As found on the web (June 3rd)

frank liked 2 videos. frank shared Content Security Policy 1.0 lands in Firefox Aurora. Content Security Policy 1.0 lands in Firefox Aurora frank shared Music from Our Tube; Stromae as modern Jacques Brel. Music from Our Tube; Stromae as modern Jacques Brel frank shared Gevaar; extra GAS-vorming vergiftigt samenleving. Gevaar; extra GAS-vorming vergiftigt samenleving frank … Read more

Dude, where’s my WordPress session?

WordPress is a favourite hackers target. Some say that is because it is inherently insecure, but in reality WordPress is mainly a target because of its popularity, because of people not keeping their installations up to date or using easy to guess usernames and passwords and because of vulnerabilities in plugins rather then WordPress itself. … Read more

WP Caching plugin vulnerability debrief

Now that both WP Super Cache and W3 Total Cache developers have released a new version of their respective plugins (upgrade first, continue reading after) it seems time for a small “post mortem“. The problem was in the interpretation of dynamic snippets, that are contained inside a number of specific HTML-comment tags. These snippets allow … Read more

WP Safer Cache: stopgap for WordPress Cache plugins vulnerability

[UPDATE April 18th 2013: this vulnerability has been fixed in both WP Super Cache and W3 Total Cache. You can find more information in this “post mortem” blogpost] [UPDATE April 11th to reflect that WP Super Cache version 1.3 fixed this issue] There was a pretty severe vulnerability in WordPress installations that had WP Super … Read more

As found on the web (March 25th)

frank shared On WordPress GET floods, plugin fingerprinting & keeping safe. On WordPress GET floods, plugin fingerprinting & keeping safe frank shared Lock Screen Security Hole Found On Some Android-Powered Samsung Galaxy Phones. Lock Screen Security Hole Found On Some Android-Powered Samsung Galaxy Phones frank liked World Party – Is It Like Today (Live on … Read more