Computer Security (5)

Computer security, cybersecurity or information technology security is the protection of computer systems and networks from the theft of or damage to their hardware, software, or electronic data, as well as from the disruption or misdirection of the services they provide.

Piyush Raj

Sensitive Data Exposure over *.unesco.org, thanks to OptionsBleed for low-hanging fruit

UNESCO Sensitive Data Exposure via OptionsBleed

Date reported — 02–07–2019 # Vulnerable Software — Apache # CVE: CVE-2017–9798 / USN-3425–1 “OptionsBleed” # Type — P1:Sensitive Data Exposure + P5:Fingerprinting/Banner Grabbing # Domain Affected — *.unesco.org # Tested — https://en.unesco.org (193.242.192.49) Options Bleed is a use after free error in Apache HTTP that causes a corrupted Allow header…

Jump into →
Piyush Raj

My first security talk — BSides Delhi 2019 Experience

Well, last year, at the age of 18, I finally popped my security cherry and presented my research revolving around server fingerprinting in Delhi organised by the BSides. It all started when an email made it's way into my inbox containing the good news but the moment this tweet below fleeted, that was really the moment…

Jump into →