×

Warning

JUser: :_load: Unable to load user with ID: 3286
×

Message

Failed loading XML... Document is empty

Displaying items by tag: Vulnerability

You know a virus is making it in the news when your network’s users start asking you about it (instead of the latest round of "good news virus" hoaxes.) It's prudent for those in technical leadership roles to send out encouraging messages why nobody need panic. Here’s a template e-mail you can copy-and-paste, with versions for Windows, Linux and Mac infrastructures!

Friday, 27 March 2009 11:47

Firefox 3 exploit code in circulation

Exploit code attacking a security flaw in Firefox 3 has been made public. An update is expected next week.

Published in Open Source
A new free tool from Hewlett-Packard tests Flash applications for a variety of security vulnerabilities.

Published in Development
Stuck on Acrobat or Reader version 7 or 8? It's time for a patch even if you can't or won't update to version 9.

Published in Core Dump
Adobe has updated Acrobat 9 and Reader 9 to fix a critical vulnerability that was being actively exploited with malicious PDF files.

Published in Home Tech
Wednesday, 11 March 2009 03:24

Another critical patch for Windows Vista

Three bulletins covering eight vulnerabilities in Windows - that's the score for this month's Patch Tuesday. While one bulletin is rated critical, none of the issues have the highest exploitability index.

Published in Home Tech
Users of popular online music service Spotify are understandably worried by the news of a security breach that, according to many reports, has exposed password and sensitive information. But how accurate are those reports?

Published in Home Tech
Mac users should pay attention to three recent security vulnerabilities involving mainstream products. Two of them involve the same vendor, and so far only one has been patched.

Published in Core Dump
Wednesday, 25 February 2009 17:37

Warning: Excel Zero Day Vulnerability

Microsoft has issued a security advisory regarding a zero day vulnerability which could allow remote code execution upon the opening of an Excel file.

Published in Market
Apple has released a wide-ranging set of Mac OS X security updates, including a fix for the Safari RSS issue. There's also a pair of Java updates for Tiger and Leopard.

Published in Market
Monday, 09 February 2009 16:34

Kaspersky patch own back yard, but delude self

Technology security firm Kaspersky suffered egg on its face this weekend after a hacker posted details, including screenshots, of a successful SQL injection attack on the firm's web site. Kaspersky have released an official statement which suffers from an amazing dose of reality denial.

Published in Market
Kaspersky is a leading security and anti-virus software company. Yet, this weekend a poster on the hackersblog.org forum demonstrated Kaspersky's web site was vulnerable to exploitation by one of the surely most publicised methods available – SQL injection. Pictures included!
Published in Market
Tuesday, 13 January 2009 03:37

Safari vulnerable to remote file-stealing attack

A newly revealed vulnerability in Apple's Safari web browser allows a remote site to read files stored on a Mac or Windows system. According to the discoverer, the vulnerability has been acknowledged by Apple.

Published in Core Dump
You've all heard a major new flaw has been found affecting Internet Explorer all the way back to version 5. Microsoft pushed out a fix out of their regular "patch Tuesday" monthly schedule. The flaw has prompted some commentators to call for the replacement of IE with alternate browsers like Firefox. Just what was so serious? And what do Microsoft say that show Linux has the superior design?

Published in The Linux Distillery
Tomorrow, the 18th of December at 5am (Australian Eastern Standard Time), the 0-day security vulnerability that has embarrassed Microsoft into action will receive the urgently needed patch that will restore balance to the force and (temporarily) shut Linux zealots up.

Published in Fuzzy Logic
HTML clipboardThe first official version of the Secunia Personal Software Inspector (PSI) , a software vulnerability scanner has just been released. This is a top-rating Windows security tool that's free for home users.

Published in A Meaningful Look
Thursday, 13 November 2008 18:42

A real-world web site crack before your eyes

15 years ago Dan Farmer wrote a program called SATAN designed to help sysadminis detect vulnerabilities in their networks. He was criticised because of the massive potential for malice if used by "the wrong people" and was fired by his employer, SGI. Now, I'm not in Farmer's league but I'm going to risk my reputation here and now to practically explain SQL injection by cracking two publicly available web sites.

Published in The Linux Distillery
Thursday, 13 November 2008 08:18

More critical holes plugged by Firefox updates

New updates to Firefox 2.0 and 3.0 include fixes for multiple security vulnerabilities, some of them regarded as critical. Users are advised to install the updates "as soon as possible."

Published in Open Source
Monday, 10 November 2008 03:54

Adobe security updates plug critical holes

Adobe has issued updates for some of its older software to address critical security vulnerabilities. The updates are aimed at users of older systems that are unable to run the latest versions of Flash and Acrobat.

Published in Home Tech
Microsoft might have rushed out an emergency critical patch for Windows, out of the update cycle and in order to stop the bleeding from a privately reported vulnerability. But has it been enough to prevent a hacker spread infection getting into the open Windows wound?

Published in Home Tech

Subscribe to Newsletter

*  Enter the security code shown: img0

WEBINARS & EVENTS

CYBERSECURITY

PEOPLE MOVES

GUEST ARTICLES

Guest Opinion

ITWIRETV & INTERVIEWS

RESEARCH & CASE STUDIES

Channel News

Comments