Recent posts



SECURITY ALERT: dasBlog. Download and install patch.

Security expert <span lang=EN-US>Dominick Baier</span> made me aware of a security vulnerability in dasBlog at the beginning of last week. Dominick will post a concrete advisory later this week for reasons of completeness, but we want to give everyone a chance to patch their systems, because exploits are embarrassingly simple to write.

The problem affects all versions of dasBlog and allows a specially crafted cross-site scripting attack that would...

[Read more]