cyberalerts

Tier3 Cyber Alerts Service in Pakistan. This service provides subscription to cyber alert mail service which deliver regular cyber alerts generated by Tier3 Systems.These alerts include vulnerabilities and other cyber security issues being faced or reported in Cyber space of Pakistan

February 11, 2017

HACKING CAMPAIGN TARGETING MINISTRY AND EMBASSY SITES

malicious reconnaissance campaign that targets websites. It is unknown what is the intent behind the campaign as of this writing, however, the profile of the targets resembles those that are common targets of Advanced Persistent Threat (APT) actors. As the attack is currently active, it effectively turns compromised sites into attack surfaces against their visitors.
February 2, 2017

Microsoft Power Point 2016, Java Code Execution

If the user have JAVA (or python or similar interpreters) an attacker can insert jar file or py file into the presentation and trigger it when mouse moves, for easier exploitation the attacker can use ppsx file which will load automatically in presentation mode and once the user opens the file and moves mouse it will trigger the payload.
July 26, 2016

http://www.aiou.edu.pk – sql vulnerability

Allama Iqbal Open University website : http://www.aiou.edu.pk/All_Dept_List.asp?dt=1 (GET) vuln type : sql injection submitted by : Waqas Haider Poc : Parameter: dt (GET) Type: stacked queries Title: Microsoft SQL Server/Sybase stacked queries Payload: dt=1;WAITFOR DELAY '0:0:5'– […]
July 26, 2016

www.hu.edu.pk – Sql Vulnerability

website : www.hu.edu.pk/oldwebsitehu/webtest/view_deg_prog.php?id=1 Vuln type : Sql Injection Submitted by : Waqas Haider POC : Vuln-Parameter: id (GET) Type: AND/OR time-based blind Title: MySQL >= 5.0.12 AND time-based blind Payload: id=1 AND SLEEP(5) Title: Generic […]
May 16, 2016

Pakistan FO to seek ISI help against cyber attacks

  The decision comes after Foreign Office (FO) systems have faced three major attacks by hackers over the past 18 months. Islamabad: Pakistan Foreign Office has decided to rope in the country’s top spy agency […]
May 16, 2016

pcb.com.pk – XSS vulnerability

  pcb.com.pk Pakistan Cricket Board (PCB) Official Website. The Pakistan Cricket Board (PCB) is the central industry for cricket in Pakistan which deals with all the concerned matters of Pakistan cricket and International cricket. 22 […]
May 16, 2016

propakistani.pk – XSS vulnerability

  ProPakistani.pk – Latest Technology News and Startups Information. First appeared on May 5th, 2008, ProPakistani is largely known for publishing exclusive and top notch content relating to local telecom and broadband industry.   13 […]
May 8, 2016

https://www.24hours.pk – XSS Vulnerability

  Website : https://www.24hours.pk Bug : Reflected XSS ( Cross site scripting) Submitted By  : Haq Khokhar ( https://twitter.com/Abdulhaqkhokhar ) Location/ URL  :   https://www.24hours.pk/deals/search Vulnerable Field : Search bar Steps to Reproduce : 1)Goto : https://www.24hours.pk and select […]
https://www.24hours.pk – XSS Vulnerability
We value your privacy
We use cookies to enhance your browsing experience, serve personalized content, and analyze our traffic. By clicking "Accept All", and by using this website you agree to our Cookies and Data Protection Policy.
Read more