Technical

Upgrades, moves, and new services

Thursday, September 25th, 2008

Please don’t think that because I haven’t written anything for a month that there hasn’t been anything worth writing about. Far from it! We’ve been a tad busy here at Netnibble and it’s been more important to get all the forward planning and work done (details below) than detail it here (until now). So, without [...]

Joomla! 1.5.* Vulnerability

Thursday, August 14th, 2008

Project: Joomla!
SubProject: com_user
Severity: Critical
Versions: 1.5.5 and all previous 1.5 releases
Exploit type: Password Reset Forgery
Reported Date: 2008-August-12
Fixed Date: 2008-August-12
Description
A flaw in the reset token validation mechanism allows for non-validating tokens to be forged. This will allow an unauthenticated, unauthorized user to reset the password of the first enabled user (lowest id). Typically, this is an administrator [...]

What is SLM memory?

Tuesday, March 25th, 2008

We’ve been asked this question a couple of times recently, so I’ll add this reply to our Knowledgebase shortly but, for those reading this blog (and knowing that Dave is currently working up a special offer for visitors here), here’s a quick exlanation of what SLM memory is:
SLM is the method of memory management we [...]