- Vuln: Mahara Resume Blocktype Cross Site Scripting Vulnerability
- Vuln: Mahara Admin Password Reset Security Bypass Vulnerability
- Vuln: Google Chrome prior to 3.0.195.32 Multiple Security Vulnerabilities
- Vuln: Multiple Horde Products Cross-Site Scripting Vulnerabilities and File Overwrite Vulnerability
- Vuln: Mod_Perl Path_Info Remote Denial Of Service Vulnerability
- Vuln: Apache mod_perl 'Apache::Status' and 'Apache2::Status' Cross Site Scripting Vulnerability
- Vuln: FreeBSD 'fifo_vnops.c' Resource Leak Local Denial of Service Vulnerability
- Vuln: Citrix NetScaler and Access Gateway Denial Of Service Vulnerability
- Vuln: PDFLib 'open_basedir' Restriction Bypass Vulnerability
- Vuln: Multiple Vendor TLS Protocol Session Renegotiation Security Vulnerability
Search
Search Result
-
Fragus exploit pack’s pricy business model locks users in
Category: Network Security & Hacking News/Latest Security News
The $800 attack toolkit comes with a self-destruct mechanism after a certain time period Security researchers at Symantec are closely monitoring the Fragus exploit pack, an $800 package of tools developed ...Friday, 06 November 2009 -
Facebook and Myspace bolt Flash backdoors
Category: Network Security & Hacking News/Latest Security News
The social networking sites had both been overgenerous in giving out access rights to their servers As a result, Flash applets hosted on a malicious website would have been able to read all Facebook data ...Thursday, 05 November 2009 -
Microsoft Office Access 2007: Introductory Concepts and Techniques (Shelly Cashman Series) (Paperback) newly tagged "databases"
Category: Network Security & Hacking Products/Databases
... Rating: First tagged "databases" by J-Mom "frazzled but organized" Customer tags: access 2007, access, databases, software book, microsoft Read Full Article ...Thursday, 05 November 2009 -
Sun Alert 272230 Security Vulnerabilities in the Apache 2 "mod_perl2" Module Components "PerlRun.pm" and "Status.pm" May Lead to Denial of Service (DoS) or Unauthorized Access to Data
Category: Network Security & Hacking News/Global Security News
Product: Solaris 10, OpenSolarisTwo security vulnerabilities exist in the Apache 2 mod_perl2(3) module components which affect the Apache 2.0 web server bundled with Solaris 10 and the Apache 2.2 web server ...Wednesday, 04 November 2009 -
Vuln: Pablo Software Solutions Baby Web Server Multiple Request Remote Denial of Service Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Pablo Software Solutions Baby Web Server Multiple Request Remote Denial of Service Vulnerability Read Full ArticleWednesday, 04 November 2009 -
What DAM Does
Category: Network Security & Hacking News/Latest Security News
Database Activity Monitoring (DAM) tools have a range of capabilities, including data collection and analysis. But the real question is how does this technology help you. Database Activity Monitoring ...Wednesday, 04 November 2009 -
Interesting Information Security Bits for 11/03/2009
Category: Network Security & Hacking News/Latest Security News
... your databases? Make sure you are doing so for any of the mythical reasons that Adriane addresses in this article. Securosis Blog | Myths Surrounding Databases in Virtual Environments Tags: ( virtualization ...Tuesday, 03 November 2009 -
Facebook Phishing Campaign Pushes ‘Cocktail’ Attack
Category: Network Security & Hacking News/Global Security News
We have already discussed the Facebook phishing campaign. Now the scammers are using the phishing campaign not just for spamming but also for a cocktail attack. The scammers have targeted Facebook, telling ...Tuesday, 03 November 2009 -
Video: Tenable Appliance Installation & Configuration
Category: Network Security & Hacking News/Latest Security News
The Tenable Appliance is an easy way to get up and running quickly with Tenable products such as Nessus and Security Center. The Tenable Appliance is a virtual machine image that is compatible with: VMware ...Tuesday, 03 November 2009 -
Video: Tenable Appliance Installation & Configuration
Category: Network Security & Hacking News/Latest Security News
The Tenable Appliance is an easy way to get up and running quickly with Tenable products such as Nessus and Security Center. The Tenable Appliance is a virtual machine image that is compatible with: VMware ...Tuesday, 03 November 2009 -
The missing letter that links Fake AV and Extreme Porn
Category: Network Security & Hacking News/Global Security News
... with a keen eye and our threat intelligence databases the same group are responsible for a diverse set of Today, Microsoft’s Security Intelligence report is out and it’s no surprise ...Tuesday, 03 November 2009 -
Symantec patches Altiris solutions
Category: Network Security & Hacking News/Latest Security News
The web-based management servers install a vulnerable ActiveX control in Internet Explorer that allows attackers to inject and execute arbitrary code in a client The web-based management servers install ...Tuesday, 03 November 2009 -
Wave Federation Begins
Category: Network Security & Hacking News/Latest Security News
Google has begun allowing private Wave servers to connect to its Wave Sandbox, opening up the development of private collaboration servers Google has begun allowing private Wave servers to connect to ...Tuesday, 03 November 2009 -
Elite Loader Goes Public
Category: Network Security & Hacking News/Latest Security News
A few days ago, I got access to the source code of the well-known Elite Loader for free. Yes. It was published on one of the Russian underground forums. It even had a detailed description and screenshots ...Monday, 02 November 2009 -
Sun Alert 270476 Two Security Vulnerabilities in the Java Runtime Environment With Decoding DER Encoded Data and Parsing HTTP Headers may Result in a Denial of Service (DoS)
Category: Network Security & Hacking News/Global Security News
Product: Java Platform, Standard Edition (Java SE) Two vulnerabilities in the Java Runtime Environment with decoding DER encoded data and parsing HTTP headers may separately allow a remote client to cause ...Monday, 02 November 2009 -
Vuln: Retired: Cherokee Web Server Malformed Packet Remote Denial of Service Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Retired: Cherokee Web Server Malformed Packet Remote Denial of Service Vulnerability Read Full ArticleMonday, 02 November 2009 -
My WAF went W00F!
Category: Network Security & Hacking News/Latest Security News
... Sometimes they get direct access to a device and manage to come up with specific evasion techniques. Once they have the new technique, it is quickly incorporated into the entire scan database and used ...Monday, 02 November 2009 -
Databases and Information Systems II (v. 2) (Hardcover) newly tagged "databases"
Category: Network Security & Hacking Products/Databases
Databases and Information Systems II (v. 2) (Hardcover) By Hele-Mai Haav Buy new: $229.00 22 used and new from $18.00 Customer Rating: First tagged "databases" ...Monday, 02 November 2009 -
Weekly Intelligence Summary: 2009 – 10 – 30
Category: Network Security & Hacking News/Latest Security News
Most of the threat activity for this week was directed towards Facebook and Twitter users. Large e-mail campaigns for password reset confirmations led to compromised Facebook accounts and Trojan installations, ...Monday, 02 November 2009 -
Email with subject “Hello Darling” contains Cutwail trojan
Category: Network Security & Hacking News/Latest Security News
MX Lab intercepted new emails containing a new variant of the Cutwail trojan listening to the names Win32:Cutwail-AA (Avast) or W32/Trojan3.BLU (F-Prot). At Virus Total, only 11 of the 41 AV engines detect ...Monday, 02 November 2009 -
Woman fired as a result of error in FBI criminal database
Category: Network Security & Hacking News/Latest Security News
Ages ago when I first saw The Net, an action thriller featuring Sandra Bullock as a computer expert whose life gets turned upside down by hackers who have access to her record in the police database... ...Sunday, 01 November 2009 -
Cutwail trojan variant out in the wild
Category: Network Security & Hacking News/Latest Security News
MX Lab is intercepting quite a lot of viruses these days. Since October 27th, 2009, when we reported about the Facebook Password Reset Confirmation-campaign, we notice an serious increase in viruses. We ...Friday, 30 October 2009 -
Database Design (Paperback) newly tagged "databases"
Category: Network Security & Hacking Products/Databases
Database Design (Paperback) By Ryan Stephens Buy new: $27.57 37 used and new from $16.86 Customer Rating: First tagged "databases" by Dennis J. Mcguckian ...Friday, 30 October 2009 -
356 big reasons for UK CIOs to switch to encrypted drives revealed
Category: Network Security & Hacking News/Latest Security News
Reports that UK chief information officers reported a whacking 356 data loss incidents in the last 12 months - approaching double that of the year previous - should sent shivers down the spine of any self- ...Friday, 30 October 2009 -
Finjan says controlled access Web portals now prime target of cybercriminals
Category: Network Security & Hacking News/Latest Security News
... using web application firewalls and securing the backend database using database security tools, he explained, are a logical course of preparing to defend those IT resources that contain personal and business ...Friday, 30 October 2009 -
Finjan warns companies as China prepares for cyber-espionage
Category: Network Security & Hacking News/Latest Security News
A report commissioned by a US Congressional advisory panel monitoring the security implications of trading with China has warned that China has started spying on the US government and major companies. ...Friday, 30 October 2009 -
SanDisk Cruzer Enterprise Flash Drives Earn Certification
Category: Network Security & Hacking News/Latest Security News
SanDisk Corporation, the global leader in flash memory cards, today announced that the SanDisk Cruzer Enterprise FIPS edition secure USB flash drive has received Common Criteria EAL2 certification, making ...Friday, 30 October 2009 -
Oracle Database 11g PL/SQL Programming (Osborne ORACLE Press Series) (Paperback) newly tagged "databases"
Category: Network Security & Hacking Products/Databases
Oracle Database 11g PL/SQL Programming (Osborne ORACLE Press Series) (Paperback) By Michael McLaughlin Buy new: $37.79 45 used and new from $27.02 Customer Rating: ...Friday, 30 October 2009 -
Defeating Zombies: Five Ways To Improve Defenses
Category: Network Security & Hacking News/Latest Security News
Defeating Zombies Attackers have a number of avenues leading directly into your network, and more importantly, into your data. Each week I read about new data losses, phishing scams and the release of ...Friday, 30 October 2009 -
Microsoft releases fix for crypto patch
Category: Network Security & Hacking News/Latest Security News
Designed to prevent the processing of spoofed SSL certificates, the patch also caused an important service to malfunction. As a result, Live Communications Server 2005 and Office Communications Server ...Friday, 30 October 2009 -
Understanding Risk
Category: Network Security & Hacking News/Latest Security News
People tend to not prioritize their risk correctly. SANS Top Cyber Security report in September 2009 pointed out that people are not patching third party applications or taking care of web servers correctly. ...Thursday, 29 October 2009 -
A closer look at Acunetix Web Vulnerability Scanner 6.5
Category: Network Security & Hacking News/Latest Security News
Web applications are accessible 24 hours a day, 7 days a week and control valuable data since they often have direct access to backend data such as customer databases. SSL and locked-down servers are ... ...Thursday, 29 October 2009 -
The curious case of asset Valuation.
Category: Network Security & Hacking News/Latest Security News
... replace tangible or identifiable intangible assets, be that money lost due to fraud, the cost to rebuild a customer database, or replacing the hardware/software itself if it is rendered unusable by a threat ...Thursday, 29 October 2009 -
Upgraded to Windows 7? Find out which patches you need
Category: Network Security & Hacking News/Latest Security News
Windows users who have been unimpressed by the features (and problems) offered by Vista have been rushing out and buying Windows 7. The reviews, so far, have been largely favourable but, as is the case ...Thursday, 29 October 2009 -
CubeCart 4 session management bypass leads to administrator access
Category: Network Security & Hacking News/Global Security News
... attacker can later perform any actions the administrator can, such as dumping the database, install modules (PHP code execution) and so on. CubeCart is using a MySQL table named CubeCart_admin_users for ...Thursday, 29 October 2009 -
Ubuntu 9.10 Karmic Koala released
Category: Network Security & Hacking News/Latest Security News
Released today, Ubuntu 9.10 Desktop Edition and Server Edition bring a host of new features and further position Ubuntu as a viable competitor to Windows 7. Ubuntu 9.10 features a redesigned, fas... Released ...Thursday, 29 October 2009 -
Securing the Toughest Times
Category: Network Security & Hacking News/Latest Security News
... logic bombs Unix Windows Databases Network devices Lesson’s learned What went right? What could be done better? Process improvements Read Full Article ...Wednesday, 28 October 2009 -
Links for 2009-10-28 [del.icio.us]
Category: Network Security & Hacking News/Latest Security News
Hackers Access Llywelyn's Pub Credit Server - Kansas City News Story - KMBC Kansas City This is goofy. First off, Credit Server would indicate a payment processor breach. Not likely the case if this one ...Wednesday, 28 October 2009 -
Sun Alert 269208 A Security Vulnerability With Verifying HMAC-based XML Digital Signatures in the XML Digital Signature Implementation Included With the Sun GlassFish Enterprise Server v2.1 may Allow Authentication to be Bypassed
Category: Network Security & Hacking News/Global Security News
Product: Sun GlassFish Enterprise Server v2.1 A security vulnerability with verifying HMAC-based XML digital signatures in the XML Digital Signature implementation included with webservices component of ...Wednesday, 28 October 2009 -
Sun Alert 270408 Security Vulnerabilities in PostgreSQL Shipped with Solaris may Allow a Denial of Service (DoS) or Privilege Escalation
Category: Network Security & Hacking News/Global Security News
Product: Solaris 10, OpenSolaris Security vulnerabilities affecting the PostgreSQL software shipped with Solaris may allow an authenticated PostgreSQL user to cause a denial of service (DoS) to the PostgreSQL ...Wednesday, 28 October 2009 -
The Register: More than 5 million people now on DNA database
Category: Network Security & Hacking News/Latest Security News
The Register: More than 5 million people now on DNA database The Register: More than 5 million people now on DNA database Read Full Article ...Wednesday, 28 October 2009 -
Fordham report on Children's Privacy
Category: Network Security & Hacking News/Latest Security News
Following the No Child Left Behind mandate to improve school quality, there has been a growing trend among state departments of education to establish statewide longitudinal databases of personally identifiable ...Wednesday, 28 October 2009 -
Wi-Fi Cable Modems Leave Customers Vulnerable
Category: Network Security & Hacking News/Latest Security News
PC World recently wrote a story about Wi-Fi cable modem routers and how a security hole left thousands of Time Warner customers vulnerable to hackers. Incredibly, the company isn’t responsible for uncovering ...Wednesday, 28 October 2009 -
OAMP: OpenBSD 4.6 + Chroot Apache + MySQL + PHP
Category: Network Security & Hacking News/Latest Security News
... can do to protect the server is to keep webapps and system patches up-to-date, and to perform periodic database dumps and system-wide backups. I will walk through the commands here without showing the ...Wednesday, 28 October 2009 -
Installing OpenBSD 4.6, Virtual machine snapshots
Category: Network Security & Hacking News/Latest Security News
OpenBSD's install process changed for the first time in a very long time with the release of 4.6.For the most part, I feel like the changes are for the better. The install script asks fewer questions, ...Tuesday, 27 October 2009 -
Ongoing FDIC Spam Campaign Serves Zeus Crimeware
Category: Network Security & Hacking News/Latest Security News
An ongoing spam campaign impersonating The Federal Deposit Insurance Corporation, is attempting to drop zeus samples by enticing users into installing pdf.exe and word.exe. "Subject: FDIC has officially ...Tuesday, 27 October 2009 -
Another acquisition in the Web security service space — Cisco Systems acquires ScanSafe
Category: Network Security & Hacking News/Latest Security News
Cloud security service is hot, hot, hot. My last blog post highlighted the acquisition of Purewire by Barracuda earlier this month. Today, Cisco Systems announced the intention to acquire ScanSafe, another ...Tuesday, 27 October 2009 -
Barackobama.com 'hack' is a hoax
Category: Network Security & Hacking News/Latest Security News
... internal databases at the site. The hacker, identified only as "Unu," claimed that a security flaw in barackobama.com ... A hacker's claim that he compromised President Obama's campaign Web site appears ...Tuesday, 27 October 2009 -
MySQL
Category: Web Links / Joomla! Specific Links
The database that Joomla! uses ...Wednesday, 07 July 2004
