Monday, March 28, 2011

XSS attack on CIA (Central Itelligence Agency) Website by lionaneesh

XSS attack on CIA (Central Itelligence Agency) Website by lionaneesh


After Ddos attack on CIA (Central Itelligence Agency) website by Lulzsec, lionaneesh, an Indian hacker have found XSS Vulnerability on same site as shown. The Vulnerabile link is here . You can join Loinaneesh on Twitter.

Sunday, March 20, 2011

Hacking Web Servers : Top Scan Method | Ethical Hacking



 Hacking Web Servers : Top Scan Method | Ethical Hacking

This method will scan the web server for the top 20 vulnerabilities list published by SANS/FBI (www.sans.org)

Hacking Tool: WebInspect
  • WebInspect is an impressive Web server and application-level vulnerability scanner which scans over 1500 known attacks.
  • It checks site contents and analyzes for rudimentary application-issues like smart guesswork checks, password guessing, parameter passing, and hidden parameter checks.
  • It can analyze a basic Webserver in 4 minutes cataloging over 1500 HTML pages