Get a Pentest and security assessment of your IT network.

News

Drupal security update fixes a laundry list of problems, including predictable random numbers

The Debian Linux security team recently pushed out an wry security advisory for popular web content management system (CMS) Drupal. Multiple vulnerabilities have been discovered in Drupal, a fully-featured content management framework. The new code uses a function that at least tries to use a cryptographic-quality random generator, drupal_random_bytes() calling OpenSSL or reading from Unixs /dev/urandom. The old code used a PHP function called mt_rand() for generating random passwords.”]

Source: https://nakedsecurity.sophos.com/2013/11/29/drupal-security-update-fixes-a-laundry-list-of-problems-including-predictable-random-numbers/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

RasGas, The Second Victim!

News

Technical analysis of the Locker virus on mobile phones