Waraxe IT Security Portal
Login or Register
November 3, 2025
Menu
Home
Logout
Discussions
Forums
Members List
IRC chat
Tools
Base64 coder
MD5 hash
CRC32 checksum
ROT13 coder
SHA-1 hash
URL-decoder
Sql Char Encoder
Affiliates
y3dips ITsec
Md5 Cracker
User Manuals
AlbumNow
Content
Content
Sections
FAQ
Top
Info
Feedback
Recommend Us
Search
Journal
Your Account
User Info
Welcome, Anonymous
Nickname
Password
(Register)

Membership:
Latest: MichaelSnaRe
New Today: 0
New Yesterday: 0
Overall: 9144

People Online:
Visitors: 127
Members: 0
Total: 127
Full disclosure
SEC Consult SA-20251029-0 :: Unprotected NFC card manipulation leading to free top-up in GiroWeb Cashless Catering Solutions (only legacy customer infrastructure)
Re: [FD]: "Glass Cage" – Zero-Click iMessage ? Persistent iOS Compromise + Bricking (CVE-2025-24085 / 24201, CNVD-2025-07885)
Re: : "Glass Cage" – Zero-Click iMessage ? Persistent iOS Compromise + Bricking (CVE-2025-24085 / 24201, CNVD-2025-07885)
Dovecot CVE-2025-30189: Auth cache causes access to wrongaccount
SEC Consult SA-20251027-0 :: Unauthenticated Local File Disclosure in MPDV Mikrolab MIP 2 / FEDRA 2 / HYDRA X Manufacturing Execution System #CVE-2025-12055
Stored Cross-Site Scripting (XSS) via SVG File Upload -totaljsv5013
Stored HTML Injection - Layout Functionality - totaljsv5013
Stored Cross-Site Scripting (XSS) - Layout Functionality -totaljsv5013
Current Password not Required When Changing Password -totaljsv5013
Re: [FD]: "Glass Cage" – Zero-Click iMessage ? Persistent iOS Compromise + Bricking (CVE-2025-24085 / 24201, CNVD-2025-07885)
Struts2 and Related Framework Array/Collection DoS
[REVIVE-SA-2025-002] Revive Adserver Vulnerability
[REVIVE-SA-2025-001] Revive Adserver Vulnerability
SEC Consult SA-20251021-0 :: Multiple Vulnerabilities in EfficientLab WorkExaminer Professional (CVE-2025-10639, CVE-2025-10640, CVE-2025-10641)
[SYSS-2025-017]: Verbatim Store 'n' Go Secure Portable HDD (security update v1.0.0.6) - Offline brute-force attack
Log in Register Forum FAQ Memberlist Search
IT Security and Insecurity Portal

www.waraxe.us Forum Index
Search found 25 matches
Flash tag
PostForum:PhpBB Posted: Sun May 04, 2008 10:00 am Subject: Flash tag
shmk
Replies: 2
Views: 8137




No reply means that is it quite secure? Cool
Flash tag
PostForum:PhpBB Posted: Sun Apr 27, 2008 9:24 am Subject: Flash tag
shmk
Replies: 2
Views: 8137




I'm thinking to add a TAG that allow to insert swf in posts.

I'm not a flash expert so...
swf files can cause serious security holes in a php system? (retrive cookies, inject something bad, get an ...
DOM XSS
PostForum:Cross-site scripting aka XSS Posted: Sat Jan 19, 2008 9:13 pm Subject: DOM XSS
shmk
Replies: 1
Views: 12018




I heard people talking about DOM XSS that instead of inserting jscript in the page code use hole in the javascript using DOM inserted in the page.

Is it possible?
How does it function?
What kind ...
Link in forum
PostForum:Php Posted: Mon Jan 14, 2008 9:51 pm Subject: Link in forum
shmk
Replies: 6
Views: 13663




Attacker can first place normal picture to remote server and then post img link to it. This will pass all security tests and posting will be allowed. After that attacker just changes original image on ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 3:02 pm Subject: Link in forum
shmk
Replies: 6
Views: 13663




Anti-CSRF measures with random token or even with CAPTCHA (for critical requests) are very effective by my personal experience. So if you have securely written code with no potential CSRF threats, the ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 1:42 pm Subject: Link in forum
shmk
Replies: 6
Views: 13663




It's always possible to fool the security filters. Attacker can first place normal picture to remote server and then post img link to it. This will pass all security tests and posting will be allowed. ...
Link in forum
PostForum:Php Posted: Sun Jan 13, 2008 9:54 am Subject: Link in forum
shmk
Replies: 6
Views: 13663




What's the most secure PHP filter that allow users to insert links to sites or images in a forum without flaws in security? (regarding xss and csrf overall)
WYSIWYG are secure ?
PostForum:PhpNuke Posted: Tue Sep 14, 2004 4:49 pm Subject: WYSIWYG are secure ?
shmk
Replies: 4
Views: 14306




So I can install it without fear ? Confused
WYSIWYG are secure ?
PostForum:PhpNuke Posted: Thu Sep 09, 2004 9:10 am Subject: WYSIWYG are secure ?
shmk
Replies: 4
Views: 14306




I have heard on net that use a WYSIWYG make big holes in security... is all true ?

I have found this 2:
http://www.phpnuker.de/ (using FCKEditor)
http://www.kodetech.com/nuke70/ (using Spaw)

C ...
Who is JackFromWales4u2?
PostForum:PhpNuke Posted: Thu Sep 09, 2004 8:59 am Subject: Re: Who is JackFromWales4u2?
shmk
Replies: 8
Views: 15790




I then ran a JackFromWales4u218600 Shocked

Now the sites are 44300 Shocked
Protect varchar(255)
PostForum:Php Posted: Wed Sep 01, 2004 10:02 am Subject: Protect varchar(255)
shmk
Replies: 16
Views: 35615




I'm back !

Is possible echo smiles without make some security holes ?

To echo smiles i made this piece of code but I think is not so secure Confused Rolling Eyes Confused

$sqlsm = "SELECT code, smile_ ...
Really Nice Drop-Down Menu
PostForum:Javascript Posted: Tue Aug 10, 2004 1:20 pm Subject: Really Nice Drop-Down Menu
shmk
Replies: 1
Views: 10611




I have found a nice dropdown menu here

http://www.destroydrop.com/javascripts/tree/

I'm not a specialist in Java security, so if someone will find some security hole in this script please warnin ...
Protect varchar(255)
PostForum:Php Posted: Tue Aug 03, 2004 9:32 pm Subject: Protect varchar(255)
shmk
Replies: 16
Views: 35615




Thx again... saturday i'll leave for a 2 weeks holiday so I don't disturbe you no more Razz

Good Holiday Very Happy
Protect varchar(255)
PostForum:Php Posted: Tue Aug 03, 2004 9:27 am Subject: Protect varchar(255)
shmk
Replies: 16
Views: 35615




Confused after all this I have a REALLY stupid question (come in my mind after see some PHPNuke module)... Confused

Variable taked from database but not used later for sql INSERT or SELECT (only "echo" on pa ...
-=LOGO COMPETITION!=-
PostForum:General discussion Posted: Mon Aug 02, 2004 9:49 pm Subject: -=LOGO COMPETITION!=-
shmk
Replies: 21
Views: 42256




too late the competition is over

Doh ! Exclamation
Page 1 of 2 Goto page 1, 2Next
All times are GMT


Powered by phpBB © 2001-2008 phpBB Group



PCWizardHub - Helping you fix, build, and optimize your PC life
All logos and trademarks in this site are property of their respective owner. The comments and posts are property of their posters, all the rest (c) 2004-2024 Janek Vind "waraxe"
Page Generation: 0.064 Seconds