No Image

Owning The Enterprise With HTTP PUT

April 30, 2014 Omair 4

During a routine penetration testing engagement, we found an IIS webserver with HTTP methods (verbs) like PUT and DELETE enabled on it. During enumeration of the web server we figured [more]

No Image

Critical Joomla File Upload Vulnerability

August 13, 2013 Omair 3

I was reading the Joomla Update, http://developer.joomla.org/security/news/563-20130801-core-unauthorised-uploads A bug in Joomla Core and having the criticality is always awesome to see 🙂 I decided to give the bug a look [more]