by IanR
Fri Oct 10, 2014 11:07 pm
Topic: compromised to serve malware
Re: compromised to serve malware

These site attacks are becoming all too commonplace, and the usual vector is SQL code injection. Seems it's uncertain if this was the case here, but extremely likely as they were using a database-backed CMS. Basically, the need is for an SQL replacement which understands the concept of variables, an...
by IanR
Thu Oct 09, 2014 9:49 pm
Topic: FlashGot executable in userprofile
FlashGot executable in userprofile

Just a quick note to say that a user of pointed out to me that Firefox causes a security policy violation warning when this add-on is launched. It seems that FlashGot tries to launch an executable, FlashGot.exe in the user's AppData profile folder. This executab...