Rivalry between media websites results in Netscape being hacked via an XSS attack

Free Press Release  

Home | Release Features | Success Stories | Release Tips | Journal | FAQ | Search | Submit Release | Members' Area

News Archive > 2006 > Jul > 28
Acunetix scans for Cross-Site Scripting vulnerabilities preventing website defacement
For_Immediate_Release:

July 28, 2006 (Press Release) -- London, UK – 28 July, 2006 – Netscape.com, an online social media website, has been hacked through a cross-site scripting (XSS) vulnerability in their recently launched news service. It is reported that the attack was launched by fans of Digg.com, a competing social networking website. The hackers used the XSS vulnerability to inject their own JavaScript code into the homepage and other pages on the site.

The hack was discovered by Finnish security vendor (F-Secure), during their research work around cross-site scripting vulnerabilities on social networking sites. Digg fans used cross-site scripting attacks to display JavaScript pop-up alerts with "comical" messages aimed at redirecting visitors to their site. Fortunately no malicious code was injected. Netscape released a statement yesterday afternoon stating that the vulnerability had been patched and that visitors are once again safe.

Acunetix Web Vulnerability Scanner automatically audits web applications and checks whether these applications are secure from exploitable vulnerabilities to such hack attacks as cross site scripting. Although Netscape has now fixed the flaw, an automated check of Netscape’s website (using Acunetix WVS) could have prevented this attack and saved the company from denting its reputation and the subsequent loss of customer trust. Furthermore, hackers could have injected code aimed at stealing personal customer data rather than defacement. Most hackers, nowadays, attack websites because of the payoff from stealing such sensitive data as credit cards and social security numbers.

Acunetix provides free audit to help companies determine the security of their websites

Enterprises who would like to have their website security checked can register for a free audit by visiting www.acunetix.com/security-audit. Participating enterprises will receive a summary audit report showing whether their website is secure or not. Summary reports will be delivered within five business days of submission.

About Acunetix Web Vulnerability Scanner

Acunetix Web Vulnerability Scanner ensures website security by automatically checking for SQL injection, Cross site scripting and other vulnerabilities. It checks password strength on authentication pages and automatically audits shopping carts, forms, dynamic content and other web applications. As the scan is being completed, the software produces detailed reports that pinpoint where vulnerabilities exist.

About Acunetix

Acunetix was founded to combat the alarming rise in web attacks. Its flagship product, Acunetix Web Vulnerability Scanner, is the result of several years of development by a team of highly experienced security developers. Acunetix is a privately held company with headquarters based in Europe (Malta), a US office in Seattle, Washington and an office in London, UK. For more information about Acunetix, visit: http://www.acunetix.com; http://www.acunetix.de.

All product and company names herein may be trademarks of their respective owners.


Email Print SPAM

For more information:


For more information:
Please email Tamara Borg: tamara@acunetix.com
Acunetix Ltd: Tel: (+44) 0845 6126712; Fax: (+44) 0845 6126716.
URL: http://www.acunetix.com

LEAVE A COMMENT
Title:


Message:
You can use following font styles to enhance your article. (No HTML tags.)
[large]sample[/large] sample
[b]sample[/b]sample
[i]sample[/i]sample
[color=#ff0000]sample[/color]sample
Your name:
Your email: (Please provide a valid email.)
Please read the number in the image:
Publisher: Tamara Borg




Submit Press Release
IndustriesCountriesTags

Top Headlines More>>
Hackers Claim to Revive 'Bricked' iPhones
It's unclear, however, how permanent any "unbrick" fix will be, or whether changes to the hacks that allow modifications will survive the next Apple iPhone update. Hackers have come up with at least one way to "unbrick" iPhones disabled by a firmware update Apple Inc. issued two weeks ago, developers of both paid and free unlock software said Thursday.
Palm's Centro is a Smart Phone With a Great Price
The Palm Centro from Sprint announced today the exceptional price of only $99. This is great news for consumers who want a smart phone, but don't want to shell out mega-prices for one. Of course, like most phones, you will need to sign a 2-year contract to get the new device. "Palm Centro has the power of a broadband smartphone at the price of a standard 12-key phone," said Ed...
IBM to offer free office software, targeting Microsoft
BEIJING, Sept. 19 (Xinhuanet) -- IBM Corp. is to start offering free programs for word processing, spreadsheets and presentations, in another bid to upset the dominance of Microsoft's Office suite, media reported Tuesday. The company was scheduled to announce the desktop software, called IBM Lotus Symphony, at an event Tuesday. The name for the suite is the same name IBM used...
Google prize aims to spur corporate race to moon
Search engine Google is offering more than $35 million prize money for companies to land a robot camera on the moon and send back high-resolution photos and data. It has launched a new site called Google Moon and hopes the prize will encourage what it calls a 'global private race to the moon'. Google hopes private companies can develop simpler technology than the equipment used by...
Google phone
The Google Phone is like the Roswell UFO: Few outsiders know if it really exists, but it's got a cult following. Just months after iPhone mania gripped Silicon Valley gadget heads, suspense is building over reports that Google Inc. plans to release its own cellphone. Color us skeptics on this one, but we've got a tipster claiming to have the scoop on Google Switch. This version of the...
Yahoo! Mail for mobile phone
Global Internet specialist Yahoo! Inc. has this week announced a widening to the range and draw of its existing e-mail service by granting online account holders the ability to stay in touch with their on-the-go friends via the dispatch and receipt of text messages to and from mobile phone handsets.
Easily Dominate Niche of the online Markets
If you're struggling desperately to make money online while your boss isn't watching, this will solve your 5 biggest problems... Discover The Magic Formula To Create “Set-it-and-Forget-it” Websites Using Wordpress & Make Your First Adsense Dollar in The Next 7 Days.
About PSP (PlayStation® Portable)
The PSP® (PlayStation® Portable) system is the first truly integrated portable entertainment system designed to handle multiple applications – music, video, photo, internet, and wireless connectivity, with games as its key feature. The PSP® system features an unmatched library of entertainment content, combining more than 135 games and more than 430 feature films, TV...
iPod Derivant
iPod is a brand of portable media players designed and marketed by Apple and launched in October 2001. Devices in the iPod range are primarily digital audio players, designed around a central click wheel — with the exception of the iPod shuffle, which uses buttons because of its small size. As of September 2006, the line-up consists of the video-capable fifth generation iPod, the smaller...

Sitemap | All News | Daily | Weekly | Monthly | Tags | Industries | Countries | RSS | Add URL | Contact Us

Free Press Release All press release information on this site, including free press release and premier press release, is solely based on what our users submit. Free-Press-Release.com disclaims that any right and responsibility for the information go to the user who submit the press release. Some press release may be confusing without additional explanation. You should contact the provider with any questions about the information presented. In case some press release demages your benefits or violate your rights in any way, please contact us and we'll remove it immediately.
  • Press Release
  • Pub Gratuite
  • Press Release
  • Pub Gratuite