Latest Security News
User Name :
 
Password :
 
Lost Password? Login
Save this Password
Verified
LogiGuard.pdf
Search for Vulnerabilities
Enter vendor, software, or keyword

Powered by the National Vulnerability Database

   
 
 

HackerGuard, LogiGuard’s premier website scanning and verification service now offers new services including URLGuard Monitor and SiteGuard Monitor. These services are offered to all existing and future HackerGuard clientele free of charge.

Please check back frequently with LogiGuard as our product base continues to expand to meet the internet’s expanding and ever evolving security needs.

The HackerGuard test is a live test that replicates the actions of real life attackers, and is the first step after a Vulnerability Assessment. This program simulates an actual attack without putting your site at risk of actual entry. Moreover, by conducting the HackerGuard scanning test you will gain hands on experience in evaluating your security and preparing your defenses against the real thing. As detailed in the summary below, LogiGuard offers the 25 Point Test Verification Program which enables your website to display the HackerGuard logo and promote safe and secure customer activities.

LogiGuard LLC offers premium internet security services. Our flagship security product, HackerGuard, offers vulnerability assessment and monitoring for your website, whether you operate as retailer, bank or government institution. HackerGuard is especially valuable for those websites where customers purchase products or offer other personal information over the internet.

With security issues often inhibiting sales and other transactions, HackerGuard offers authentication providing a safe and secure shopping experience to your customers. When your website passes the 25 Point Test Verification Program, the HackerGuard logo will appear on your website and offer prospective customers a symbol of confidence as a protection against common vulnerabilities exploited by hackers to obtain server information.

HackerGuard image seal choices SafeSite image seal choices

Our vision is to provide reliable information to websites about the common vulnerabilities that could potentially prove hazardous if left unchecked and verify this information with our HackerGuard logo. Security on the internet for all consumers is what drives our company to verify and continuously update our awareness of the possible vulnerabilities that can lead to adverse consequences for business conducted over the internet. We have developed a program that allows affordable security monitoring to all websites. The bottom line is increased sales volume to retailers and increased trust and satisfaction for consumers

Get the latest security updates from the hottest sources

Get the expert advice from the security leaders

Retailers prefer HackerGuard to other competitors due to both the added benefits of the 25 Point Test Verification Program as well as the cost savings over other verification service providers. We understand that margins in retail business are tight and that retailers need affordable security products to attract customers and close internet sales. With HackerGuard, these goals are met and you can provide your customer with the confidence that you are doing everything possible to make your website safe and secure while keeping your margins intact.

LogiGuard has partnered with several key Web Hosting service providers in order to offer their customers extended security. Shoppers will feel assured that their private information is being treated with the highest security standards possible.

LogiGuard provides tenacious monitoring services for large institutions and organizations. Government entities and other large institutions can feel assured that the additional level of monitoring on their website will promote the level of security needed to mitigate hacking liabilities.

  • HackerGuard automatically emails scan results daily offering updated verification for your website
  • Includes proactive attacks finding not only known vulnerabilities, but also potential new ones
  • Automatically discovers and analyzes the server's configuration to determine which tests are needed
  • Includes an HTTP explore function permitting LogiGuard to scan a range of IP addresses for running web servers
  • Filters false positives
  • Includes Forceful Browsing attacks allowing access to restricted parts in the web server directory
  • Supports proxy servers and proxy authentication
  • Includes LogiGuard’s baseline security software ensuring security against outdated server software
  • Supports host authentication
  • Includes an exploit terminal allowing you to send HTTP requests and view the server's response
  • Includes a slowdown mechanism which is a powerful tool when performing DoS attacks
  • Automatically includes self updates
  • Scans web pages in various formats such as ASP, CGI, PHP, ColdFusion, and others
  • Scans devices such as routers and firewalls that run web sites
  • Allows to specifically scan for SANS Top 20 vulnerabilities
  • Allows to open non-destructive scans
  • Supports command line operation
  • Allows to define a range or list of IP addresses to be scanned
  • Tests IDS - intrusion detection systems for evasions exploitations
  • Supports both HTTP and HTTPS (SSL) protocols
  • Produces simple, easy to read HTML reports
  • Supports Bugtraq, CVE (and CAN)
  • Stores scan results and reports as XML files, making it potentially possible to interoperate with other tools
  • Stores and allows you to view the HTTP request and response for each
  • Provides more security checks than any other security-based company for all leading web server platforms -- target servers can be local or remote

LogiGuard now offers HackerGuard customers URLGuard Monitor. Along with daily scanning services, your site will be reviewed every 10 minutes to ensure your site is up and active. If your site has failed to respond you will be notified immediately.

HackerGuard services will also include SiteGuard Monitor. This new service will review your website and inspects for any changes or updates to your site. If there are changes occurring to your site, you need to know. LogiGuard will notify designated system administrators of any changes in FTP updates.

Top

Latest Vulnerabilities

Recent vulnerabilities published within the National Vulnerability Database.

  • CVE-2008-3001 (Drupal, aggregation_module)

    The Aggregation module 5.x before 5.x-4.4 for Drupal allows remote attackers to upload files with arbitrary extensions, and possibly execute arbitrary code, via a crafted feed that allows upload of files with arbitrary extensions.

  • CVE-2008-3000 (Drupal, aggregation_module)

    The Aggregation module 5.x before 5.x-4.4 for Drupal, when node access modules are used, does not properly implement access control, which allows remote attackers to bypass intended restrictions.

  • CVE-2008-2999 (Drupal, aggregation_module)

    Multiple SQL injection vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

  • CVE-2008-2998 (Drupal, aggregation_module)

    Multiple cross-site scripting (XSS) vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

  • CVE-2008-2997 (gravity_board_x)

    Cross-site scripting (XSS) vulnerability in index.php in Gravity Board X (GBX) 2.0 Beta allows remote attackers to inject arbitrary web script or HTML via the subject parameter in a postnewsubmit (aka create new thread) action.

  • CVE-2008-2996 (gravity_board_x)

    Multiple SQL injection vulnerabilities in index.php in Gravity Board X (GBX) 2.0 Beta, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) searchquery parameter in a getsearch action, and the (2) board_id parameter in a viewboard action.

  • CVE-2008-2995 (phpeasydata)

    Multiple SQL injection vulnerabilities in PHPEasyData 1.5.4 allow remote attackers to execute arbitrary SQL commands via (1) the annuaire parameter to annuaire.php or (2) the username field in admin/login.php.

  • CVE-2008-2994 (phpeasydata)

    Multiple cross-site scripting (XSS) vulnerabilities in PHPEasyData 1.5.4 allow remote attackers to inject arbitrary web script or HTML via the (1) annuaire parameter to (a) last_records.php and (b) annuaire.php and the (2) by and (3) cat_id parameters to annuaire.php.

  • CVE-2008-2993 (fog_forum)

    Multiple directory traversal vulnerabilities in index.php in FOG Forum 0.8.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) fog_lang and (2) fog_skin parameters, probably related to libs/required/share.inc; and possibly the (3) fog_pseudo, (4) fog_posted, (5) fog_password, and (6) fog_cook parameters.

  • CVE-2008-2990 (Joomla, com_facileforms)

    PHP remote file inclusion vulnerability in facileforms.frame.php in the FacileForms (com_facileforms) component 1.4.4 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the ff_compath parameter.

  •