Blogs about: Research Custom

Featured Blog

MuWeb 0.8 Sql Injection4 comments

dblackshell wrote 1 month ago: The other day I saw in search engine terms in my stats page (i usually look at it cause I’m tr … more →

Tags: HOW TO?, muweb, SQL Injection

JS Judo + XSS + CSRF = Pwnage

dblackshell wrote 1 month ago: …an excellent breeding environment for an XSS worm… What is an XSS worm? Wikipedia An … more →

Tags: (in)secure - code, HOW TO?, CSRF, js judo, XSS, xss worm

woot free shells

dblackshell wrote 3 months ago: In the last period I was surfing around for free *nix shells, sadly very few have been found! And no … more →

Tags: free shells, Unix

Got new bait?1 comment

dblackshell wrote 4 months ago: Maybe this is something already used (no wondering about it), but it’s worth mentioning… … more →

Tags: (in)secure - code, dns, Hosts File, Phishing, Privacy, Spoof

mailbombing - a myth or a legend

dblackshell wrote 4 months ago: Yes… those where the times… I don’t know how many of you where in the mailbombing … more →

Tags: mailBomb, mailflood, Yahoo, Gmail

new fashion, new ways (or not)1 comment

dblackshell wrote 7 months ago: Some time ago when I posted I Love CSRF (XSRF) fazed invited me to do a presentation on CSRF attack … more →

Tags: (in)secure - code, Anti, check, CSRF, protection, referer

Cmd Code Audit (Skavenger)3 comments

dblackshell wrote 10 months ago: This is going to be a quick how-to audit source code under a windows environment without having inst … more →

Tags: HOW TO?, php, Windows, Audit, skavenger, source, Code, Console

Source code audit - PHP5 comments

dblackshell wrote 10 months ago: What source code audit is? It’s a primary technique by which someone can find vulnerabilities … more →

Tags: (in)secure - code, HOW TO?, $http_get_vars, $http_post_vars, $_cookie, $_GET, $_POST, $_request, $_server

Making it harder (Session Hijacking)1 comment

dblackshell wrote 11 months ago: This is basically an idea that came to me a while ago while got over a XSS vulnerable website, on wh … more →

Tags: Cookie, hijacking, Session, sid, stealing, XSS

XSS MuWeb3 comments

dblackshell wrote 11 months ago: Very often when got nothing to do, I put my thoughts on how to better secure a website/server (it de … more →

Tags: (in)secure - code, Cookie, MMORPG, MU, muweb, Online, stealing, XSS

rudimentary anti-x(ross)s(ite)s(cripting)1 comment

dblackshell wrote 1 year ago: Why the following piece of code I will present is because not many people sanitize properly user inp … more →

Tags: (in)secure - code, XSS, Anti, Security

Proxy's for fun and anonymity - vol. 21 comment

dblackshell wrote 1 year ago: In this second “volume” we will discus raw HTTP/SSL tunneling… hope you’ll l … more →

Tags: HOW TO?, proxy, putty, Raw, ssl, Tunnel

Proxy's for fun and anonymity - vol. 12 comments

dblackshell wrote 1 year ago: Oh no proxy related material! Yeah I know that the world is full of proxies, but this ain’t go … more →

Tags: HOW TO?, proxy, Tunnel, HTTP, proxy checker


Have your say. Start a blog.

See our free features →

Related Tags
All →

Follow this tag via RSS

Find other items tagged with “research-custom”:
Technorati Del.icio.us IceRocket