on Sunday, 3 November 2013
EDB-ID: 29328 CVE: N/A OSVDB-ID: N/A
Author: LiquidWorm Published: 2013-11-01 Verified: Not Verified
Exploit Code:   Download Vulnerable App:   N/A

Vendor: ImpressPages UAB
Product web page: http://www.impresspages.org
Affected version: 3.6

Summary: ImpressPages CMS is an open source web content
management system with revolutionary drag & drop interface.
###################################################################################################
#_________            .___        _______                ___.   .__      
#\_   ___ \  ____   __| _/____    \      \   ______  _  _\_ |__ |__| ____
#/    \  \/ /  _ \ / __ |/ __ \   /   |   \_/ __ \ \/ \/ /| __ \|  |/ __ \
#\     \___(  <_> ) /_/ \  ___/  /    |    \  ___/\     / | \_\ \  \  ___/ 
# \______  /\____/\____ |\___  > \____|__  /\___  >\/\_/  |___  /__|\___  >
#        \/            \/    \/          \/     \/            \/        \/
###################################################################################################
# Exploit Title: WordPress Switchblade Themes Arbitrary File Upload Vulnerability
# Author: Byakuya
# Date: 11/01/2013
# Vendor Homepage: http://themeforest.net/
# Themes Link: http://themeforest.net/item/switchblade-powerful-wordpress-theme/761353
# Price: $50
# Affected Version: v1.3
# Infected File: php.php
# Category: webapps/php
# Google dork: inurl:/wp-content/themes/switchblade
# Tested on : Windows/Linux
###################################################################################################
################################################################################ #_________ .___ _______ ___. .__ # #\_ ___ \ ____ __| _/____ \ \ ______ _ _\_ |__ |__| ____ # #/ \ \/ / _ \ / __ |/ __ \ / | \_/ __ \ \/ \/ /| __ \| |/ __ \ # #\ \___( <_> ) /_/ \ ___/ / | \ ___/\ / | \_\ \ \ ___/ # # \______ /\____/\____ |\___ / \____|__ /\___ /\/\_/ |___ /__|\___ / # # \/ \/ \/ \/ \/ \/ \/ # ################################################################################ # Exploit Title: WordPress Curvo Themes CSRF File Upload Vulnerability # Author: Byakuya # Date: 10/26/2013 # Vendor Homepage: http://themeforest.net/ # Themes Link: http://www.wphub.com/themes/curvo-by-themeforest/ # Price: $35 # Affected Version: Unknown # Infected File: upload_handler.php # Category: webapps/php # Google dork: inurl:/wp-content/themes/curvo/ ###################################################################################################
on Monday, 28 October 2013
If you buy lots of games on the Steam gaming platform and have many of them installed on your computer system, you may have noticed that there is a first come first serve basis in regards to game installations and updates.
Updates for instance are installed one after the other, which is not that much of a problem for most users, but if you have dozens or even more than a hundred games installed, you may have noticed that the "wrong" games get updated first while you have to wait for your favorite games to be updated because of this before you can start playing them.
Valve recently introduced a new high priority update feature to Steam which resolves this for you. It enables you to set automatic updates to high priority for individual games so that their updates are prioritized over everything else.
If you’re a user of social media scheduling app Buffer, there’s a good chance that your Saturday morning has been less than relaxing. There have been numerous reports circulating today purporting that the service has been hacked, and just a few moments ago the company officially confirmed those reports in a tweet.
“Hi all. So sorry, it looks like we’ve been compromised,” the terse statement reads. “Temporarily pausing all posts as we investigate. We’ll update ASAP.”
Just who is looking over your shoulder when you browse the Internet? Tomorrow, web users will be given a new tool to shine a light on the commercial organisations which track your every movement online.
Lightbeam reveals the source of third-party adverts

Lightbeam, a download produced by Mozilla, the US free software community behind the popular Firefox browser, claims to be a “watershed” moment in the battle for web transparency.
Everyone who browses the Internet leaves a digital trail used by advertisers to discover what your interests are.
Users who activate Lightbeam will be able to see a real-time visualisation of every site they visit and every third-party that is active on those sites, including commercial organisations which might potentially be sharing your data.
Singh
Recent reports said that the U.S. National Security Agency has spied on over 35 unnamed world leaders, but Indian Prime Minister Manmohan Singh is sure he's not one of them — as he doesn't have a phone or an email address to hack.

Hey Guys I am making a Penetration Testing Linux Distro & I need a name for it could u plzz suggest me one ... so far following are the suggestions I got