<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Attack-Secure.com</title>
	<atom:link href="http://Attack-Secure.com/index.php/feed/" rel="self" type="application/rss+xml" />
	<link>http://Attack-Secure.com</link>
	<description>Real Word Security Training</description>
	<lastBuildDate>Fri, 03 May 2013 01:47:06 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
		<item>
		<title>Attack-Secure and Google donated to Children&#8217;s Cancer Hospital Egypt</title>
		<link>http://Attack-Secure.com/index.php/attack-secure-and-google-donated-to-childrens-cancer-hospital-egypt/</link>
		<comments>http://Attack-Secure.com/index.php/attack-secure-and-google-donated-to-childrens-cancer-hospital-egypt/#comments</comments>
		<pubDate>Sun, 28 Apr 2013 14:35:19 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33218</guid>
		<description><![CDATA[Hi Everyone, we are very happy to tell you that Attack-Secure and Google Donated $200 USD for Children&#8217;s Cancer Hospital Egypt to help and support children who have cancer &#160; we found reflected XSS in zagat.com and reported it to google and they awarded us with $100 USD    Attack-Secure donated with $100 USD Google Donated ...]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">Hi Everyone,</span></p>
<p><span style="font-size: 18px;">we are very happy to tell you that Attack-Secure and Google Donated $200 USD for Children&#8217;s Cancer Hospital Egypt to help and support children who have cancer</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">we found reflected XSS in zagat.com and reported it to <a href="http://attack-secure.com/index.php/we-got-listed-2-times-in-google-hall-of-fame/">google and they awarded us with $100 USD </a></span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 16px;">Attack-Secure donated with $100 USD</span></p>
<p><span style="font-size: 16px;">Google Donated with $100 USD</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Screenshot of Attack-Secure and Google Payment to Children&#8217;s Cancer Hospital Egypt:</span></p>
<p>&nbsp;</p>
<p><a href="http://Attack-Secure.com/wp-content/uploads/2013/04/2013-04-28_16-18-04.png"><img class="alignnone size-full wp-image-33219" alt="2013-04-28_16-18-04" src="http://Attack-Secure.com/wp-content/uploads/2013/04/2013-04-28_16-18-04.png" width="818" height="1018" /></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><span style="font-size: 20px;">NOW, it is your turn to help and support those children who have cancer</span></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><img class="alignnone" alt="" src="http://www.proudlyafrican.info/uploads/images/0-0000%2057357-80%20ahly.jpg" width="1572" height="1181" /></p>
<p>&nbsp;</p>
<p style="text-align: center;"><span style="font-size: 16px;"> <strong>“We can’t help everyone, but everyone can help someone.” Ronald Reagan</strong></span></p>
<p><span style="font-size: 18px;">Here is the URL to make donations:  <a href="http://beta.57357.com/category/donation/">http://beta.57357.com/category/donation/</a></span></p>
<p>&nbsp;</p>
<div class="divider" style="margin-top:0;margin-bottom:0"></div>
<p><span style="font-size: 18px;"><strong><span style="color: #ff0000;">TIP : We Offer 50% DISCOUNT on all course plans with this code ( 57357 ) , this offer ends in 7/5/2013</span></strong></span></p>
<div class="divider" style="margin-top:0;margin-bottom:0"></div>
<div id='countdown-517d3373e2997'></div>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/attack-secure-and-google-donated-to-childrens-cancer-hospital-egypt/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>101 things you can do to become a better Hacker&#8230;</title>
		<link>http://Attack-Secure.com/index.php/101-things-you-can-do-to-become-a-better-hacker/</link>
		<comments>http://Attack-Secure.com/index.php/101-things-you-can-do-to-become-a-better-hacker/#comments</comments>
		<pubDate>Thu, 25 Apr 2013 14:26:55 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33213</guid>
		<description><![CDATA[Title says it all? Can we come up with a list of 101 things we can do to become better Hackers. Simple one liners please! &#160; 1. Learn Python &#8230;]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">Title says it all? Can we come up with a list of 101 things we can do to become better Hackers. Simple one liners please!</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">1. Learn Python &#8230;</span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/101-things-you-can-do-to-become-a-better-hacker/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>We Got Listed in Facebook WhiteHats</title>
		<link>http://Attack-Secure.com/index.php/we-got-listed-in-facebook-whitehats/</link>
		<comments>http://Attack-Secure.com/index.php/we-got-listed-in-facebook-whitehats/#comments</comments>
		<pubDate>Sat, 20 Apr 2013 12:51:44 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33208</guid>
		<description><![CDATA[Hello everyone We have Good News Today. &#160; We got listed in Facebook White Hat page for responsibly disclosed security vulnerabilities https://www.facebook.com/whitehat/thanks/   look at this picture and you will find ( Attack-Secure.com ) :       We Reported a Critical Vulnerability in Facebook Camera App for Iphone and they awarded us with 3000 ...]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 16px;">Hello everyone</span></p>
<p><span style="font-size: 16px;">We have Good News Today.</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 16px;">We got listed in Facebook White Hat page for responsibly disclosed security vulnerabilities</span></p>
<p><span style="font-size: 16px;"><a href="https://www.facebook.com/whitehat/thanks/">https://www.facebook.com/whitehat/thanks/</a></span></p>
<p><span style="font-size: 16px;"> </span></p>
<p><span style="font-size: 16px;">look at this picture and you will find ( Attack-Secure.com ) :</span></p>
<p><span style="font-size: 16px;"> </span></p>
<p><span style="font-size: 16px;"><a href="http://Attack-Secure.com/wp-content/uploads/2013/04/fb2012.png"><img class="alignnone size-full wp-image-33209" alt="fb2012" src="http://Attack-Secure.com/wp-content/uploads/2013/04/fb2012.png" width="870" height="1035" /></a></span></p>
<p><span style="font-size: 16px;"> </span></p>
<p><span style="font-size: 16px;"> </span></p>
<p><span style="font-size: 16px;">We Reported a Critical Vulnerability in Facebook Camera App for Iphone and they awarded us with 3000 USD</span></p>
<p><span style="font-size: 16px;">You can read more about this vulnerability :</span></p>
<p><span style="font-size: 16px;"> </span></p>
<p><a href="http://techcrunch.com/2012/12/24/security-loophole-in-facebooks-camera-app-allowed-hackers-to-hijack-accounts-over-wifi/"><span style="font-size: 16px;">http://techcrunch.com/2012/12/24/security-loophole-in-facebooks-camera-app-allowed-hackers-to-hijack-accounts-over-wifi/</span></a></p>
<p>&nbsp;</p>
<p><span style="font-size: 16px;"><a href="http://www.intego.com/mac-security-blog/facebook-camera-app-updated-to-fix-vulnerability/">http://www.intego.com/mac-security-blog/facebook-camera-app-updated-to-fix-vulnerability/</a></span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/we-got-listed-in-facebook-whitehats/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>We Got Listed in Soundloud WhiteHats</title>
		<link>http://Attack-Secure.com/index.php/we-got-listed-in-soundcloud-whitehats/</link>
		<comments>http://Attack-Secure.com/index.php/we-got-listed-in-soundcloud-whitehats/#comments</comments>
		<pubDate>Thu, 31 Jan 2013 14:39:59 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33192</guid>
		<description><![CDATA[Hello everyone &#160; We have a Good News Today. &#160; We got listed in SoundCloud White Hat page for responsibly disclosed security vulnerabilities &#160; http://help.soundcloud.com/customer/portal/articles/439715-responsible-disclosure &#160; look at this picture and you will find my name: &#160; &#160; &#160; We have reported multiple security vulnerabilities and they sent a T-shirt to Me Thanks SoundCloud]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">Hello everyone</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">We have a Good News Today.</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">We got listed in SoundCloud White Hat page for responsibly disclosed security vulnerabilities</span></p>
<p>&nbsp;</p>
<p><a href="http://help.soundcloud.com/customer/portal/articles/439715-responsible-disclosure"><span style="font-size: 18px;">http://help.soundcloud.com/customer/portal/articles/439715-responsible-disclosure</span></a></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">look at this picture and you will find my name:</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;"><a href="http://Attack-Secure.com/wp-content/uploads/2013/01/sound.png"><img class="alignnone size-full wp-image-33193" alt="sound" src="http://Attack-Secure.com/wp-content/uploads/2013/01/sound.png" width="1253" height="1133" /></a></span></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">We have reported multiple security vulnerabilities and they sent a T-shirt to Me <img src='http://Attack-Secure.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </span></p>
<p><span style="font-size: 18px;">Thanks SoundCloud</span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/we-got-listed-in-soundcloud-whitehats/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>A Journey to the Center of the CODENAME: Samurai Skills Course</title>
		<link>http://Attack-Secure.com/index.php/a-journey-to-the-center-of-the-codename-samurai-skills-course/</link>
		<comments>http://Attack-Secure.com/index.php/a-journey-to-the-center-of-the-codename-samurai-skills-course/#comments</comments>
		<pubDate>Wed, 30 Jan 2013 02:15:48 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33181</guid>
		<description><![CDATA[We are so happy to tell you that one of our customers wrote a detailed and honest reviews about our course CODENAME: Samurai Skills Course   Here are the Links:   http://digitalforensicstips.com/2012/10/early-impressions-of-the-attack-secure-com-samurai-skills-course/   http://digitalforensicstips.com/2012/11/samurai-skills-update-2/   http://digitalforensicstips.com/2012/11/samurai-skills-update-3/   http://digitalforensicstips.com/2012/11/samurai-skills-update-4/   http://digitalforensicstips.com/2012/12/samurai-skills-update-5/   And   http://digitalforensicstips.com/2013/01/samurai-skills-update-6-review/   I Hope you will like it.      ]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">We are so happy to tell you that one of our customers wrote a detailed and honest reviews about our course </span></p>
<p><span style="font-size: 18px;"><a href="http://attack-secure.com/index.php/samurai-skills/">CODENAME: Samurai Skills Course</a></span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;">Here are the Links:</span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"><a href="http://digitalforensicstips.com/2012/10/early-impressions-of-the-attack-secure-com-samurai-skills-course/">http://digitalforensicstips.com/2012/10/early-impressions-of-the-attack-secure-com-samurai-skills-course/</a></span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"><a href="http://digitalforensicstips.com/2012/11/samurai-skills-update-2/">http://digitalforensicstips.com/2012/11/samurai-skills-update-2/</a></span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"><a href="http://digitalforensicstips.com/2012/11/samurai-skills-update-3/">http://digitalforensicstips.com/2012/11/samurai-skills-update-3/</a></span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"><a href="http://digitalforensicstips.com/2012/11/samurai-skills-update-4/">http://digitalforensicstips.com/2012/11/samurai-skills-update-4/</a></span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"><a href="http://digitalforensicstips.com/2012/12/samurai-skills-update-5/">http://digitalforensicstips.com/2012/12/samurai-skills-update-5/</a></span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;">And</span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"><a href="http://digitalforensicstips.com/2013/01/samurai-skills-update-6-review/">http://digitalforensicstips.com/2013/01/samurai-skills-update-6-review/</a></span></p>
<p><span style="font-size: 18px; color: #ff0000;"><span style="color: #333333; font-size: 13px;"> </span></span></p>
<p><span style="font-size: 18px;">I Hope you will like it.</span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;"> </span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/a-journey-to-the-center-of-the-codename-samurai-skills-course/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>We got Listed 2 times in Google Hall of Fame</title>
		<link>http://Attack-Secure.com/index.php/we-got-listed-2-times-in-google-hall-of-fame/</link>
		<comments>http://Attack-Secure.com/index.php/we-got-listed-2-times-in-google-hall-of-fame/#comments</comments>
		<pubDate>Thu, 24 Jan 2013 21:02:54 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33178</guid>
		<description><![CDATA[YES, we can &#160; Finally we got listed in Google Hall of Fame ( Honorable Mention ) for 2012  &#160; http://www.google.com/about/appsecurity/hall-of-fame/distinction/ &#160; &#160; AND &#160; We got listed in Google Hall of Fame ( Reward Recipients ) for 2012 &#160; http://www.google.com/about/appsecurity/hall-of-fame/reward/ &#160; &#160; Search for : Mohamed Ramadan &#160; We reported multiple security vulnerabilities  in Google websites and ...]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">YES, we can <img src='http://Attack-Secure.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Finally we got listed in Google Hall of Fame ( <strong><span style="color: #ff0000;">Honorable Mention</span> </strong>) for 2012 </span></p>
<p>&nbsp;</p>
<p><a href="http://www.google.com/about/appsecurity/hall-of-fame/distinction/"><span style="font-size: 18px;">http://www.google.com/about/appsecurity/hall-of-fame/distinction/</span></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">AND</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">We got listed in Google Hall of Fame ( <strong><span style="color: #ff0000;">Reward Recipients</span></strong> ) for 2012</span></p>
<p>&nbsp;</p>
<p><a href="http://www.google.com/about/appsecurity/hall-of-fame/distinction/"><span style="font-size: 18px;">http://www.google.com/about/appsecurity/hall-of-fame/reward/</span></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Search for : Mohamed Ramadan</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">We reported multiple security vulnerabilities  in Google websites and services.</span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/we-got-listed-2-times-in-google-hall-of-fame/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Most Critical Flaw in Facebook Worth just $500 USD !!</title>
		<link>http://Attack-Secure.com/index.php/the-most-critical-flaw-in-facebook-worth-just-500-usd/</link>
		<comments>http://Attack-Secure.com/index.php/the-most-critical-flaw-in-facebook-worth-just-500-usd/#comments</comments>
		<pubDate>Thu, 10 Jan 2013 11:01:12 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33171</guid>
		<description><![CDATA[Hi Everyone I Have Contacted the Security Researcher ( Sow Ching Shiong ) who found the most critical flaw in Facebook , this bug enabled any hacker to change your password without any need to know your current or old password ! yeah just like that , very simple very dangerous he wrote a post in ...]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">Hi Everyone</span></p>
<p><span style="font-size: 18px;">I Have Contacted the Security Researcher ( <a href="http://chingshiong.blogspot.com/">Sow Ching Shiong</a> ) who found the most critical flaw in Facebook , this bug enabled any hacker to change your password without any need to know your current or old password !</span></p>
<p><span style="font-size: 18px;">yeah just like that , very simple very dangerous <img src='http://Attack-Secure.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </span></p>
<p><span style="font-size: 18px;">he wrote a post in his blog about the vulnerability </span></p>
<h3><span style="font-size: 18px;"><a href="http://chingshiong.blogspot.com/2013/01/facebook-bug-4-password-reset.html">Facebook Bug #4: Password Reset Vulnerability Found in www.facebook.com</a></span></h3>
<p><span style="font-size: 18px;">Facebook fixed the vulnerability and rewarded him with just $500 USD !!!</span></p>
<p><span style="font-size: 18px;">FYI this bug was being sold in black market for $4000 USD according to this blog</span></p>
<p><span style="font-size: 18px;"><a href="http://krebsonsecurity.com/2013/01/facebook-yahoo-fix-valuable-ecurity-hole/">http://krebsonsecurity.com/2013/01/facebook-yahoo-fix-valuable-ecurity-hole/</a></span></p>
<p><span style="font-size: 18px;">you can see the reply from facebook :</span></p>
<p><span style="font-size: 18px;"><a href="http://Attack-Secure.com/wp-content/uploads/2013/01/FB.png"><img class="alignnone size-full wp-image-33172" title="FB" alt="" src="http://Attack-Secure.com/wp-content/uploads/2013/01/FB.png" width="936" height="252" /></a></span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">the wired thing that in first they told him it is not a security bug ! and they ignored it !!!</span></p>
<p><span style="font-size: 18px;">After providing the attack scenarios, POC and clarifications from the dev team, then only they accepted it as a valid bug. !</span></p>
<p><span style="font-size: 18px;">I think they should reconsider the bounty and raise it to $10000 USD or Higher.</span></p>
<p><span style="font-size: 18px;">this vulnerability is more dangerous than XSS and CSRF because you don&#8217;t need to send ANYTHING to the victim or even make any contact with the Victim all you need is the Victim name .</span></p>
<p><span style="font-size: 18px;">Tell Us what do you think about this issue ? do you think it is fair ?</span></p>
<p><span style="color: #ff0000;"><strong>UPDATE :</strong></span></p>
<p><span style="font-size: 18px;">i got more information from the security researcher who found and reported the flaw to </span><span style="font-size: large;">Facebook</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;">First: They don&#8217;t see it as a valid bug.</span></p>
<p>&nbsp;</p>
<p><a href="http://Attack-Secure.com/wp-content/uploads/2013/01/FB1.png"><img class="alignnone size-full wp-image-33175" title="FB1" alt="" src="http://Attack-Secure.com/wp-content/uploads/2013/01/FB1.png" width="937" height="262" /></a></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Second: They are unsure that the bug is a privacy or security issue.</span><br />
<span style="font-size: 18px;">As such, the bug I reported does not qualify as a part of the bug</span><br />
<span style="font-size: 18px;">bounty program.</span></p>
<p>&nbsp;</p>
<p><a href="http://Attack-Secure.com/wp-content/uploads/2013/01/FB2.png"><img class="alignnone size-full wp-image-33176" title="FB2" alt="" src="http://Attack-Secure.com/wp-content/uploads/2013/01/FB2.png" width="939" height="266" /></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Yes, it&#8217;s not the most critical vulnerability. There are 3 attack scenarios:</span></p>
<p><span style="font-size: 18px;">First scenario:</span><br />
<span style="font-size: 18px;">A local attack, where a user has forgotten to lock their desktop or laptop.</span></p>
<p><span style="font-size: 18px;">Second scenario:</span><br />
<span style="font-size: 18px;">An internal attack, where the user&#8217;s session ID could be sniffed</span><br />
<span style="font-size: 18px;">because Facebook does not using HTTPS by default, could allow the</span><br />
<span style="font-size: 18px;">malicious attacker to hijack the session.</span></p>
<p><span style="font-size: 18px;">Third scenario:</span><br />
<span style="font-size: 18px;">An external attack could have leveraged an XSS or clickjacking flaw to</span><br />
<span style="font-size: 18px;">steal the session ID.</span></p>
<p><span style="font-size: 18px;">Once the password has been changed, what the attacker can do is:</span><br />
<span style="font-size: 18px;">1) Change the victim&#8217;s password for at least 2 times so that the</span><br />
<span style="font-size: 18px;">victim cannot recover his/her password by entering old password to get</span><br />
<span style="font-size: 18px;">back the account.</span><br />
<span style="font-size: 18px;">2) Change all the primary/secondary email address or mobile number to</span><br />
<span style="font-size: 18px;">the attacker one to prevent the victim to get back the account.</span></p>
<p><span style="font-size: 18px;">Although the victim still can fill up the online form and inform</span><br />
<span style="font-size: 18px;">Facebook that their account has been compromised but it might take</span><br />
<span style="font-size: 18px;">some time for Facebook to review the form. By that time, the victim&#8217;s</span><br />
<span style="font-size: 18px;">personal information has been stolen or account can be deactivated.</span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/the-most-critical-flaw-in-facebook-worth-just-500-usd/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>We got Listed in Twitter White Hats + A New Discount for You</title>
		<link>http://Attack-Secure.com/index.php/we-got-listed-in-twitter-white-hats-a-new-discount-for-you/</link>
		<comments>http://Attack-Secure.com/index.php/we-got-listed-in-twitter-white-hats-a-new-discount-for-you/#comments</comments>
		<pubDate>Wed, 09 Jan 2013 00:45:33 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33166</guid>
		<description><![CDATA[Hello everyone today is a great day because we got listed in twitter white hats and also we are offering a new discount for you we have found and reported 2 security vulnerabilities in one of twitter websites ( Hope140.org ): 1-CSRF vulnerability in contact form 2-Apache httpOnly Cookie Disclosure &#160; Here is twitter reply : &#160; ...]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">Hello everyone</span></p>
<p><span style="font-size: 18px;">today is a great day because we got listed in twitter white hats and also we are offering a new discount for you</span></p>
<p><span style="font-size: 18px;">we have found and reported 2 security vulnerabilities in one of twitter websites ( Hope140.org ):</span></p>
<p><span style="font-size: 18px;">1-CSRF vulnerability in contact form</span></p>
<p><span style="font-size: 18px;">2-Apache httpOnly Cookie Disclosure</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Here is twitter reply :</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;"><strong>twitappsec, Jan 02 06:21 am (PST):</strong></span></p>
<p><span style="font-size: 18px;">This page should now include CSRF protection. We&#8217;d love to hear from you that you verified that the issue is fixed now. Thanks!</span></p>
<p><span style="font-size: 18px;">Twitter Security Team</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">and</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;"><strong>twitappsec, Jan 02 06:23 am (PST):</strong></span></p>
<p><span style="font-size: 18px;">Hi. This should be fixed. Please take a moment to verify for us, if you&#8217;d like.</span></p>
<p><span style="font-size: 18px;">Twitter Security Team</span></p>
<p>&nbsp;</p>
<p><a href="https://twitter.com/about/security"><span style="font-size: 18px;">https://twitter.com/about/security</span></a></p>
<p><span style="font-size: 18px;">look below and you will find this:</span></p>
<p><a href="http://Attack-Secure.com/wp-content/uploads/2013/01/twitter_white.png"><img class="alignnone size-full wp-image-33168" title="twitter_white" src="http://Attack-Secure.com/wp-content/uploads/2013/01/twitter_white.png" alt="" width="1774" height="1128" /></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">and you can get 30 % discount on our course , this offer ends in 15/1/2013</span></p>
<p><span style="font-size: 18px;">use this code : TWITTER</span></p>
<p><span style="font-size: 18px;">thanks twitter</span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/we-got-listed-in-twitter-white-hats-a-new-discount-for-you/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Critical Security Vulnerability in Facebook Camera App for IPhone worth $3,000 USD.</title>
		<link>http://Attack-Secure.com/index.php/critical-security-vulnerability-in-facebook-camera-app-for-iphone-worth-3000-usd/</link>
		<comments>http://Attack-Secure.com/index.php/critical-security-vulnerability-in-facebook-camera-app-for-iphone-worth-3000-usd/#comments</comments>
		<pubDate>Tue, 25 Dec 2012 13:00:52 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33160</guid>
		<description><![CDATA[Hello everyone &#160; Good news today &#160; Facebook Rewarded me with $3,000 USD for reporting a critical vulnerability in Facebook Camera App for IPhone. You can read the reply from Facebook Security team: &#160; &#160; Learn more about this issue : &#160; http://techcrunch.com/2012/12/24/security-loophole-in-facebooks-camera-app-allowed-hackers-to-hijack-accounts-over-wifi/   and &#160; http://www.aitnews.com/latest_it_news/esecurity-news/84680.html]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">Hello everyone</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Good news today</span></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">Facebook Rewarded me with $3,000 USD for reporting a critical vulnerability in Facebook Camera App for IPhone.</span></p>
<p><span style="font-size: 18px;">You can read the reply from Facebook Security team:</span></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><a href="http://Attack-Secure.com/wp-content/uploads/2012/12/fb.png"><img class="alignnone size-full wp-image-33163" title="fb" src="http://Attack-Secure.com/wp-content/uploads/2012/12/fb.png" alt="" width="1412" height="177" /></a></p>
<p><span style="font-size: 18px;">Learn more about this issue :</span></p>
<p>&nbsp;</p>
<p><a href="http://techcrunch.com/2012/12/24/security-loophole-in-facebooks-camera-app-allowed-hackers-to-hijack-accounts-over-wifi/  "><span style="font-size: 18px;">http://techcrunch.com/2012/12/24/security-loophole-in-facebooks-camera-app-allowed-hackers-to-hijack-accounts-over-wifi/</span></a></p>
<p><a href="http://techcrunch.com/2012/12/24/security-loophole-in-facebooks-camera-app-allowed-hackers-to-hijack-accounts-over-wifi/  "> </a></p>
<p><span style="font-size: 18px;">and</span></p>
<p>&nbsp;</p>
<p><a href="http://techcrunch.com/2012/12/24/security-loophole-in-facebooks-camera-app-allowed-hackers-to-hijack-accounts-over-wifi/  "><span style="font-size: 18px;">http://www.aitnews.com/latest_it_news/esecurity-news/84680.html</span></a></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/critical-security-vulnerability-in-facebook-camera-app-for-iphone-worth-3000-usd/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>We got Listed in GitHub White Hat</title>
		<link>http://Attack-Secure.com/index.php/we-got-listed-in-github-white-hat/</link>
		<comments>http://Attack-Secure.com/index.php/we-got-listed-in-github-white-hat/#comments</comments>
		<pubDate>Fri, 07 Dec 2012 16:28:13 +0000</pubDate>
		<dc:creator>pwpadmin</dc:creator>
				<category><![CDATA[NEWS]]></category>

		<guid isPermaLink="false">http://Attack-Secure.com/?p=33154</guid>
		<description><![CDATA[Hello everyone We have a Good News Today. We got listed in GitHub White Hat page for responsibly disclosed security vulnerabilities https://help.github.com/articles/responsible-disclosure-of-security-vulnerabilities look at this picture and you will find my details :   &#160; We have reported multiple security vulnerabilities. We reported : 1- CSRF Vulnerability 2- Blank form submission 3- Missing Captcha 4- Other unfixed ...]]></description>
				<content:encoded><![CDATA[<p><span style="font-size: 18px;">Hello everyone</span></p>
<p><span style="font-size: 18px;">We have a Good News Today.</span></p>
<p><span style="font-size: 18px;">We got listed in GitHub White Hat page for responsibly disclosed security vulnerabilities</span></p>
<p><span style="font-size: 18px;">https://help.github.com/articles/responsible-disclosure-of-security-vulnerabilities</span></p>
<p><span style="font-size: 18px;">look at this picture and you will find my details :</span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><a href="http://Attack-Secure.com/wp-content/uploads/2012/12/github.png"><img class="alignnone size-full wp-image-33155" title="github" src="http://Attack-Secure.com/wp-content/uploads/2012/12/github.png" alt="" width="1394" height="1132" /></a></p>
<p>&nbsp;</p>
<p><span style="font-size: 18px;">We have reported multiple security vulnerabilities.</span></p>
<p><span style="font-size: 18px;">We reported :</span></p>
<p><span style="font-size: 18px;">1- CSRF Vulnerability</span></p>
<p><span style="font-size: 18px;">2- Blank form submission</span></p>
<p><span style="font-size: 18px;">3- Missing Captcha</span></p>
<p><span style="font-size: 18px;">4- Other unfixed vulnerabilites</span></p>
<p><span style="font-size: 18px;"> </span></p>
<p><span style="font-size: 18px;">we also got a t-shirt from GitHub</span></p>
<p><span style="font-size: 18px;">Thanks GitHub !</span></p>
<div id="wpcr_respond_1"></div>]]></content:encoded>
			<wfw:commentRss>http://Attack-Secure.com/index.php/we-got-listed-in-github-white-hat/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Served from: attack-secure.com @ 2013-05-19 22:21:36 by W3 Total Cache -->