THE CENZIC BLOG
Read more articles in  Cenzic SmartAttack Updates for Web Vulnerabilities
.
October 17, 2008

Cenzic Updates Its SmartAttacks for Parameter Addition, Session Hijacking, and Privilege Escalation

Cenzic provides enhanced support for their Parameter Addition, Session Hijacking, and Privilege Escalation SmartAttacks

In this week’s SmartAttack release, Cenzic’s SmartAttack arsenal now has enhanced support for:

  • Parameter Addition,
  • Session Hijacking,
  • Privilege Escalation,
  • And our Web Server Vulnerabilities SmartAttack
    -Tomcat may let Remote User access restricted context (SecurityTracker Alert ID:  1021039)

To learn more details on how you can automatically update your Cenzic Hailstorm product, visit our Website.

Background on Cenzic’s SmartAttacks
Every week, Cenzic’s suite of products is updated with the latest vulnerabilities (custom, commercial, and open-source) to use when it emulates a hacker and attacks our customer’s Websites to detect their security posture.   These Web application vulnerabilities include (but not limited to) cross site scripting, buffer overflow, path or directory traversal, SQL injection, HTTP response splitting, and other workflow types.

by
Erin Swanson
ESwanson@cenzic.com


Syndication OptionsRSS (Rich Site Summary) Feed Atom Feed OPML (Outline Processor Language) Feed MYST-ML (MyST Markup Language) Content Feed MS-Office Smart Tag Subscription