Great Reviews!Need help setting up your website, installing Apache, PHP, MySQL, or RavenNuke(tm)?Need help customizing or designing scripts?Please contact us via the Contact Us option for further details and pricing.
papamike writes "I have revamped my website and now I'm running all RavenNuke(tm). Before I ran a combination of various open source software all running together. I still design those types of websites just not mine.
I will be releasing my newest theme in a week or so but I will keep it to myself until I release it.
If you drop by you will find all of my RN themes in the downloads area and if you had registered at my site before you will need to register again because I ran phpBB3 before now I have pnpBB2.
Anyway, stop by and say hello.
Take Care,
Mike"
Posted by Raven on Wednesday, September 09, 2009 @ 22:06:19 EDT (544 reads) ( | Score: 0)
[ UPDATE:Microsoft has now confirmed this vulnerability and warns of code execution risk ]
Exploit code for a remote reboot flaw in Microsoft’s implementation of the SMB2 protocol has been posted on the internet, exposing users of Windows 7 and Windows Vista to the teardrop attacks that used to be popular on Windows 3.1 and Windows 95. The demo code, published on the Full Disclosure mailing list, allows an attacker to remotely crash any Windows 7 or Windows Vista machine with SMB enabled. No user action is required.
From the advisory: SRV2.SYS fails to handle malformed SMB headers for the NEGOTIATE PROTOCOL REQUEST functionality. The NEGOTIATE PROTOCOL REQUEST is the first SMB query a client send to a SMB server, and it’s used to identify the SMB dialect that will be used for further communication.
The researcher who discovered the issue said Windows 2000 and Windows XP are not affected because they do not have the vulnerable driver.
The exploit has been added to the Metasploit point-and-click attack tool. Metasploit’s HD Moore believes the bug was introduced with Windows Vista SP1.
The folks at The H Online got the exploit to fire on Windows Vista but could not replicate the issue on Windows 7. In the absence of a patch from Microsoft, they suggest closing the SMB ports by un-ticking the boxes for file and printer access in the firewall settings.
Posted by Raven on Wednesday, September 09, 2009 @ 18:55:41 EDT (740 reads) ( | Score: 0)
Microsoft Windows DHTML Editing ActiveX Control Vulnerability
DESCRIPTION: A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system.
Posted by Raven on Tuesday, September 08, 2009 @ 14:48:08 EDT (739 reads) (Read More... | 1847 bytes more | Score: 0)
Tag Cloud addon for Tricked Out News
nuken writes "TrickedOutNews is happy to announce a Tag Cloud mod for the Trickedoutnews mod for RavenNuke(tm). The download includes a Cloud Tag Module, the replacement files for the News and an installer for the database files."
Posted by Raven on Monday, September 07, 2009 @ 16:53:37 EDT (618 reads) ( | Score: 0)
iFrame Generator Module
dementeddogz writes "iFrame generator Module - add an iFrame Generator to your website for your users
Posted by Raven on Monday, September 07, 2009 @ 01:51:21 EDT (510 reads) ( | Score: 0)
Gaming testers needed
nextgen writes "I am looking for some Gamers to help test a new site with over 1200 games installed. This test is for a release of the Gamers modified release project at www.NukeOptimized.com . Once the games have been tested to be fully functional i will release the entire site code to the community. So if you are interested in Gaming and Arcade Games then come over to the Site and join to become a Beta tester to help ensure all games are working. Once registered and added to the Beta testers group you will receive the code to test either locally on your drive or at my Beta site: http://www.baltimore-sports.com . Thanks for your time and come on over and begin testing. at http://www.nukeoptimized.com . I also have several other projects that are ready for testing so if you have some spare time and want to help improve the projects then please visit."
Posted by Raven on Saturday, September 05, 2009 @ 15:52:53 EDT (550 reads) ( | Score: 0)
Security Alert: Labor Day Sale-Related SEO Poisoning Leads to Rogue Antivirus
Websense Security Labs(TM) ThreatSeeker Network has detected that Google searches on terms related to Labor Day sales return results that lead to rogue antivirus software. Labor Day is one of the biggest holidays observed in the US each year. Retail sales events held during this weekend are some of the most anticipated throughout the country.
When Google is used to search for terms related to Labor Day sales, malicious URLs as high as the first result are returned. Upon clicking an affected search-result link, JavaScript code redirects the user to a Web site advising them that their machine is infected with viruses. It then proceeds to offer free (rogue/fake) AV software. AOL and ASK.com are also affected in a similar way.
Websense® Messaging and Websense Web Security customers are protected against this attack.
DESCRIPTION: Some vulnerabilities have been reported in Sun Java System Active Server Pages, one having an unspecified impact, while others can be exploited by malicious users to compromise a vulnerable system and by malicious people to cause a DoS (Denial of Service). The vulnerabilities are reported in version 4.0.3. Other versions may also be affected.
Posted by Raven on Friday, September 04, 2009 @ 00:42:31 EDT (738 reads) (Read More... | 1232 bytes more | Score: 0)
LiteSpeed Web Server Two Unspecified Vulnerabilities
DESCRIPTION: Two vulnerabilities have been reported in LiteSpeed Web Server, which can be exploited by malicious users to compromise a vulnerable system and malicious people to cause a DoS (Denial of Service). The vulnerabilities are reported in version 3.3.19. Other versions may also be affected.
Posted by Raven on Friday, September 04, 2009 @ 00:37:03 EDT (788 reads) (Read More... | 970 bytes more | Score: 0)