Author Archives: The Vigilant Application Owner

GitHub Forced To Diable Search After Exposing Private SSH Keys


January 25, 2013 By The Vigilant Application Owner

Softpedia – (International) GitHub forced to disable search after exposing private SSH keys. GitHub disabled its new search function after it returned results that included private Secure Shell (SSH) keys used by several Web sites.

Source: http://news.softpedia.com/news/GitHub-Forced-to-Disable-Search-After-Exposing-Private-SSH-Keys-324200.shtml

Web Server Hackers Install Rogue Apache Modules And SSH Backdoors, Researchers Say


January 24, 2013 By The Vigilant Application Owner

IDG News Service – (International) Web server hackers install rogue Apache modules and SSH backdoors, researchers say. Researchers from Securi reported that a group of attackers using rogue Apache modules has been replacing Secure Shell (SSH) binary files in compromised servers with backdoored versions that collect user information and passwords from incoming and outgoing SSH connections.

Source: http://www.networkworld.com/news/2013/012413-web-server-hackers-install-rogue-266121.html

Backdoors Found In Barracuda Networks Gear


By The Vigilant Application Owner

Krebs on Security – (International) Backdoors found in Barracuda Networks gear. Various spam filters, firewalls, and VPN appliances sold by Barracuda Networks contain undocumented backdoor accounts that could be remotely accessed via secure shell (SSH) and are accessible to hundreds of non-Barracuda companies, the vendor acknowledged.

Source: http://krebsonsecurity.com/2013/01/backdoors-found-in-barracuda-networks-gear/

Security Flaws Leave Networked Printers Open To Attack


January 23, 2013 By The Vigilant Application Owner

InformationWeek – (International) Security flaws leave networked printers open to attack. A security researcher discovered flaws in Hewlitt-Packard’s JetDirect printer networking software which can be used to bypass security controls, disable printers, or reprint previous documents.

Source: http://www.informationweek.com/security/vulnerabilities/security-flaws-leave-networked-printers/240146805

PayPal Addesses Blind SQL Injection Vulnerability After Being Notified By Experts


January 22, 2013 By The Vigilant Application Owner

Softpedia – (International) PayPal addresses blind SQL injection vulnerability after being notified by experts. About 5 months after being notified by cyber security experts, PayPal has fixed a security flaw on their Web site which was vulnerable to a Blind SQL Injection.

Source: http://news.softpedia.com/news/PayPal-Addresses-Blind-SQL-Injection-Vulnerability-After-Being-Notified-by-Experts-323053.shtml