Security Audit

Our Web Application Pentest ( WAP) attempts to address the Owasp top 10 & SANS top 20 web application vulnerabilities and other exploitable loopholes of your web application . Along with it our WAP team also test web applications for Business logic flaws that can directly or indirectly effect the functioning of application.

Trainings

We are here to help you solve your biggest query- where and how to start? CDI has brought various courses in Ethical Hacking in Chandigarh where all you technology lovers will be given the much needed push to move forward and create a niche for yourself in the field. From Beginner to Expert level we have many kinds of training patterns.

[caption id="attachment_627" align="aligncenter" width="680"]Adobe flash media player for OS X Adobe flash media player for OS X[/caption]Adobe today acknowledged Apple for OS X flash player vulnerability and released an update for OS X Flash player. A critical vulnerability was found few weeks earlier. All the versions of adobe flash player which are prior to 14.0.0.145 will not run in Safari browser.

OS X Flash player update released

As said by an official over the Apple's support site, all the earlier versions of flash player installed over the Safari would be seen blocked. An alert message of Flash security alert or Flash out-of-date would pop up as soon as you run the flash media plugin.

Also See: Domino's website hacked by Turkish hacker

For those who do not want to update Flash player will need to work in the safe mode. Safari's safe mode is available in the versions higher that 6.1 [caption id="attachment_628" align="aligncenter" width="434"]OS X flash player vulnerability OS X flash player vulnerability[/caption]

OS X Flash player vulnerability found

Three critical vulnerabilities were found in OS X flash player. One of them was found by Google engineer Michele Spagnuolo that could withdraw sensitive information surreptitiously. Spagnuolo created a dubbed Rosetta flash with which he was able to convert malicious SWF files, bypass a JSONP callback and send arbitrary requests. Michele Spagnuolo said on his blog that an attacker can send arbitrary request through targeted machine on the external domain which is operated by him.

Also SEE: Syrian Electronic army hacks Israeli army twitter account

Two other issues regarding the bypass vulnerability were also resolved in the patch released by Adobe on Tuesday. For more assistance check out adobe website.

Apple did same as Mozilla

Last year also a security issue was found in flash player plugin for Mozilla. After the update was released Mozilla blocked the older versions of the plugin.

Must read

[caption id="attachment_508" align="alignleft" width="150"]bayfiles.net removed by google bayfiles.net removed by google[/caption] [caption id="attachment_562" align="alignleft" width="150"]wysija MailPoet Wordpress Plugin 1,700,00 WordPress websites hacked by MailPoet plugin[/caption]    

See more of Cyber Intelligence by logging in.
Connect with cyber security experts,Discover job opportunities,Online Training, Information Security Advisory and lot more.