers/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>HTML5 CheatSheet Project</title>
		<link>http://a4apphack.com/security/sec-browser/html5-cheatsheet-project</link>
		<comments>http://a4apphack.com/security/sec-browser/html5-cheatsheet-project#comments</comments>
		<pubDate>Thu, 13 May 2010 21:49:50 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Browser]]></category>
		<category><![CDATA[Code]]></category>
		<category><![CDATA[appsec]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[code]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[html5]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1962</guid>
		<description><![CDATA[HTML5 is a new and upcoming technology which has enough features to introduce potential security issues if not properly implemented. A new project has been initiated in Google Code to keep developers updated on the security concerns to be kept in mind while developing their apps with HTML5. Description of Project in Authors Terms, This [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1962.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>HTML5 is a new and upcoming technology which has enough features to introduce potential security issues if not properly implemented. A new project has been initiated in Google Code to keep developers updated on the security concerns to be kept in mind while developing their apps with <a title="HTML5" href="http://en.wikipedia.org/wiki/HTML5">HTML5</a>.</p>
<p>Description of Project in Authors Terms,</p>
<blockquote><p><em>This project is an attempt to create a well maintained, informative and categorized cheat sheet to highlight HTML5 as well as other client side and related security issues and ways to avoid them.  The project is meant to target web developers as well as security researchers and especially browser vendors since many of the problems we found are based on faulty or quirky implementations. Focus is on completeness, comprehensibility and timeliness as well as continuity &#8211; benefits many other related cheat sheets don&#8217;t exactly provide.</em></p>
<p></em></p>
</blockquote>
<p><span id="more-1962"></span></p>
<p><a href="http://img.a4apphack.com/html5sec-main.jpg" rel="shadowbox[post-1962];player=img;" title="HTML5 Security Cheatsheet"><img class="alignnone" title="HTML5 Security Cheatsheet" src="http://img.a4apphack.com/html5sec-main.jpg" alt="HTML5 Security Cheatsheet" width="600" height="493" /></a></p>
<p>Time to this site if are a developer or security analyst.</p>
<p><a title="HTML5 Cheatsheet" href="http://heideri.ch/jso/">HTML5 CheatSheet</a></p>
<table id="cft">
  <thead>
  <tr>
    <th colspan="2">HTML5 CheatSheet Info</th>
  </tr>
  </thead>
  <tbody>
    <tr>
      <td  width="40%">App Name</td>
      <td>HTML5 CheatSheet</td>
    </tr>
    <tr>
      <td>License</td>
      <td>free</td>
    </tr>
    <tr>
      <td>Type</td>
      <td>online</td>
    </tr>
    <tr>
      <td>App URL</td>
      <td>
      <a target="_blank" href="http://heideri.ch/jso/" title="Download"><img
 style="" alt="Download"
 src="http://img.a4apphack.com/site/a4apphack-download.png"
 title="Download" witdh="30" height="30"></a></td>
    </tr>
    <tr>
      <td>More Info</td>
      <td> <a href="http://code.google.com/p/html5security/">link</a></td>
    </tr>
  </tbody>
</table>

<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=HTML5+CheatSheet+Project+-+http://bit.ly/909asq&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;title=HTML5+CheatSheet+Project" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;title=HTML5+CheatSheet+Project" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;t=HTML5+CheatSheet+Project" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;title=HTML5+CheatSheet+Project&amp;summary=HTML5%20is%20a%20new%20and%20upcoming%20technology%20which%20has%20enough%20features%20to%20introduce%20potential%20security%20issues%20if%20not%20properly%20implemented.%20A%20new%20project%20has%20been%20initiated%20in%20Google%20Code%20to%20keep%20developers%20updated%20on%20the%20security%20concerns%20to%20be%20kept%20in%20mind%20while%20developing%20their%20apps%20with%20HTML5.%0D%0A%0D%0ADescr&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=HTML5+CheatSheet+Project&amp;du=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;cn=HTML5%20is%20a%20new%20and%20upcoming%20technology%20which%20has%20enough%20features%20to%20introduce%20potential%20security%20issues%20if%20not%20properly%20implemented.%20A%20new%20project%20has%20been%20initiated%20in%20Google%20Code%20to%20keep%20developers%20updated%20on%20the%20security%20concerns%20to%20be%20kept%20in%20mind%20while%20developing%20their%20apps%20with%20HTML5.%0D%0A%0D%0ADescr" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;title=HTML5+CheatSheet+Project" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project&amp;title=HTML5+CheatSheet+Project" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/sec-browser/html5-cheatsheet-project" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1962&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-browser/html5-cheatsheet-project/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Disclosure of XSS Vulnerability in SharePoint 2007</title>
		<link>http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007</link>
		<comments>http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007#comments</comments>
		<pubDate>Thu, 06 May 2010 21:43:12 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Code]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[sharepoint]]></category>
		<category><![CDATA[va]]></category>
		<category><![CDATA[xss]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1954</guid>
		<description><![CDATA[An XSS vulnerability has been discovered and disclosed to public in SharePoint Server 2007 and Microsoft Windows SharePoint Services 3.0. The vulnerability could allow an attacker to run arbitrary script that could result in elevation of privilege within the SharePoint site, as opposed to elevation of privilege within the workstation or server environment. This vulnerability [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1954.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>An XSS vulnerability has been discovered and disclosed to public in SharePoint Server 2007 and Microsoft Windows SharePoint Services 3.0. The vulnerability could allow an attacker to run arbitrary script that could result in elevation of privilege within the SharePoint site, as opposed to elevation of privilege within the workstation or server environment.</p>
<p>This vulnerability is discovered by <a title="HiTech Bridge" href="http://www.htbridge.ch/">High-Tech Bridge SA</a> and has been notified to Microsoft 12 April 2010. On the day of writing of this post, the vulnerability remains unfixed.</p>
<p>Read HTBridge advisory <a title="XSS in Microsoft SharePoint Server 2007" href="http://www.htbridge.ch/advisory/xss_in_microsoft_sharepoint_server_2007.html">here</a></p>
<p><strong>Vulnerable URL :</strong></p>

<div class="wp_syntax"><div class="code"><pre class="html" style="font-family:monospace;">http://TARGETSITE/_layouts/help.aspx?cid0=MS.WSS.manifest.xml%00%3Cscript%3Ealert%28%27XSS%27%29%3C/script%3E&amp;tid=X</pre></div></div>

<p><strong>Screenshot</strong></p>
<p><img class="alignnone" title="SharePoint 2007 XSS Vulnerability" src="http://img.a4apphack.com/sp07xss-main.jpg" alt="SharePoint 2007 XSS Vulnerability" width="600" height="304" /></p>
<p>Read more at <a title="Microsoft Security Advisory (983438)" href="http://www.microsoft.com/technet/security/advisory/983438.mspx">Microsoft Security Advisory (983438)</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007+-+http://bit.ly/bqkGcw&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;title=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;title=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;t=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;title=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007&amp;summary=An%20XSS%20vulnerability%20has%20been%20discovered%20and%20disclosed%20to%20public%20in%20SharePoint%20Server%202007%20and%20Microsoft%20Windows%20SharePoint%20Services%203.0.%20The%20vulnerability%20could%20allow%20an%20attacker%20to%20run%20arbitrary%20script%20that%20could%20result%20in%20elevation%20of%20privilege%20within%20the%20SharePoint%20site%2C%20as%20opposed%20to%20elevation%20&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007&amp;du=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;cn=An%20XSS%20vulnerability%20has%20been%20discovered%20and%20disclosed%20to%20public%20in%20SharePoint%20Server%202007%20and%20Microsoft%20Windows%20SharePoint%20Services%203.0.%20The%20vulnerability%20could%20allow%20an%20attacker%20to%20run%20arbitrary%20script%20that%20could%20result%20in%20elevation%20of%20privilege%20within%20the%20SharePoint%20site%2C%20as%20opposed%20to%20elevation%20" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;title=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007&amp;title=Disclosure+of+XSS+Vulnerability+in+SharePoint+2007" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1954&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-code/disclosure-of-xss-vulnerability-in-sharepoint-2007/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Implied PCI-DSS Secure Apps Requirement With Changes in OWASP 2010</title>
		<link>http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010</link>
		<comments>http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010#comments</comments>
		<pubDate>Thu, 06 May 2010 18:34:38 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Docs]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1945</guid>
		<description><![CDATA[As per PCI DSS, whenever a new version of OWASP Top 10 vulnerabilities are released, its implied that the current requirements are to be replaced with the latest OWASP updates. Current version of PCI-DSS was released in July 2009 and will include the new top 10 in the upcoming version. Do check the post excel [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1945.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>As per PCI DSS, whenever a new version of OWASP Top 10 vulnerabilities are released, its implied that the current requirements are to be replaced with the <a title="latest OWASP" href="http://owasptop10.googlecode.com/files/OWASP%2520Top%252010%2520-%25202010.pdf"></a><a title="latest OWASP" href="http://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project">latest OWASP</a> updates. Current version of <a title="PCI-DSS" href="https://www.pcisecuritystandards.org/security_standards/pci_dss.shtml">PCI-DSS</a> was released in July 2009 and will include the new top 10 in the upcoming version.</p>
<p>Do check the post excel based OWASP testing checklist <a title="here" href="http://a4apphack.com/index.php/featured/web-appsec-testing-checklist">here</a></p>
<h3>Implied PCI-DSS Requirement Changes</h3>

<table id="wp-table-reloaded-id-5-no-1" class="wp-table-reloaded wp-table-reloaded-id-5">
<thead>
	<tr class="row-1 odd">
		<th class="column-1">Req No</th><th class="column-2"> Requirement </th><th class="column-3">Description</th><th class="column-4">PCI 1.2 Req</th><th class="column-5">OWASP 2007</th>
	</tr>
</thead>
<tbody class="row-hover">
	<tr class="row-2 even">
		<td class="column-1">6.5.1</td><td class="column-2">Injection<br />
</td><td class="column-3">Injection flaws, such as SQL, OS, and LDAP injection, occur when untrusted data is sent to an interpreter as part of a command or query. The attacker’s hostile data can trick the interpreter into executing unintended commands or accessing unauthorized data.<br />
</td><td class="column-4">6.5.2</td><td class="column-5">A2 - Injection Flaws</td>
	</tr>
	<tr class="row-3 odd">
		<td class="column-1">6.5.2</td><td class="column-2">Cross-Site Scripting (XSS)<br />
</td><td class="column-3">XSS flaws occur whenever an application takes untrusted data and sends it to a web browser without proper validation and escaping. XSS allows attackers to execute scripts in the victim’s browser which can hijack user sessions, deface web sites, or redirect the user to malicious sites.<br />
</td><td class="column-4">6.5.1</td><td class="column-5">A1 –CrossSite Scripting (XSS)</td>
	</tr>
	<tr class="row-4 even">
		<td class="column-1">6.5.3</td><td class="column-2">Broken Authentication and Session Management<br />
</td><td class="column-3">Application functions related to authentication and session management are often not implemented correctly, allowing attackers to compromise passwords, keys, session tokens, or exploit other implementation flaws to assume other users’ identities.<br />
</td><td class="column-4">6.5.7</td><td class="column-5">A7 –Broken Authentication and Session Management</td>
	</tr>
	<tr class="row-5 odd">
		<td class="column-1">6.5.4</td><td class="column-2">Insecure Direct Object References<br />
</td><td class="column-3">A direct object reference occurs when a developer exposes a reference to an internal implementation object, such as a file, directory, or database key. Without an access control check or other protection, attackers can manipulate these references to access unauthorized data.<br />
</td><td class="column-4">6.5.4</td><td class="column-5">A4 –Insecure Direct Object Reference</td>
	</tr>
	<tr class="row-6 even">
		<td class="column-1">6.5.5</td><td class="column-2">Cross-Site Request Forgery (CSRF)<br />
</td><td class="column-3">A CSRF attack forces a logged-on victim’s browser to send a forged HTTP request, including the victim’s session cookie and any other automatically included authentication information, to a vulnerable web application. This allows the attacker to force the victim’s browser to generate requests the vulnerable application thinks are legitimate requests from the victim.<br />
</td><td class="column-4">6.5.5</td><td class="column-5">A5 –Cross Site Request Forgery (CSRF)</td>
	</tr>
	<tr class="row-7 odd">
		<td class="column-1">6.6.6</td><td class="column-2">Security Misconfiguration<br />
</td><td class="column-3">Good security requires having a secure configuration defined and deployed for the application, frameworks, application server, web server, database server, and platform. All these settings should be defined, implemented, and maintained as many are not shipped with secure defaults. This includes keeping all software up to date, including all code libraries used by the application.<br />
</td><td class="column-4">Not Present</td><td class="column-5">Not Present</td>
	</tr>
	<tr class="row-8 even">
		<td class="column-1">6.6.7</td><td class="column-2">Insecure Cryptographic Storage<br />
</td><td class="column-3">Many web applications do not properly protect sensitive data, such as credit cards, SSNs, and authentication credentials, with appropriate encryption or hashing. Attackers may steal or modify such weakly protected data to conduct identity theft, credit card fraud, or other crimes.<br />
</td><td class="column-4">6.5.8</td><td class="column-5">A8 –Insecure Cryptographic Storage</td>
	</tr>
	<tr class="row-9 odd">
		<td class="column-1">6.6.8</td><td class="column-2">Failure to Restrict URL Access<br />
</td><td class="column-3">Many web applications check URL access rights before rendering protected links and buttons. However, applications need to perform similar access control checks each time these pages are accessed, or attackers will be able to forge URLs to access these hidden pages anyway.<br />
</td><td class="column-4">6.5.10</td><td class="column-5">A10 –Failure to Restrict URL Access</td>
	</tr>
	<tr class="row-10 even">
		<td class="column-1">6.6.9</td><td class="column-2">Insufficient Transport Layer Protection<br />
</td><td class="column-3">Applications frequently fail to authenticate, encrypt, and protect the confidentiality and integrity of sensitive network traffic. When they do, they sometimes support weak algorithms, use expired or invalid certificates, or do not use them correctly.<br />
</td><td class="column-4">6.5.9</td><td class="column-5">A9 –InsecureCommunications</td>
	</tr>
	<tr class="row-11 odd">
		<td class="column-1">6.6.10</td><td class="column-2">Unvalidated Redirects and Forwards<br />
</td><td class="column-3">Web applications frequently redirect and forward users to other pages and websites, and use untrusted data to determine the destination pages. Without proper validation, attackers can redirect victims to phishing or malware sites, or use forwards to access unauthorized pages.<br />
</td><td class="column-4">Not Present</td><td class="column-5">Not Present</td>
	</tr>
</tbody>
</table>

<p>Grab a copy of OWASP Top 10 2010 <a title="here" href="http://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project">here</a></p>
<p><br class="spacer_" /></p>
<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010+-+http://bit.ly/aL4kTi&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;title=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;title=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;t=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;title=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010&amp;summary=As%20per%20PCI%20DSS%2C%20whenever%20a%20new%20version%20of%20OWASP%20Top%2010%20vulnerabilities%20are%20released%2C%20its%20implied%20that%20the%20current%20requirements%20are%20to%20be%20replaced%20with%20the%20latest%20OWASP%20updates.%20Current%20version%20of%20PCI-DSS%20was%20released%20in%20July%202009%20and%20will%20include%20the%20new%20top%2010%20in%20the%20upcoming%20version.%0D%0A%0D%0ADo%20check%20t&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010&amp;du=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;cn=As%20per%20PCI%20DSS%2C%20whenever%20a%20new%20version%20of%20OWASP%20Top%2010%20vulnerabilities%20are%20released%2C%20its%20implied%20that%20the%20current%20requirements%20are%20to%20be%20replaced%20with%20the%20latest%20OWASP%20updates.%20Current%20version%20of%20PCI-DSS%20was%20released%20in%20July%202009%20and%20will%20include%20the%20new%20top%2010%20in%20the%20upcoming%20version.%0D%0A%0D%0ADo%20check%20t" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;title=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010&amp;title=Implied+PCI-DSS+Secure+Apps+Requirement+With+Changes+in+OWASP+2010" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1945&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/implied-pci-dss-secure-apps-requirement-with-changes-in-owasp-2010/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Catch the Phish Before It Catches You!</title>
		<link>http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you</link>
		<comments>http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you#comments</comments>
		<pubDate>Wed, 05 May 2010 16:50:29 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Tips]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[phishing]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1929</guid>
		<description><![CDATA[Phishing techniques are becoming more popular and advanced that some phished sites seems visually challenging to be separated from its genuine counterpart. Read this post about Indian Income Tax phishing site. Take these Phishing quizzes to sharpen your skills to identify the fake sites. 1. Verisign&#8217;s &#8211; Phish No Phish URL: https://www.phish-no-phish.com 2. OnGuard Online [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1929.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Phishing techniques are becoming more popular and advanced that some phished sites seems visually challenging to be separated from its genuine counterpart.</p>
<p>Read <a title="this post" href="http://a4apphack.com/index.php/featured/indian-income-tax-phishing-site">this post</a> about Indian Income Tax phishing site.</p>
<p>Take these <a title="Phishing " href="http://en.wikipedia.org/wiki/Phishing">Phishing</a> quizzes to sharpen your skills to identify the fake sites.</p>
<h3>1. Verisign&#8217;s &#8211; Phish No Phish</h3>
<p><a href="https://www.phish-no-phish.com" title="Phish No Phish"><img class="alignnone" title="Phish No Phish" src="http://img.a4apphack.com/phishquiz-verisign.jpg" alt="Phish No Phish" width="600" height="352" /></a></p>
<p>URL: <a title="Phish No Phish" href="https://www.phish-no-phish.com/default.aspx">https://www.phish-no-phish.com</a></p>
<p><span id="more-1929"></span></p>
<h3>2. OnGuard Online &#8211; Phishing Quiz</h3>
<p><a href="http://www.staysmartonline.gov.au/games-videos/quizzes/flash_listing/quizzes/phishing_quiz/phishing_quiz.html" title="OnGuard Online"><img class="alignnone" title="OnGuard Online" src="http://img.a4apphack.com/phishquiz-staysmartonline.jpg" alt="OnGuard Online" width="600" height="453" /></a></p>
<p>URL: <a title="OnGuard Online" href="http://www.staysmartonline.gov.au/games-videos/quizzes/flash_listing/quizzes/phishing_quiz/phishing_quiz.html">http://www.staysmartonline.gov.au/games-videos/quizzes/flash_listing/quizzes/phishing_quiz/phishing_quiz.html</a></p>
<h3>3. SonicWALL Phishing and Spam IQ Quiz</h3>
<p><a href="http://www.sonicwall.com/phishing/" title="SonicWALL Phishing Quiz"><img class="alignnone" title="SonicWALL Phishing Quiz" src="http://img.a4apphack.com/phishquiz-sonicwall.jpg" alt="SonicWALL Phishing Quiz" width="600" height="639" /></a></p>
<p>URL: <a title="SonicWALL Phishing Quiz" href="http://www.sonicwall.com/phishing/">http://www.sonicwall.com/phishing/</a></p>
<h3>4. Washington Post &#8211; Catch a Phish</h3>
<p><a href="http://www.washingtonpost.com/wp-srv/technology/articles/phishingtest.html" title="Catch a Phish"><img class="alignnone" title="Catch a Phish" src="http://img.a4apphack.com/phishquiz-washingtonpost.jpg" alt="Catch a Phish" width="491" height="522" /></a></p>
<p>URL: <a title="Catch a Phish" href="http://www.washingtonpost.com/wp-srv/technology/articles/phishingtest.html">http://www.washingtonpost.com/wp-srv/technology/articles/phishingtest.html</a></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Catch+the+Phish+Before+It+Catches+You%21+-+http://bit.ly/aUmRyp&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;title=Catch+the+Phish+Before+It+Catches+You%21" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;title=Catch+the+Phish+Before+It+Catches+You%21" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;t=Catch+the+Phish+Before+It+Catches+You%21" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;title=Catch+the+Phish+Before+It+Catches+You%21&amp;summary=Phishing%20techniques%20are%20becoming%20more%20popular%20and%20advanced%20that%20some%20phished%20sites%20seems%20visually%20challenging%20to%20be%20separated%20from%20its%20genuine%20counterpart.%0D%0A%0D%0ARead%20this%20post%20about%20Indian%20Income%20Tax%20phishing%20site.%0D%0A%0D%0ATake%20these%20Phishing%20quizzes%20to%20sharpen%20your%20skills%20to%20identify%20the%20fake%20sites.%0D%0A%0D%0A1.&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Catch+the+Phish+Before+It+Catches+You%21&amp;du=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;cn=Phishing%20techniques%20are%20becoming%20more%20popular%20and%20advanced%20that%20some%20phished%20sites%20seems%20visually%20challenging%20to%20be%20separated%20from%20its%20genuine%20counterpart.%0D%0A%0D%0ARead%20this%20post%20about%20Indian%20Income%20Tax%20phishing%20site.%0D%0A%0D%0ATake%20these%20Phishing%20quizzes%20to%20sharpen%20your%20skills%20to%20identify%20the%20fake%20sites.%0D%0A%0D%0A1." rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;title=Catch+the+Phish+Before+It+Catches+You%21" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you&amp;title=Catch+the+Phish+Before+It+Catches+You%21" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1929&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/security/sec-tips/catch-the-phish-before-it-catches-you/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Running BackTrack Security Distro In VMWare</title>
		<link>http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware</link>
		<comments>http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware#comments</comments>
		<pubDate>Sun, 11 Apr 2010 19:00:11 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[virtualization]]></category>
		<category><![CDATA[vm]]></category>
		<category><![CDATA[youtube]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1807</guid>
		<description><![CDATA[Backtrack is the most popularly used security distro used while during pentests. While we can partition our harddisk, install this OS and dual boot with our default OS; things can be made simpler by running BackTrack VM within our default OS. Using a security distro in a VM gives us few advantages like, portability &#38; ability [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1807.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Backtrack is the most popularly used security distro used while during pentests. While we can partition our harddisk, install this OS and dual boot with our default OS; things can be made simpler by running BackTrack VM within our default OS. Using a security distro in a VM gives us few advantages like, portability &amp; ability to quickly restore/duplicate the instances as required.</p>
<h3>Running Backtrack</h3>
<p>BackTrack4 VM can be downloaded from the backtrack site (link at the end of the post) and to run the VM, we need the free <a title="VMWare Player" href="http://www.vmware.com/go/downloadplayer/">VMWare Player</a>.</p>
<p>Install the VMWare Player and open the BT VM with it. We are good to go with the default configuration unless we have more RAM to spare (Its recommended to provide 512MB of RAM if you have around 2GB).</p>
<div class="wp-caption alignnone" style="width: 567px"><img title="Adjust Backtrack VM RAM" src="http://img.a4apphack.com/backtrack4vm-adjustram.jpg" alt="Adjust Backtrack VM RAM" width="557" height="358" /><p class="wp-caption-text">Adjust Backtrack VM RAM</p></div>
<h3>Default Credentials</h3>
<p>Backtrack VM comes with the default login credentials (which can be changed later, ofcourse)</p>
<blockquote>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;">bt <span style="color: #c20cb9; font-weight: bold;">login</span>:  root
Password:  toor
. . .
root<span style="color: #000000; font-weight: bold;">@</span>bt:~<span style="color: #666666; font-style: italic;">#  startx</span></pre></div></div>

</blockquote>
<p><span id="more-1807"></span></p>
<p>We should be able to see the BackTrack OS up and running by this time. If you face any difficulties with the screen resolution, install/upgrade your <a title="Installing VMware Tools  " href="http://www.vmware.com/support/ws55/doc/new_guest_tools_ws.html">VMWare tools</a>.</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="BackTrack VM Up and Running" href="http://img.a4apphack.com/backtrack4vm-vmrunning.jpg" rel="shadowbox[post-1807];player=img;"><img class=" " title="BackTrack VM Up and Running" src="http://img.a4apphack.com/backtrack4vm-vmrunning.jpg" alt="BackTrack VM Up and Running" width="600" height="340" /></a><p class="wp-caption-text">BackTrack VM Up and Running</p></div>
<h3>Change Default Credentials</h3>
<p>Once the OS is loaded, access the terminal from the taskbar and use the &#8216;passwd&#8217; command to change the password.</p>
<blockquote>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;">bt~<span style="color: #666666; font-style: italic;">#  passwd</span>
bt~<span style="color: #666666; font-style: italic;">#  New Password : ******</span>
bt~<span style="color: #666666; font-style: italic;">#  Re-enter Password: ******</span></pre></div></div>

</blockquote>
<h3>Enable Networking to Access Internet</h3>
<p>Many a times internet might not work at the first shot. If it doesn&#8217;t do as mentioned below.</p>
<ol>
<li>First find out the IP address/Default Gateway of you the HOST PC (Assuming that it&#8217;s an Windows OS, do &#8216;ipconfig&#8217; in DOS Terminal)</li>
<li>Choose any arbitrary IP address, should be in the range of the IP of the host, and ensure that its not used.</li>
<li>In the BackTrack Terminal, type the following commands</li>
</ol>
<blockquote>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;">bt~<span style="color: #666666; font-style: italic;">#  ifconfig eth0 up</span>
bt~<span style="color: #666666; font-style: italic;">#  /etc/init.d/networking start</span></pre></div></div>

</blockquote>
<p>Once you have BackTrack running and Internet enabled, you are all set to use the tools bundled with this OS.</p>
<table id="cft">
  <thead>
  <tr>
    <th colspan="2">Backtrack VM Download Info</th>
  </tr>
  </thead>
  <tbody>
    <tr>
      <td  width="40%">App Name</td>
      <td>Backtrack VM Download</td>
    </tr>
    <tr>
      <td>License</td>
      <td>free</td>
    </tr>
    <tr>
      <td>Type</td>
      <td>OS</td>
    </tr>
    <tr>
      <td>App URL</td>
      <td>
      <a target="_blank" href="http://www.backtrack-linux.org/downloads/" title="Download"><img
 style="" alt="Download"
 src="http://img.a4apphack.com/site/a4apphack-download.png"
 title="Download" witdh="30" height="30"></a></td>
    </tr>
    <tr>
      <td>More Info</td>
      <td> <a href="http://www.backtrack-linux.org">link</a></td>
    </tr>
  </tbody>
</table>

<p>
 </strong> <strong>VMWare Player Download (Free):</strong> <a target="_blank" href="http://www.vmware.com/go/downloadplayer" title="Download"><img style="vertical-align: middle;" height="30" width="30" alt="Download" src="http://img.a4apphack.com/site/a4apphack-download.png" title="Download"/></a></p>
<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Running+BackTrack+Security+Distro+In+VMWare+-+http://bit.ly/bNat7Y&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;title=Running+BackTrack+Security+Distro+In+VMWare" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;title=Running+BackTrack+Security+Distro+In+VMWare" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;t=Running+BackTrack+Security+Distro+In+VMWare" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;title=Running+BackTrack+Security+Distro+In+VMWare&amp;summary=Backtrack%20is%20the%20most%20popularly%20used%20security%20distro%20used%20while%20during%20pentests.%20While%20we%20can%20partition%20our%20harddisk%2C%20install%20this%20OS%20and%20dual%20boot%20with%20our%20default%20OS%3B%20things%20can%20be%20made%20simpler%20by%20running%20BackTrack%20VM%20within%20our%20default%20OS.%20Using%20a%20security%20distro%20in%20a%20VM%20gives%20us%20few%20advantages%20l&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Running+BackTrack+Security+Distro+In+VMWare&amp;du=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;cn=Backtrack%20is%20the%20most%20popularly%20used%20security%20distro%20used%20while%20during%20pentests.%20While%20we%20can%20partition%20our%20harddisk%2C%20install%20this%20OS%20and%20dual%20boot%20with%20our%20default%20OS%3B%20things%20can%20be%20made%20simpler%20by%20running%20BackTrack%20VM%20within%20our%20default%20OS.%20Using%20a%20security%20distro%20in%20a%20VM%20gives%20us%20few%20advantages%20l" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;title=Running+BackTrack+Security+Distro+In+VMWare" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware&amp;title=Running+BackTrack+Security+Distro+In+VMWare" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1807&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/running-backtrack-security-distro-in-vmware/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Googles SkipFish &#8211; Web App Security Scanner</title>
		<link>http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner</link>
		<comments>http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner#comments</comments>
		<pubDate>Mon, 05 Apr 2010 05:48:19 +0000</pubDate>
		<dc:creator>rajivvishwa</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[command]]></category>
		<category><![CDATA[free]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[scan]]></category>
		<category><![CDATA[va]]></category>
		<category><![CDATA[xss]]></category>

		<guid isPermaLink="false">http://a4apphack.com/index.php/?p=1731</guid>
		<description><![CDATA[Skipfish is an interactive sitemap for the targeted site by carrying out a recursive crawl and dictionary-based probes. The resulting map is then annotated with the output from a number of active (but hopefully non-disruptive) security checks. The final report generated by the tool is meant to serve as a foundation for professional web application [...]]]></description>
			<content:encoded><![CDATA[<p><img src='http://a4apphack.com/blog/wp-content/plugins/simple-post-thumbnails/timthumb.php?src=/blog/wp-content/thumbnails/1731.jpg&amp;w=150&amp;h=100&amp;zc=1&amp;ft=png' alt='post thumbnail' /></p>
<p>Skipfish is an interactive sitemap for the targeted site by carrying out a recursive crawl and dictionary-based probes. The resulting map is then annotated with the output from a number of active (but hopefully non-disruptive) security checks. The final report generated by the tool is meant to serve as a foundation for professional web application security assessments.</p>
<h3>Installation on Ubuntu/BackTrack (via <a title="Installing Google Skipfish on Ubuntu/Debian" href="http://www.redspin.com/blog/2010/03/19/installing-google-skipfish-on-ubuntudebian/">Redspin</a>)</h3>
<p>Use the following commands in the terminal windows to install and run Skipfish. Replace OUTPUT_FOLDER and TARGETSITE with the domain name and the target&#8217;s URL respectively. Also change the wget URL to the URL of the latest version of Skipfish download available.</p>

<div class="wp_syntax"><div class="code"><pre class="bash" style="font-family:monospace;"><span style="color: #c20cb9; font-weight: bold;">wget</span> http:<span style="color: #000000; font-weight: bold;">//</span>skipfish.googlecode.com<span style="color: #000000; font-weight: bold;">/</span>files<span style="color: #000000; font-weight: bold;">/</span>skipfish-1.29b.tgz
<span style="color: #c20cb9; font-weight: bold;">tar</span> zxvf skipfish-1.01b.tgz
<span style="color: #c20cb9; font-weight: bold;">sudo</span> <span style="color: #c20cb9; font-weight: bold;">apt-get</span> <span style="color: #c20cb9; font-weight: bold;">install</span> libidn11-dev
<span style="color: #7a0874; font-weight: bold;">cd</span> skipfish
<span style="color: #c20cb9; font-weight: bold;">make</span>
<span style="color: #c20cb9; font-weight: bold;">cp</span> dictionaries<span style="color: #000000; font-weight: bold;">/</span>default.wl skipfish.wl
.<span style="color: #000000; font-weight: bold;">/</span>skipfish <span style="color: #660033;">-o</span> OUTPUT_FOLDER http:<span style="color: #000000; font-weight: bold;">//</span>www.TARGETSITE.com</pre></div></div>

<h3>Trial Run</h3>
<p>Installed SkipFish and ran on the target site, specs below.</p>
<p style="padding-left: 30px;"><strong>Guest OS :</strong> <a title="Backtrack 4 VM Download" href="http://www.backtrack-linux.org/downloads/">BackTrack4 VM </a></p>
<p style="padding-left: 30px;"><strong>Host OS : </strong>Windows Vista</p>
<p style="padding-left: 30px;"><strong>RAM :</strong> 512MB</p>
<p style="padding-left: 30px;"><strong>Application Size : </strong>Medium ( < 1000 Unique Pages )</p>
<p style="padding-left: 30px;"><strong>Internet Speed : </strong>1 MBPS</p>
<h3>Skipfish Verbose</h3>
<p>Skipfish displays the scan run statistics continuously during the run. Once the scan run is complete, we get to see the scan summary (shown in the below screenshot).</p>
<div class="wp-caption alignnone" style="width: 610px"><a title="Skipfish Running" href="http://img.a4apphack.com/skipfish-scan.jpg" rel="shadowbox[post-1731];player=img;"><img class=" " title="Skipfish Running" src="http://img.a4apphack.com/skipfish-scan.jpg" alt="Skipfish Running" width="600" height="398" /></a><p class="wp-caption-text">Skipfish Console (Click to Enlarge)</p></div>
<p><br class="spacer_" /></p>
<p><span id="more-1731"></span></p>
<h3>Scan Output</h3>
<p>Once the scan is complete, results are saved in HTML format. Its a simple tree interface that displays the details of the vulnerability along with the HTTP Header trace for each request.</p>
<p><strong>NOTE:</strong> The target application which was used to test the application is a custom and private application and has been removed from the server. Please do not run scanner on any of the domains you dont own.</p>
<div class="wp-caption alignnone" style="width: 610px"><a href="http://img.a4apphack.com/skipfish-report.jpg" rel="shadowbox[post-1731];player=img;" title="Skipfish Scanner"><img title="Skipfish Scanner" src="http://img.a4apphack.com/skipfish-report.jpg" alt="Skipfish Scanner" width="600" height="512" /></a><p class="wp-caption-text">Skipfish Scan Report (Click to Enlarge)</p></div>
<p><strong>Observations</strong><br class="spacer_" /></p>
<ul>
<li>Installation and setup is super easy.</li>
<li>Definitely not a heavy weight, memory hogging scanner.</li>
<li>Did not find some of the basic vulnerabilities other scanners had found.</li>
<li>Scan ran for ~14hours for that medium sized app.</li>
</ul>
<h3>Features</h3>
<ul>
<li><strong>High speed</strong>: pure C code, highly optimized HTTP handling, minimal CPU footprint &#8211; easily achieving 2000 requests per second with responsive targets. </li>
</ul>
<ul>
<li><strong>Ease of use</strong>: heuristics to support a variety of quirky web frameworks and mixed-technology sites, with automatic learning capabilities, on-the-fly wordlist creation, and form autocompletion. </li>
</ul>
<ul>
<li><strong>Cutting-edge security logic</strong>: high quality, low false positive, differential security checks, capable of spotting a range of subtle flaws, including blind injection vectors. </li>
</ul>
<p>The tool is believed to support Linux, FreeBSD 7.0+, MacOS X, and Windows (Cygwin) environments.</p>
<p><br class="spacer_" /></p>
<p><strong>List of High and Medium Vulnerabilities Skipfish Attempts to Identify</strong></p>
<p>A rough list of the security checks, for High and Medium vulnerabilties, offered by the tool is outlined below.</p>
<ul>
<li>High risk flaws (potentially leading to system      compromise):
<ul>
<li>Server-side SQL injection (including blind vectors,       numerical parameters). </li>
<li>Explicit SQL-like syntax in GET or POST parameters. </li>
<li>Server-side shell command injection (including blind       vectors). </li>
<li>Server-side XML / XPath injection (including blind       vectors). </li>
<li>Format string vulnerabilities. </li>
<li>Integer overflow vulnerabilities. </li>
<li>Locations accepting HTTP PUT. </li>
</ul>
</li>
</ul>
<ul>
<li>Medium risk flaws (potentially leading to data      compromise):
<ul>
<li>Stored and reflected XSS vectors in document body       (minimal JS XSS support present). </li>
<li>Stored and reflected XSS vectors via HTTP redirects. </li>
<li>Stored and reflected XSS vectors via HTTP header       splitting. </li>
<li>Directory traversal (including constrained vectors). </li>
<li>Assorted file POIs (server-side sources, configs,       etc). </li>
<li>Attacker-supplied script and CSS inclusion vectors       (stored and reflected). </li>
<li>External untrusted script and CSS inclusion vectors. </li>
<li>Mixed content problems on script and CSS resources       (optional). </li>
<li>Incorrect or missing MIME types on renderables. </li>
<li>Generic MIME types on renderables. </li>
<li>Incorrect or missing charsets on renderables. </li>
<li>Conflicting MIME / charset info on renderables. </li>
<li>Bad caching directives on cookie setting       responses. </li>
</ul>
</li>
</ul>
<p><!-- p>Read the detailed documentation on Skipfish, <a title="Skipfish Documentation" href="http://code.google.com/p/skipfish/wiki/SkipfishDoc">here</a>.</p>
<p><a href="http://code.google.com/p/skipfish" title="Get Skipfish "><img class=" alignnone" title="Get Skipfish " src="http://img.a4apphack.com/skipfish-logo.jpg" alt="Get Skipfish " width="218" height="103" /></a></p>
<p><br class="spacer_" /></p -->
<table id="cft">
  <thead>
  <tr>
    <th colspan="2">Google Skipfish Info</th>
  </tr>
  </thead>
  <tbody>
    <tr>
      <td  width="40%">App Name</td>
      <td>Google Skipfish</td>
    </tr>
    <tr>
      <td>License</td>
      <td>free</td>
    </tr>
    <tr>
      <td>Type</td>
      <td>code</td>
    </tr>
    <tr>
      <td>App URL</td>
      <td>
      <a target="_blank" href="http://code.google.com/p/skipfish/" title="Download"><img
 style="" alt="Download"
 src="http://img.a4apphack.com/site/a4apphack-download.png"
 title="Download" witdh="30" height="30"></a></td>
    </tr>
    <tr>
      <td>More Info</td>
      <td> <a href="http://code.google.com/p/skipfish/wiki/SkipfishDoc">link</a></td>
    </tr>
  </tbody>
</table>
</p>
<p><br class="spacer_" /></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-shr">
<ul class="socials">
		<li class="shr-twitter">
			<a href="http://twitter.com/home?status=Googles+SkipFish+-+Web+App+Security+Scanner+-+http://bit.ly/93CXCu&amp;source=shareaholic" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
		<li class="shr-digg">
			<a href="http://digg.com/submit?phase=2&amp;url=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;title=Googles+SkipFish+-+Web+App+Security+Scanner" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-reddit">
			<a href="http://reddit.com/submit?url=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;title=Googles+SkipFish+-+Web+App+Security+Scanner" rel="nofollow" class="external" title="Share this on Reddit">Share this on Reddit</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.facebook.com/share.php?v=4&amp;src=bm&amp;u=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;t=Googles+SkipFish+-+Web+App+Security+Scanner" rel="nofollow" class="external" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-linkedin">
			<a href="http://www.linkedin.com/shareArticle?mini=true&amp;url=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;title=Googles+SkipFish+-+Web+App+Security+Scanner&amp;summary=Skipfish%20is%20an%20interactive%20sitemap%20for%20the%20targeted%20site%20by%20carrying%20out%20a%20recursive%20crawl%20and%20dictionary-based%20probes.%20The%20resulting%20map%20is%20then%20annotated%20with%20the%20output%20from%20a%20number%20of%20active%20%28but%20hopefully%20non-disruptive%29%20security%20checks.%20The%20final%20report%20generated%20by%20the%20tool%20is%20meant%20to%20serve&amp;source=a4apphack" rel="nofollow" class="external" title="Share this on LinkedIn">Share this on LinkedIn</a>
		</li>
		<li class="shr-orkut">
			<a href="http://promote.orkut.com/preview?nt=orkut.com&amp;tt=Googles+SkipFish+-+Web+App+Security+Scanner&amp;du=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;cn=Skipfish%20is%20an%20interactive%20sitemap%20for%20the%20targeted%20site%20by%20carrying%20out%20a%20recursive%20crawl%20and%20dictionary-based%20probes.%20The%20resulting%20map%20is%20then%20annotated%20with%20the%20output%20from%20a%20number%20of%20active%20%28but%20hopefully%20non-disruptive%29%20security%20checks.%20The%20final%20report%20generated%20by%20the%20tool%20is%20meant%20to%20serve" rel="nofollow" class="external" title="Promote this on Orkut">Promote this on Orkut</a>
		</li>
		<li class="shr-delicious">
			<a href="http://delicious.com/post?url=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;title=Googles+SkipFish+-+Web+App+Security+Scanner" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-googlebuzz">
			<a href="http://www.google.com/buzz/post?url=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;imageurl=" rel="nofollow" class="external" title="Post on Google Buzz">Post on Google Buzz</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.stumbleupon.com/submit?url=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner&amp;title=Googles+SkipFish+-+Web+App+Security+Scanner" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://technorati.com/faves?add=http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
</ul>
<div style="clear:both;"></div>
</div>

<img src="http://a4apphack.com/blog/?ak_action=api_record_view&id=1731&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://a4apphack.com/featured/googles-skipfish-web-app-security-scanner/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (enhanced) (request URI is rejected)

Served from: a4apphack.com @ 2010-09-08 01:03:58 -->