secgeek.net secgeek.net

secgeek.net

SECURITY GEEK

Just another web application security blog. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Vulnerability in Youtube allowed moving comments from any video to another. Vulnerability in Youtube allowed moving comments from any video to another. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Today, I’m going to write about an intriguing vulnerability I have found with my friend, Ibrahim M. El-Sayed. In Youtube. The vulnerability allowed us to duplicate. BookFresh Tricky File Upload Bypass to RCE. Nov 29, 2014. One Vuln...

http://www.secgeek.net/

WEBSITE DETAILS
SEO
PAGES
SIMILAR SITES

TRAFFIC RANK FOR SECGEEK.NET

TODAY'S RATING

>1,000,000

TRAFFIC RANK - AVERAGE PER MONTH

BEST MONTH

June

AVERAGE PER DAY Of THE WEEK

HIGHEST TRAFFIC ON

Monday

TRAFFIC BY CITY

CUSTOMER REVIEWS

Average Rating: 3.5 out of 5 with 12 reviews
5 star
3
4 star
4
3 star
3
2 star
0
1 star
2

Hey there! Start your review of secgeek.net

AVERAGE USER RATING

Write a Review

WEBSITE PREVIEW

Desktop Preview Tablet Preview Mobile Preview

LOAD TIME

0.6 seconds

FAVICON PREVIEW

  • secgeek.net

    16x16

CONTACTS AT SECGEEK.NET

Domains By Proxy, LLC

Registration Private

Domain●●●●●●xy.com

14747 N Norths●●●●●●●●●●●●●●e 111, PMB 309

Sco●●●ale , Arizona, 85260

United States

1.48●●●●2599
1.48●●●●2598
SE●●●●●●●●●@domainsbyproxy.com

View this contact

Domains By Proxy, LLC

Registration Private

Domain●●●●●●xy.com

14747 N Norths●●●●●●●●●●●●●●e 111, PMB 309

Sco●●●ale , Arizona, 85260

United States

1.48●●●●2599
1.48●●●●2598
SE●●●●●●●●●@domainsbyproxy.com

View this contact

Domains By Proxy, LLC

Registration Private

Domain●●●●●●xy.com

14747 N Norths●●●●●●●●●●●●●●e 111, PMB 309

Sco●●●ale , Arizona, 85260

United States

1.48●●●●2599
1.48●●●●2598
SE●●●●●●●●●@domainsbyproxy.com

View this contact

Login

TO VIEW CONTACTS

Remove Contacts

FOR PRIVACY ISSUES

DOMAIN REGISTRATION INFORMATION

REGISTERED
2014 February 04
UPDATED
2014 February 06
EXPIRATION
EXPIRED REGISTER THIS DOMAIN

BUY YOUR DOMAIN

Network Solutions®

DOMAIN AGE

  • 10

    YEARS

  • 3

    MONTHS

  • 25

    DAYS

NAME SERVERS

1
jake.ns.cloudflare.com
2
kay.ns.cloudflare.com

REGISTRAR

GODADDY.COM, LLC

GODADDY.COM, LLC

WHOIS : whois.godaddy.com

REFERRED : http://registrar.godaddy.com

CONTENT

SCORE

6.2

PAGE TITLE
SECURITY GEEK | secgeek.net Reviews
<META>
DESCRIPTION
Just another web application security blog. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Vulnerability in Youtube allowed moving comments from any video to another. Vulnerability in Youtube allowed moving comments from any video to another. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Today, I’m going to write about an intriguing vulnerability I have found with my friend, Ibrahim M. El-Sayed. In Youtube. The vulnerability allowed us to duplicate. BookFresh Tricky File Upload Bypass to RCE. Nov 29, 2014. One Vuln...
<META>
KEYWORDS
1 about me
2 contact me
3 advisories
4 aboul3la
5 write ups
6 24 comments
7 featured post
8 hello all
9 copy
10 41 comments
CONTENT
Page content here
KEYWORDS ON
PAGE
about me,contact me,advisories,aboul3la,write ups,24 comments,featured post,hello all,copy,41 comments,33 comments,hello everyone,14 comments,10 comments
SERVER
cloudflare-nginx
POWERED BY
PHP/5.5.9-1ubuntu4.11
CONTENT-TYPE
utf-8
GOOGLE PREVIEW

SECURITY GEEK | secgeek.net Reviews

https://secgeek.net

Just another web application security blog. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Vulnerability in Youtube allowed moving comments from any video to another. Vulnerability in Youtube allowed moving comments from any video to another. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Today, I’m going to write about an intriguing vulnerability I have found with my friend, Ibrahim M. El-Sayed. In Youtube. The vulnerability allowed us to duplicate. BookFresh Tricky File Upload Bypass to RCE. Nov 29, 2014. One Vuln...

INTERNAL PAGES

secgeek.net secgeek.net
1

One Vulnerability allowed deleting comments of any user in all Yahoo sites | SECURITY GEEK

http://www.secgeek.net/yahoo-comments-vulnerability

Random ramblings in Infosec. One Vulnerability allowed deleting comments of any user in all Yahoo sites. May 23, 2014. Posted by Ahmed Aboul-Ela. Today i’m going to write about a strange and critical vulnerability that affected 90% of Yahoo’s Services such as:. Yahoo News , Yahoo Sports , Yahoo TV , Yahoo Music , Yahoo Weather, Yahoo Celebrity , Yahoo Voices and more . The vulnerability allowed me to delete any user comments in all these Yahoo sites. Example for a single article with 12565. But unfortuna...

2

osCommerce v2.x SQL Injection Vulnerability | SECURITY GEEK

http://www.secgeek.net/oscommerce-v2x-sql-injection-vulnerability

Random ramblings in Infosec. OsCommerce v2.x SQL Injection Vulnerability. Feb 6, 2014. Posted by Ahmed Aboul-Ela. This is my first writeup and i would like to start it with the 0day vulnerability that i’ve found recently in osCommerce the well known open-source commerce web application . The bug exists @ line 139 in “catalog/admin/geo zones.php”. TABLE ZONES TO GEO ZONES. A left join ". C on a.zone country id = c.countries id left join ". Z on a.zone id = z.zone id where a.geo zone id = ". Added a single...

3

BookFresh Tricky File Upload Bypass to RCE | SECURITY GEEK

http://www.secgeek.net/bookfresh-vulnerability

Random ramblings in Infosec. BookFresh Tricky File Upload Bypass to RCE. Nov 29, 2014. Posted by Ahmed Aboul-Ela. Today i’m going to write about an interesting vulnerability i’ve found in Square’s Acquisition website bookfresh.com. That was escalated to remote code execution. The story started when i saw that Bookfresh became a part of Square bug bounty program at Hackerone. So this is a simple and direct file upload bypass, right. Code , however the results returned none! It turned out that all EXIF met...

4

About me | SECURITY GEEK

http://www.secgeek.net/about

Random ramblings in Infosec. My name is Ahmed Aboul-Ela , i’m Egyptian security researcher interested in web application security,. I concentrate mainly on penetration testing and vulnerability researching, my area of expertise falls within:. Web, Mobile and Infrastructure Penetration Testing. Linux Servers and Firewalls Hardening. Event and Log Analysis. Hackerone / Bugcrowd Username:. Http:/ www.google.com/about/appsecurity/hall-of-fame/reward. Http:/ support.apple.com/en-us/HT201536.

5

Write-ups | SECURITY GEEK

http://www.secgeek.net/category/write-ups

Random ramblings in Infosec. Browsing posts in: Write-ups. Solutions for XSS Challenge – Sh*t it’s a WAF. Mar 23, 2016. Posted by Ahmed Aboul-Ela. A month ago i made an XSS challenge called Sh*t it’s a WAF. The idea of the challenge was to bypass the WAF filters and inject an XSS payload that execute alert(1337) . The challenge was a bit tricky but not hard. So let’s first explain how the WAF was working and how it could be bypassed. XSS Challenge – Sh*t it’s a WAF. Feb 18, 2016. Posted by Ahmed Aboul-Ela.

UPGRADE TO PREMIUM TO VIEW 3 MORE

TOTAL PAGES IN THIS WEBSITE

8

SOCIAL ENGAGEMENT



OTHER SITES

secgaz.ru secgaz.ru

Сектор Газа - Биография, альбомы, фото, мр3, миди, видео. Новости и статьи.

Пятница, 14.08.2015, 00:05. Биография, альбомы, фото, мр3, миди, видео. Новости и статьи. Время не стоит на месте. Всё в нашей жизни течёт, всё меняется. Уже прошло более 20 лет, с тех пор как на концертных площадках и в кассетных магнитофонах, зазвучали первые песни группы Сектор газа. Источник: www.hoy-sektor.ru. Юрий Клинских (Хой) подарил нам всем вечные песни! Время не стоит на месте. Источник: www.hoy-sektor.ru. Юрий Клинских (Хой) подарил нам всем вечные песни! Комментирует Миша Рыцаревъ: песня эт...

secgc.submittable.com secgc.submittable.com

SECGC Submission Manager

Welcome, to the SECGC (State Employee Charitable Giving Campaign) application process. Please fill out the application that relates to your organization. If you have previously participated in the SECGC campaign your SECGC number remains the same. If you have any additional questions or need assistance please email Jessica Tate at. If this is the first time using the Submittable platform you will have to register your email address to submit your application.

secgcc.org secgcc.org

Southeast Coastal Georgia Computer Club - Home

Southeast Coastal Georgia Computer Club. The Southeast Coastal Georgia Computer Club. Was formed to provide a forum for the exchange of information about computers and information technology. Meetings are held on the first Tuesday of each month at two different meeting locations. For details. Meetings typically include a presentation on a designated computer or IT related topic followed by a question and answer session. Tuesday, September 1, 7:00 pm - 9:00 pm. Visit the Past Meetings.

secge.org secge.org

secge.org

Buscar en este sitio. XII Certamen Juvenil de Gestión Empresarial "Esperanza de Desarrollo". Premios, Bases y Condiciones. XII Edición - 2014. XII Certamen Juvenil de Gestión Empresarial "Esperanza de Desarrollo". Certamen Juvenil de Gestión Empresarial Esperanza de Desarrollo. Organizado por la Acción Católica Argentina. Y la Asociación Cristiana de Jóvenes-YMCA. Con los siguientes auspicios:. Ministerio de Educación de la Nación. Ministerio de Turismo de la Nación. Ministerio de Turismo de Río Negro.

secgear.com secgear.com

www.secgear.com

secgeek.net secgeek.net

SECURITY GEEK

Just another web application security blog. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Vulnerability in Youtube allowed moving comments from any video to another. Vulnerability in Youtube allowed moving comments from any video to another. Apr 14, 2015. Posted by Ahmed Aboul-Ela. Today, I’m going to write about an intriguing vulnerability I have found with my friend, Ibrahim M. El-Sayed. In Youtube. The vulnerability allowed us to duplicate. BookFresh Tricky File Upload Bypass to RCE. Nov 29, 2014. One Vuln...

secgeeks.com secgeeks.com

SecGeeks - Information Security Tools, Blogs, Botnets, Vulnerability, Reversing | Stay Aware, Stay Secure!

SecGeeks - Information Security Tools, Blogs, Botnets, Vulnerability, Reversing Facebook. SecGeeks - Information Security Tools, Blogs, Botnets, Vulnerability, Reversing Twitter. SecGeeks - Information Security Tools, Blogs, Botnets, Vulnerability, Reversing RSS. Salesforce Patches XSS on a Subdomain. On Thursday, 13 August 2015. Salesforce.com patched a cross-site scripting vulnerability on one of its domains that could have led to phishing attacks. Read more about Salesforce Patches XSS on a Subdomain.

secgel.com secgel.com

Secgel Geschenkartikeln - Münsterstr. 35 - 44145 Dortmund - Deutschland Tel: +49 231/ 810303

Münsterstr. 35 - 44145 Dortmund - Deutschland Tel: 49 231/ 810303 - info@secgel.com.

secgelsin.com secgelsin.com

Sunset Bilişim Teknoloji Ürünleri Tic. ve San. Ltd. Şti.

199;anta / Ayakkabı. Ev Tekstili / Mobilya / Banyo. IMB Canlı Yayın Sistemleri. Kozmetik / Kişisel Bakım. Saat / Gözlük / Aksesuar. Güvenlik ve Konfor Ürünleri. Cep Telefonu ve Akıllı Telefon. Giyilebilir Teknoloji (Smart Wear). Taşınabilir Pilli Şarj Cihazları. Telsiz / Masaüstü Telefonlar. IPhone - iPad Aksesuar. Fotoğraf Makinesi ve Kamera. Aynasız Kompakt SLR Makineler. Outdoor / Sualtı Fotoğraf Makineleri. Hafıza Kartı ve Kart Okuyucuları. Pil ve Şarj Cihazları. Ses ve Görüntü Sistemleri. Selamlıque...

secgems.com secgems.com

SECGems

View SEC Filing stats. Aug 13, 2015. Thru all filings: from 30 seconds ago. To 20 years ago. Between people and companies. 100% of SEC filings for all companies from 1995 till date - stored and processed on-site. Contact us for feature requests, issues, questions or comments! Search by entering one or more of the following:. Choose search option *. Everything (Exhibits, PDFs, etc). Stock Symbol / Ticker. Central Index key (CIK). Person or Company name. DEF14A : Definitive proxy statements. Related to...

secgems.wordpress.com secgems.wordpress.com

GEMS @ South Essex College – Greater English & Maths Success

GEMS @ South Essex College. Greater English and Maths Success. About GEMS @ South Essex College. October 6, 2014. The first MSI GEMS sessions took place today in all three Campuses. Students in Southend were in a very cold Atrium but kept warm by exercising their brains with Maths problems. Other students will be testing their skills throughout the week. Despite the cold the super classrooms were a hit. Collaborative Group Based Learning – Beauty Level 2. September 30, 2014. September 30, 2014. Can be al...