PHP Web Host - Quality Web Hosting For All PHP Applications Just Great Software
  Login or Register
 • Home • Downloads • Your Account • Forums • 
Site Navigation

Home:

 
Donate o Meter
Help Keep Our Servers Online AND Our Services Free!
Make donations with PayPal!
Donations
Cheyenne_Brave Jul-28
dschulze Jul-18
SixOneTonOfFun Jul-9
Doulos Jul-3
 
Please Link To Me!
 
Quality Web Hosting For All PHP Applications
Quality PHP Web Host!

Great Reviews!
Need help setting up your website, installing Apache, PHP, MySQL, or RavenNuke(tm)?
Need help customizing or designing scripts?
Please contact us via the Contact Us option for further details and pricing.

Link to Me

RavenPHPScripts

RavenPHPScripts

There are more Link To Me icons here.
 
Site Info v2.2.2 ©
Your IP: 38.107.191.95

 Welcome, Anonymous
Nickname
Password
Security Code:
Security Code
Type Security Code:

· Register
· Lost Password
Server Date/Time
29 July 2010 19:56:36 EDT (GMT -4)
 
Mozilla Thunderbird Multiple Vulnerabilities 
Security SECUNIA ADVISORY ID: SA33205
VERIFY ADVISORY: http://secunia.com/advisories/33205/
CRITICAL: Highly critical
IMPACT: Security Bypass, Cross Site Scripting, Exposure of sensitive information, System access.

SOFTWARE: Mozilla Thunderbird 2.x - http://secunia.com/advisories/product/14070/
DESCRIPTION: Some vulnerabilities have been reported in Mozilla Thunderbird, which can be exploited by malicious people to bypass certain security restrictions, disclose sensitive information, conduct cross-site scripting attacks, or potentially compromise a user's system. For more information: SA33184. The vulnerabilities are reported in version 2.0.0.18 and prior.
Posted by Raven on Wednesday, December 17, 2008 @ 21:12:18 EST (875 reads)
(Read More... | 1659 bytes more | Score: 0)
Mozilla Firefox 2 Multiple Vulnerabilities 
Security SECUNIA ADVISORY ID: SA33184
VERIFY ADVISORY: http://secunia.com/advisories/33184/
CRITICAL: Highly critical
IMPACT: Security Bypass, Cross Site Scripting, Exposure of sensitive information, System access

SOFTWARE: Mozilla Firefox 2.0.x - http://secunia.com/advisories/product/12434/
DESCRIPTION: Some vulnerabilities have been reported in Mozilla Firefox, which can be exploited by malicious people to bypass certain security restrictions, disclose sensitive information, conduct cross-site scripting attacks, or potentially compromise a user's system. The vulnerabilities are reported in versions prior to 2.0.0.19.
Posted by Raven on Wednesday, December 17, 2008 @ 21:08:01 EST (882 reads)
(Read More... | 4001 bytes more | Score: 0)
Mozilla Firefox 3 Multiple Vulnerabilities 
Security SECUNIA ADVISORY ID: SA33203
VERIFY ADVISORY: http://secunia.com/advisories/33203/
CRITICAL: Highly critical
IMPACT: Security Bypass, Cross Site Scripting, Exposure of sensitive information
SOFTWARE: Mozilla Firefox 3.x - http://secunia.com/advisories/product/19089/

DESCRIPTION: Some vulnerabilities have been reported in Mozilla Firefox, which can be exploited by malicious people to bypass certain security restrictions, disclose sensitive information, conduct cross-site scripting attacks, or potentially compromise a user's system. The vulnerabilities are reported in versions prior to 3.0.5.
Posted by Raven on Wednesday, December 17, 2008 @ 21:00:55 EST (1006 reads)
(Read More... | 2355 bytes more | Score: 0)
Nukedit *dbsite.mdb* Database Disclose Security Issue 
Security SECUNIA ADVISORY ID: SA33165
VERIFY ADVISORY: http://secunia.com/advisories/33165/
CRITICAL: Moderately critical
IMPACT: Exposure of sensitive information
SOFTWARE: Nukedit 4.x - http://secunia.com/advisories/product/10231/

DESCRIPTION: Cyber.Zer0 has discovered a security issue in Nukedit, which can be exploited by malicious people to disclose sensitive information. This security issue is confirmed in version 4.9.8. Other versions may also be affected.
Posted by Raven on Wednesday, December 17, 2008 @ 15:17:36 EST (996 reads)
(Read More... | 1184 bytes more | Score: 0)
Call Of Duty - World At War Clan PHPNuke Theme 
PHP-Nuke Themestrunks writes "PHP-Clans are proud to announce the release of the Call Of Duty - World at war phpnuke theme, for our gaming communities and clans alike. As promised we've included all the extras that we usually give to you! As well as a scrolling footer information, so you can easily place all the content you need in there!

Want to view the theme? Click Here

We also have a large collection of clan themes in our store, why not check them out here. And get discounted clan web hosting with it here. If you don't see the theme you like here, why not request a phpnuke clan theme in our forums here.

"
Posted by Raven on Tuesday, December 16, 2008 @ 00:06:25 EST (2397 reads)
( | Score: 0)
MediaWiki Multiple Vulnerabilities 
Security SECUNIA ADVISORY ID: SA33133

VERIFY ADVISORY: http://secunia.com/advisories/33133/

CRITICAL: Moderately critical

IMPACT: Cross Site Scripting

SOFTWARE: MediaWiki 1.x - http://secunia.com/advisories/product/2546/

DESCRIPTION: Some vulnerabilities have been reported in MediaWiki, which can be exploited by malicious users to conduct script insertion attacks and by malicious people to conduct cross-site scripting and request forgery attacks.
Posted by Raven on Monday, December 15, 2008 @ 21:21:18 EST (905 reads)
(Read More... | 2473 bytes more | Score: 0)
Microsoft Anti-Cross Site Scripting Library V3.0 Beta 
Tool and UtilitiesNB1 writes "The Microsoft Anti-Cross Site Scripting Library V3.0 (Anti-XSS V3.0) is an encoding library designed to help developers protect their ASP.NET web-based applications from XSS attacks.

It differs from most encoding libraries in that it uses the white-listing technique -- sometimes referred to as the principle of inclusions -- to provide protection against XSS attacks. This approach works by first defining a valid or allowable set of characters, and encodes anything outside this set (invalid characters or potential attacks). The white-listing approach provides several advantages over other encoding schemes. New features in this version of the Microsoft Anti-Cross Site Scripting Library include: - An expanded white list that supports more languages - Performance improvements - Performance data sheets (in the online help) - Support for Shift_JIS encoding for mobile browsers - A sample application - Security Runtime Engine (SRE) HTTP module


Download  Microsoft Anti-Cross Site Scripting Library V3.0 Beta
"
Posted by Raven on Monday, December 15, 2008 @ 15:23:44 EST (905 reads)
( | Score: 0)
RoundCube Webmail *bin/html2text.php* PHP Code Execution 
Security SECUNIA ADVISORY ID: SA33169
VERIFY ADVISORY: http://secunia.com/advisories/33169/
CRITICAL: Highly critical
IMPACT: System access
SOFTWARE: RoundCube Webmail 0.x - http://secunia.com/advisories/product/19066/
DESCRIPTION: A vulnerability has been discovered in RoundCube Webmail, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is confirmed in version 0.2-beta.
Posted by Raven on Monday, December 15, 2008 @ 12:40:01 EST (2151 reads)
(Read More... | 1289 bytes more | Score: 0)
Many modules for you: see the many mods and get more code now! 
Add-Onsnukeevangelist writes "

- slaytanic.sourceforge.net
- sergids.com
- miguelo.org released NaviNuke-Block
- nukecode.com
"
Posted by Raven on Sunday, December 14, 2008 @ 16:32:00 EST (863 reads)
( | Score: 0)
Backup_Restore Utility 
MySQLpapamike writes "Some of you may know me for the themes I build but my career went way further than that. I'm a retired Network Engineer who for 33 years worked in just about every area of a computer center that you can thnk of. But I'm not here to talk about me, I'm here to pass along to you the information I gathered while I conducted a test of the Backup_Restore utility that I released just for RavenNuke(tm) that's used to backup and if needed to restore your sql tables and data information.

This week started out just like every other one. I'm an invalid suffering from a variety of medical conditions so I sit in my chair everyday and create things on my computer. I got this crazy idea that I wanted to test the Backup_Restore utility that I had worked on and released a couple of weeks back. So to satisfy my craving I decided to conduct a realtime intrusion/forced entry attack on my root account which has 7 SQL databases. The reason I did this was to test my Backup_Restore utility under actual conditions where the entire SQL is compromised and deleted.

Before I started I backed up all of the databases just the same way I do everyday using the Backup_Restore utility that I designed and modified for RavenNuke(tm). Next I entered my root account (simulated hack attack) and deleted the entire SQL installation. This effectively wiped out all of my databases.

I started to recover right away.
- I changed the root username and password
- Reinstalled MySQL.
- Used phpMyAdmin to recreate the databases, usernames and passwords
- Edited the Backup_Restore config file for each site by adding the new Db info I created earlier and uploaded them to each domain directory using FTP.
- Uploaded and installed the database tables and data.

Everything went smoothly and I was back online with no errors in just a few minutes. This was the ultimate method I could think of to fully test my Backup_Restore.utility and it passed with flying colors.

I am now working on a new release which will work even better than this first release.

I did discover an error a couple of days later that I will need to address in the next stable release. When you install your database using Backup_Restore you must make sure that all tables in your database are dropped. This is easy to do using phpMyAdmin. If you don't drop the tables and data the BigDump restore utility will render an error message and stop.

I think that everyone should get a copy of my utility and use it to backup your databases daily. It only takes a few seconds to run the backup utility and have the data e-mailed to you. Visit me at http://www.papamikecreations.net to get your copy today.

Thanks and Happy Holidays to everyone
"
Posted by Raven on Friday, December 12, 2008 @ 10:54:11 EST (794 reads)
( | Score: 0)
Partners

Clan-Themes
Making clans look good!
phpDesigner
PHP Editor/IDE for all PHP/Web development
CSE HTML Validator
ip address masquerading
CoffeeCup Software
Just Great Software
Code Authors
Home of Spam Blocker
Montego Scripts

 
Recommended Sites
Montego Scripts - Home of HTML Newsletter

Code-Authors.com

nukeSEO.com

RavenNuke(tm) Test site

Totally Nuked Mods

Codezwiz Your #1 Help Resource

CSE HTML Validator Helped Clean up This Page!

PC Sympathy - Your Source for PC News and Technical Support

Mantis Bugtracker

Nuke-Evolution

TrickedOutNews.com - Home of Tricked Out News Mod, FaceBox and SlimBox RavenNuke(tm) mods

FLASH-FOR-NUKE

 
Old Articles

Thursday, May 20
· 2 New Themes Released For RavenNuke(tm) (0)
Wednesday, May 19
· GamerCards Module Released (0)
· Join RavenNuke(tm) Official Group on Facebook (0)
Thursday, May 13
· HTML 5 Comes With SQL Injection Risks (0)
· Call of Duty Black Ops Theme Released (0)
Wednesday, May 12
· MySQL Multiple Vulnerabilities (0)
Monday, May 10
· phpnuke.org has been compromised (0)
· PHPNuke-Install is open (0)
Tuesday, May 04
· Themes and Support Banners (0)
Saturday, May 01
· Medal of Honor Theme Released (0)
Tuesday, April 13
· Apache.org hit by targeted XSS attack, passwords compromised (0)
Monday, March 29
· 2 New Themes Released -- Papa Mike Creations (0)
· Tricked Out News 2.5 released (0)
· RavenNuke(tm) v2.40.01 Released! (0)
Saturday, March 27
· New Theme Released for RavenNuke(tm) (0)
Monday, March 22
· Google releases web security scanner (0)
Sunday, March 21
· TegoNuke(tm) Twitter Block 0.1.0 (Beta) Released (0)
Thursday, March 18
· Google Chrome Multiple Vulnerabilities (0)
Monday, March 15
· Bioshock 2 Theme Released (0)
Friday, March 12
· Top free troubleshooting tools for Windows (0)

Older Articles
 
Verse of the Day
 
Daily Inspiration
 
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2010 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum