Posts

Showing posts from September, 2009

Identify Any image Fast

Image
I ts a wonderful idea and a masterpiece of technology. Its human powered image identification. You upload an image and it takes few hours to know what the picture is. This may become very handy for us Maldivians. In case we don't know the English name of some fruit, a fish, a tree or even a bird, just go to http://idthis.org/ and upload the image. Wait for an hour or two and checkout the replies from various people from all over the world.

Customize Windows 'Save As' .

Image
W indows doesn't provide an option to customize the 'Save As' Dialogue which comes up when you select 'Save As' from any program.  Fortunately generous guys at simplisoftware.com provides a utility called 'places' which does the job for you. So if you are interested just go to http://simplisoftware.com/ and download the places utility. After customizing the folders its a snap to save your documents from any application directly to the special folders. It saves time because you don't have to browse to the directory where you want to save your document. Enjoy!

DNR Website Vulnerable!

Image
O ne of many government websites that are vulnerable to hacking is http://www.dnr.gov.mv/ which is the official website for Department of National Registration . I found out that this site can be defaced. No! I have no intentions in defacing the website. My sole intention is to make sure our government websites are secure. You don't believe me? Ok, I will reveal a less harmful vulnerability.To see for yourself checkout this link . Its an XSS vulnerability. Someone can use this website to fool users and do malicious activity! I urge the responsible authorities to fix the vulnerabilities as soon as possible. Let me tell you one more website which is highly vulnerable and easy to deface. Its a social website running on a free CMS called joomla . This site is prone to SQL injection and XSS attacks. Test a harmless XSS attack by replacing the cookie variable with 1>"><script%20%0a%0d>alert('XSS Vulnerable')%3B</script> . The website url is http://dhifuraa...

Hacked!

Image
W hile doing some research I visited http://www.maldiveshighcom.co.in/ which is the official website for Maldives High Commission in India. And guess what happend? First my browser warned me that the website has harmful elements from rapidsystemsend.ru. Then there comes a popup alert from Kaspersky Antivirus. Well, I ignored the warning and proceeded anyway. The page looks innocent enough. It says: High Commission of Maldives website moved to http://maldiveshighcom.in Dhiraagu still has this link on its website: http://www.dhiraagu.com.mv/about/links.php I wonder how many people will fall victim to this danger. Recently Dhiraagu also faced DDOS attacks. And even now http://dhiraagu.com.mv has a high vulnerability. Hint: Dhiraagu is running Apache server 1.3.x. But I don't think this particular vulnerability can be used to deface the website.