Misleading Reports of 0-Day in Invicti WVS

Reports of a 0-day vulnerability in Invicti Web Vulnerability Scanner turn out to affect only an old version from 2012 which was subsequently fixed. A blog post has recently come to our attention that claims a successful attack against Invicti v8 (build 20120704), and in…

Read more

Unable to Download Error Whilst Trying to Update Invicti WVS

Symptoms When trying to update the latest build from Invicti WVS, you encounter the following error: Unable to download https://www.acunetix.com/download/ fullver8/2013_03_08_01_webvulnscan8.exe. Try again later. More Information Invicti has recently changed its update mechanism to a new and secure product download system. This update has been…

Read more

WordPress Pingback Vulnerability

Recently somebody posted on Reddit about a WordPress scanner that is taking advantage of a new WordPress vulnerability. The vulnerability is abusing the Pingback system, which is a well-known feature that’s used by a lot of bloggers. What is a Pingback? Quoting Wikipedia: A pingback…

Read more