Posts Tagged ‘xss’

null May 09 Meet

// May 10th, 2009 // No Comments » // Meets

A meet to discuss our road map for the 2nd half of this year. If any one wants to give a talk or a demo please send an email to our mailing list or null at null.co.in.

Agenda:

  • Talks: iptables, xss
  • nullcon discussion
  • Roadmap H2 2k9

Date & Time: Sat 16th May 2009 17:30 hrs

Venue: Cafe Coffee Day, Law College Road, Pune

Minutes of the Meeting:

People Present:
- Murtuja
- Prashant
- Omkar
- Rohan
- Abhijit
- Himanshu
- Pankit
- Kinjal

Topic List:
- Discussion on responsibilities for NullCon organizing
- Exchange of designs and details related to NullCon
- Null TShirt Designing

Details:
- Kinjal to meet Amit Singh for NullCon website. Going to meet him on 20th of May, 2009.
- A good brochure to be made to approach sponsors for NullCon. This would be taken care by Kinjal.
- Abhijit and Rohan would take care of the designing and instantiation of banners for NullCon. They would also try for the frontpage of the NullCon website.
- Murtuja to send all the details for the Posters, T Shirt Designs that have been made, Visiting Cards and the matter for Sponsors brochure on the mailing list.

Kosmix.com Cross site scripting vulnerability

// May 10th, 2009 // No Comments » // Disclosures

Kosmix.com search option is vulnerable to XSS. It was originally reported to the kosmix staff on 16th April 2009, but they have not replied back on this issue.

For detailed information click here to download pdf.

Rediff Cross site scripting vulnerability

// May 10th, 2009 // 1 Comment » // Disclosures

Rediff normal search and job search suffer from XSS vulnerability. It was reported to rediff on 14th April 2009, but there has been no response from rediff staff on this issue.

For detailed information click here to download pdf.