posted Dec 23rd 2008 6:00am by
Eliot Phillips
filed under:
downloads hacks,
news,
security hacks

Until midnight tonight, you can download a free copy of the 1/2008 issue of security magazine hackin9. It’s 84pages, 10.5MB, and requires you to provide an email address they don’t verify.
[via TaoSecurity]
posted Jun 24th 2008 9:15pm by
Eliot Phillips
filed under:
security hacks
Scrawlr is the latest tool to come out of HP’s Web Security Research Group. It was built in response to the massive number of SQL injection attacks happening on the web this year. Most of these vulnerable sites are found through googling, so Scrawlr works the same way. Point it at your web server and it will crawl all of the pages and evaluate the URL parameters to see if they’re vulnerable to verbose injection. It reports the SQL server and table names if it comes across anything.
It only supports 1500 pages right now and can’t do authentication or blind injection. It’s still a free tool and a great way to identify if your site is vulnerable to automated tools finding you website via search engines.
[via Acidus]
posted Jun 21st 2008 12:40am by
Eliot Phillips
filed under:
misc hacks