(Full disclosure: I am Tasos Laskos, the founder and lead developer.)

Submission + - Arachni v1.0, the F/OSS webappsec scanner with integrated browser environments

Zapotek writes: In the world of web application security scanners, the disparity in crawl coverage and vulnerability detection has always been rather significant between commercial offering from big names such as IBM and Hewlett-Packard and F/OSS projects; this was in no small amount due to the fact that F/OSS systems have been severely lacking in support for modern technologies, such as HTML5/JavaScript/AJAX/DOM. The Arachni Framework v1.0 has now crossed that line and is the first F/OSS system to support such complex features, allowing it to surpass even the most established commercial offerings in vulnerability coverage, detection and accuracy. In an effort to make a quality security scanner available to all, we would like to invite penetration testers and administrators to try it, provide us with their valuable feedback and generally get the word out. Thank you in advance, Tasos Laskos — founder and lead developer.

Submission + - The true reasons behind the LHC site defacement, o (

Zapotek writes: "Many news sites have misinterpreted the message of the defacement of CERN's LHC website left by Greek crackers.

Thankfully, a colleague and friend of mine, George Chlapoutakis (also known as DarkSYN) got his hands on a genuine screenshot of the defacement containing the full message in the Greek language and proceeded to write an accurate translation.
The story sums up as follows:

The purpose of GST (or Greek Security Team's) intrusion was neither to disrupt the experiment, nor to humiliate the CERN admins.
Their statement was against their adversaries in the Greek underground scene and the only reason they chose this site was due to it's extraordinary traffic.



Submission + - (Beta) :: Projects :: vget (

Zapotek writes: "vget is a Linux video downloader for the Veoh service.
It is written in C using the cURL, libXML2 and ncurses libraries.
vget requires no personal data, no authentication of any kind and no registration.
Finally, it downloads the full-time, high-resolution, original uploaded videos."

