Microsoft Advance Notification for May 2013

There will be ten bulletins released by Microsoft next Tuesday and one of those should be for the ...

Read More

Alina: Casting a Shadow on POS

Over the pastfew months, a number of malware families targeting Point of Sale (POS) systems have ...

Read More

Mayday! 0-Day

While many workers around the world were celebrating the May 1st events, the US Department of Labor ...

Read More

SpiderLabs Radio May 3, 2013 w/ Space Rogue

This week's episode of SpiderLabs Radio hosted by Space Rogue covers Living Social, Reputation.com, ...

Read More

XML External Entity (XXE) Execution Disabled in ModSecurity v2.7.3

On February 27, 2013, the ModSecurity project team was notified by security researchers from ...

Read More

SpiderLabs Radio April 26, 2013 w/ Space Rogue

This week's episode of SpiderLabs Radio hosted by Space Rogue covers HostGator, Twitter, SPAMHaus, ...

Read More

Basic Packers: Easy As Pie

Throughout Trustwave SpiderLabs' many forensicinvestigations, we often stumble upon malicious ...

Read More

Accidental Stored XSS Flaw in Zemanta 'Related Posts' Plugin for TypePad

Note that the vulnerability described here was fixed by Zemanta.

Read More

SpiderLabs Radio April 19, 2013 w/ Space Rogue

This week's episode of SpiderLabs Radio hosted by Space Rogue covers Schnucks, Linode, Pirate Bay, ...

Read More

Cracking IKE Mission:Improbable (Part 2)

A couple of weeks ago I posted Part 1 of Cracking IKE, detailing some useful techniques when ...

Read More

Java is So Confusing...

It's been a short while, but we find ourselves again with a Java vulnerability in our hands, this ...

Read More

Large scale malicious spam campaign exploiting Boston bombing

In our latest Global Security Report, we noted malicious spam campaigns were on the increase, and ...

Read More

Me Myself and I, Robot

Growing up I read every book my library had to offer by Jules Verne and Isaac Asimov. These and ...

Read More

Defending WordPress Logins from Brute Force Attacks

As has been reported by many news outlets , WordPress login pages have been under a heavy brute ...

Read More

SpiderLabs Radio April 12, 2013 w/ Space Rogue

This week's episode of SpiderLabs Radio hosted by Space Rogue covers OpIsreal, Anon AUS, LulzSec, 6 ...

Read More

Microsoft Recalls Update

Microsoft has recalled part of an update that was release earlier this week as part of April's ...

Read More

Restricting Adobe CQ Admin Logins with Trustwave WAFs

One of the many useful features of a web application firewall (WAF) is its ability to add on ...

Read More

Ransomware Author 3's Farm Animals

As security researchers, our virtual journey in revealing new threats on the web is never-ending. ...

Read More

Microsoft Patch Tuesday, April 2013

This month we have nine bulletins, two critical covering just fourteen CVEs. The critical bulletins ...

Read More

SpiderLabs Radio April 5, 2013 w/ Space Rogue

This week's episode of SpiderLabs Radio hosted by Space Rogue covers Carberp, WarZ, Japan, Exp0sed ...

Read More

ModSecurity User Survey 2013

The ModSecurity web application firewall project has grown a lot in the past year including, ...

Read More

Web Application Defender's Cookbook: CCDC Blue Team Cheatsheet

Trustwave is a corporate sponsor of the National Collegiate Cyber Defense Competition (CCDC) where ...

Read More

Microsoft Advance Notification for April 2013

Ah, April, for most of us the weather is turning warm, birds return to their trees, flowers start ...

Read More

Jamming With WordPress Sessions

Let's talk about some targeted attacks where session management can be targeted to side step multi ...

Read More

Breaking the Authentication Chain

This little post is going to talk about how authentication goes beyond just usernames and passwords.

Read More

SpiderLabs Radio March 29, 2013 w/ Space Rogue

This week's episode of SpiderLabs Radio hosted by Space Rogue covers OMG DDoS Nukes Take out Net!, ...

Read More

Cracking IKE Mission:Improbable (Part 1)

All too often during pen tests I still find VPN endpoints configured to allow insecure Aggressive ...

Read More

Hooked on Packets: Reading PCAPs for D Students - Preview

SOURCE Boston is coming up in April, and Mike Ryan and I are giving a presentation about making ...

Read More