-->
#1 Trusted Cybersecurity News Platform
Followed by 5.40+ million
The Hacker News Logo
Subscribe – Get Latest News

The Hacker News | #1 Trusted Source for Cybersecurity News — Index Page

Dropbox potential security flaw revealed, could be exploited by hackers !

Dropbox potential security flaw revealed, could be exploited by hackers !

May 18, 2011
It seems that information which Dropbox, the popular web-based file-sharing site/service, issued in response to a US Federal Trade Commission complaint, has revealed a potential security flaw that, according to Ray Bryant, CEO of Idappcom, could be exploited by hackers. According to Bryant, after becoming upset with Dropbox's claims over encryption, a security researcher filed an FTC complaint against the network and, as part of its response, the firm revealed that users' files are hash-tagged each time they are uploaded. This means that, if user A uploads, for example, pictures with a given hash-tag and then user B uploads the same name/sized file - with the same hash-tag - their version is not actually uploaded. Put simply, he claims, users A and B share access to user A's first file, without user A's permission. Bryant says it may also be possible to upload an infected version of a popular file on other services and, when other users `upload' the legitima...
Hackmeout.Net Hacked By Shadow008 (PakCyberArmy)

Hackmeout.Net Hacked By Shadow008 (PakCyberArmy)

May 18, 2011
Hackmeout.Net Hacked By Shadow008 (PakCyberArmy) Hacked Site : http://hackmeout.net/ Mirror : http://legend-h.org/mirror/163779/hackmeout.net/
Wi-Fi Security Challenge 3 By Security Tube, Prize: $50 !

Wi-Fi Security Challenge 3 By Security Tube, Prize: $50 !

May 18, 2011
Wi-Fi Security Challenge 3 By Security Tube, Prize: $50 ! Wi-Fi Security Challenge 3: http://www.securitytube.net/video/1884 This challenge has 2 parts: 3a. Never Judge a Packet by its Type: In this challenge the trace file contains a Shared Key Challenge Text and Encrypted Response. You will need to crack the WEP key with just this. 3b. Never Send a N00b to a do a Hacker's Job: In this challenge, you send your N00b apprentice to collect a Wireshark trace. He mistakenly limits the size of the packets and all your get is a truncated encrypted data packet! :( Can you crack the WEP key with just this? Take a shot! All tools / programming platforms required are present on BT4. We don't expect you to scour the web for this :) Prizes: The first person to finish the challenges and send us an email will win $50 worth of goodies from Amazon. Your choice! choose what you want! You can download the trace files and updates from the Challenge Page: http://www.securitytube.ne...
cyber security

2026 Cloud Threats Report

websiteWizCloud Security / Threat Landscape
80% of cloud breaches still start with the basics - and AI is making them faster. Get insights into the patterns behind today's cloud attacks.
cyber security

Pentest Like Attackers Actually Do. SEC560 at SANSFIRE 2026

websiteSANS InstituteLive Training / Cybersecurity
From Kerberoasting to domain dominance—SEC560 covers the full kill chain. Washington, D.C., July 13.
Android phones vulnerable to hackers !

Android phones vulnerable to hackers !

May 18, 2011
Android phones vulnerable to hackers ! Handsets using Google’s operating system can allow hackers to access calendars, contacts and private pictures, they claim. Only the latest phones have had the data leak plugged, meaning 99.7 per cent of Android handsets are vulnerable. ‘We wanted to know if it is really possible to launch an impersonation attack against Google services,’ the German researchers wrote. ‘The short answer is yes, it is possible and it is quite easy to do so. ‘The adversary can gain full access to the calendar, contacts information or private web albums of the respective Google user. ‘This means that the adversary can view, modify or delete any contacts, calendar events or private pictures.’ The research was carried out by a University of Ulm team, who studied how Android dealt with log-ins for web-based services. When a user needs to access Google calendar, contacts and photo apps, an authentication ‘token’ is retrieved. But the tokens are sent unencrypted in p...
SQLi vulnerability in (IPL) Indian Premier League Found by MaDnI - PCA

SQLi vulnerability in (IPL) Indian Premier League Found by MaDnI - PCA

May 18, 2011
SQLi vulnerability in Indian Premier League Found by MaDnI - PCA MaDnI - PCA found Sql Injection vulnerability in (IPL) Indian Premier League website http://www.iplt20.com .  vulnerability  allow to get whole sql database including Logins details and all.  Proof of Vunl : http://pastebin.com/qBMmmdW0
Expert Insights Articles Videos
Cybersecurity Resources