Full Disclosure mailing list archives

Re: Anthology of attacks via captchas


From: "Jan G.B." <ro0ot.w00t () googlemail com>
Date: Mon, 12 Apr 2010 12:08:59 +0200

Thanks for presenting this up to date collection of bugs from the
years 2007 and 2008.
I appreciate it - adding you to my killfile, now.


2010/4/9 MustLive <mustlive () websecurity com ua>:
Hello Full-Disclosure!

Last month I wrote new article Anthology of attacks via captchas, for which
I made English version yesterday (http://websecurity.com.ua/4107/). It this
article I wrote about different variants of attacks via captchas.

Attacks via captchas:

* Captcha bypass.
* Redirector attacks.
* Cross-Site Scripting attacks.
* SQL Injection attacks.
* CSRF attacks.
* Information leakages.
* Denial of Service attacks.

You can read the article Anthology of attacks via captchas at my site:
http://websecurity.com.ua/4107/

Best wishes & regards,
MustLive
Administrator of Websecurity web site
http://websecurity.com.ua

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: