NTA Monitor

Latest News

New version of network scanning tool arp-scan released

15th March 2011 A new version of a respected and popular network scanning tool has been released. Read More

Tests show rise in number of vulnerabilities affecting web applications with SQL Injection and XSS most common flaws

1st March 2011 SQL injection and cross-site scripting (XSS) were the most common flaws found in web applications in 2010 according to results from tests carried out by NTA Monitor. Read More

Assess risk to manage effects of budget cuts

9th February 2011 Signs of economic recovery may be appearing in some industries, but for most organisations - particularly in the public sector - budget cuts and cost savings are here to stay for the foreseeable future. Read More

"Basic security threats not changed in 15 years"

1st February 2011 There may have been significant technological advances to the hardware and software organisations use, but according to Roy Hills, who co-founded NTA Monitor in 1996, the basic security threats have not changed in the last 15 years. Read More

Advisories

Cisco VPN Concentrator IKE resource exhaustion DoS

(Medium risk) NTA Monitor has discovered a denial of service vulnerability in the Cisco VPN 3000 Concentrator, IOS software, PIX firewall and ASA appliance products. 26th July 2006 Read More

Avaya VPNRemote VPN Client Password Disclosure Issue

(Medium risk) NTA Monitor has discovered a password disclosure issue in the Avaya VPNRemote VPN client, VPNRemote stores all user credentials (username and password) in clear-text in the process memory. 23rd November 2005 Read More

Sawmill Cross Site Scripting (XSS) Vulnerability

(Medium risk) A vulnerability has been discovered in the Sawmill web server by NTA Monitor in the course of performing a test for a customer. 8th September 2005 Read More

Google Talk Beta Messenger Client Password Disclosure Issue Summary

(Medium risk) NTA Monitor have discovered a password disclosure issue in the Google Talk Windows Messenger Client 7th August 2005 Read More

Juniper Netscreen VPN Username Enumeration Vulnerability

(Medium risk) NTA Monitor has discovered a VPN username enumeration vulnerability in the Juniper Netscreen integrated Firewall/VPN products while performing a VPN security test for a customer 1st August 2005 Read More

PHP-Fusion messages.php SQL Injection Vulnerability

(Medium risk) NTA Monitor discovered a SQL Injection vulnerability in the PHPFusion Content Management System 25th July 2005 Read More

Cisco VPN Concentrator Groupname Enumeration Vulnerability

(Medium risk) NTA Monitor has discovered a groupname enumeration vulnerability in the Cisco VPN 3000 series concentrator products while performing a VPN security test for a customer 8th June 2005 Read More

Nortel VPN Router Malformed Packet DoS Vulnerability

(Medium risk) NTA Monitor have discovered a denial of service (DoS) vulnerability in the Nortel VPN Router products (which were previously known as Nortel Contivity) while performing a VPN security test for a customer. 3rd May 2005 Read More

Previous advisories: