oDesk Time Tracker Vulnerabilities
When SSL is not enough
oDesk Time Tracker does not verify the SSL certificate of the host it connects to thus becoming vulnerable to various Man-in-the-Middle attacks (if an attacker is able to spoof DNS for team.odesk.com — say, by setting up a fake DHCP and DNS servers in the local network — or posion the DNS cache or whatever — this is [...]
← Вернуться к полной версии записи «oDesk Time Tracker Vulnerabilities»…
Автор: Vladimir; опубликовано в: Безопасность; метки: MITM, nginx, oDesk, PHP, SSL, атака, спуфинг, уязвимостьИюн
2009
Комментарии к статье «oDesk Time Tracker Vulnerabilities» (3) »
Пожалуйста, не используйте эту форму для комментирования! Данная форма предназначена исключительно для ботов.
Оставить комментарий к записи «oDesk Time Tracker Vulnerabilities»
गते गते पारगते पारसंगते बोधि स्वाहा
Меня зовут Владимир, я программист-фрилансер, специализирующийся на Web-программировании и програмировании под Linux.
По совместительству занимаюсь администрированием LAMP/LNMP-серверов и техническим переводом.


[...] Today found this great post, here is a quick excerpt : oDesk Time Tracker does not verify the SSL certificate of the host it connects to thus becoming vulnerable to various Man-in-the-Middle attacks (if an attacker is able to spoof DNS for team.odesk.com — say, by setting up a fake DHCP and … Read the rest of this great post Here [...]
[...] Today found this great post, here is a quick excerpt : oDesk Time Tracker does not verify the SSL certificate of the host it connects to thus becoming vulnerable to various Man-in-the-Middle attacks (if an attacker is able to spoof DNS for team.odesk.com — say, by setting up a fake DHCP and … Read the rest of this great post Here [...]
Hi,
For you I have a demo to show you while you finding like odesk team apllication. I have assembled this desktop client. It php and mysql based.
I have listed much freelancer site but no site has the time tracker. Thats why I was trying to make it now it ready as beta version.
download the desktop client and install to your windows version.
http://dev.mdimranhossain.com/team/packed.rar
uerid:tan
pass:tan
You can see here the sample workdiary:
http://dev.mdimranhossain.com/show.php
if any problem email me.
Thanks
kashem ali
mail:kasheml45@gmail.com
skype:kashem.ali