1. Mutable strings in Mono

    Update 2010-12-17: Those of you who saw this post appear and then vanish were not seeing things. The Mono community identified the contents of this blog post as a serious security vulnerability in Moonlight that, through violation of the type system, allows the CoreCLR security layer to be bypassed. Attackers ...

  2. Facebook Application Smashing

    A friend and I are starting a new blog to expose vulnerabilities in Facebook applications. Since Facebook has a reputation of being secure, people seem to trust whatever applications will integrate with it. However, careless coding by third parties can allow all kinds of attacks, some of which can result ...

