The Latest in IT Security

Posts Tagged ‘Cross-site Scripting’

Security researchers from High-Tech Bridge have identified a number of security issues on the official website of the World Economic Forum (WEF), the organization whose members are meeting these days in Davos, Switzerland. Initially, experts found a cross-site scripting (XSS) vulnerability on a subdomain. Later, they identified a couple of other XSS flaws on the […]

Read more ...

Invision Power Services has released patches to address a cross-site scripting (XSS) vulnerability in IP.Gallery 4.2.1 and 5.05. The XSS security hole is related to Shockwave Flash (SWF) file uploads. Because SWF files allow arbitrary script to execute within the context of the site they are hosted on, we are releasing a patch today which […]

Read more ...

Security researcher Egor Homakov has identified a couple of vulnerabilities on the website of Mt.Gox, one of the worlds largest Bitcoin exchange services, that could have been exploited to hijack user accounts. The expert says that his exploit leveraged a cross-site scripting (XSS) vulnerability in payments.mtgox.com, which he found in a matter of 5 minutes. […]

Read more ...


Categories

FRIDAY, APRIL 18, 2025
WHITE PAPERS

Mission-Critical Broadband – Why Governments Should Partner with Commercial Operators:
Many governments embrace mobile network operator (MNO) networks as ...

ARA at Scale: How to Choose a Solution That Grows With Your Needs:
Application release automation (ARA) tools enable best practices in...

The Multi-Model Database:
Part of the “new normal” where data and cloud applications are ...

Featured

Archives

Latest Comments