Circuit City Warranty Anguish

This post is completely off topic for this blog. I beg your indulgence while I rant for a bit. In 2005 I bought a Samsung DLP at Circuit City and purchased Circuit City’s extended warranty as well. I normally don’t buy those, but given the price of the TV and the newness of the technology …

Continue reading ‘Circuit City Warranty Anguish’ »

Chase Credit Card Tape Loss

Chase Circuit City has joined the lost Personally Identifying Information club. “Chase Card Services is notifying some current and former Circuit City credit card account holders that computer tapes containing their personal information were mistakenly identified as trash and thrown out. If your personal information was included on the tapes, you will be notified by …

Continue reading ‘Chase Credit Card Tape Loss’ »

More Invision Power Board Vulnerabilities

Six Apart’s free support bulletin board for Movable Type has been offline for maintenance since this past weekend. I just saw why on Bugtraq. Looks like there is another SQL injection exploit in Invision Power Board that will grant an attacker admin access. This is a vulnerability in versions prior to 2.1.7. Hopefully they’ll get …

Continue reading ‘More Invision Power Board Vulnerabilities’ »

Circuit City Discussion Board 0wned

I posted here and here on May 20th regarding exploitation of Invision Power Board bulletin board using in Movable Type’s support forum such that the BB would serve up WMF exploits via IFRAME. I even submitted the incident along with links to the Secunia writeup to SANS and it was published in the ISC on …

Continue reading ‘Circuit City Discussion Board 0wned’ »