Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Web-App-Sec
[Top] [All Lists]

XSS/Script Injection on my site -- further details

Subject: XSS/Script Injection on my site -- further details
Date: Fri, 28 Apr 2006 14:46:06 -0500
inline:

-----Original Message-----
From: arian.evans [mailto:arian.evans@anachronic.com] 
Sent: Friday, April 28, 2006 12:30 PM

Someone in Atlanta on Cox cable is once again giving
my personal site a "free pen test".

I lied. It turns out that while the Cox backbone is out
of ATL, the actual activity originates in Irvine, CA.

I do not want to unnecessarily cast blame on folks in ATL,
as I think we all know who would get blamed there. :)

If this hadn't happened twice before and nuked my server
once, I probably wouldn't care a lot, but this is the
third time you've hit me, and it is rude, unprofessional,
and you've cost me a lot of personal time & email loss
that could have been easily avoided.

I am unwilling to debate the merit of having my IDS
alerts go to my default mail spool; it works quite well
except when I get 40k alerts over an evening.

Anyone on the lists stuck up in or around Rochester,
NY for the next few months, gimme' a shout....

Happy Fridays,

Arian J. Evans
+1.913.378.3571 [mobile]

"See? That was nothing. But that's how it always begins. Very small." -Egg
Shen






-------------------------------------------------------------------------
Sponsored by: Watchfire

Watchfire's AppScan is the industry's first and leading web application 
security testing suite, and the only solution to provide comprehensive 
remediation tasks at every level of the application. Change the way you 
think about application security testing - See for yourself. 
Download a Free Trial of AppScan 6.0 today!

https://www.watchfire.com/securearea/appscansix.aspx?id=701300000007kaF
--------------------------------------------------------------------------

<Prev in Thread] Current Thread [Next in Thread>
  • XSS/Script Injection on my site -- further details, arian.evans <=