- Vuln: Mahara Resume Blocktype Cross Site Scripting Vulnerability
- Vuln: Mahara Admin Password Reset Security Bypass Vulnerability
- Vuln: Google Chrome prior to 3.0.195.32 Multiple Security Vulnerabilities
- Vuln: Multiple Horde Products Cross-Site Scripting Vulnerabilities and File Overwrite Vulnerability
- Vuln: Mod_Perl Path_Info Remote Denial Of Service Vulnerability
- Vuln: Apache mod_perl 'Apache::Status' and 'Apache2::Status' Cross Site Scripting Vulnerability
- Vuln: FreeBSD 'fifo_vnops.c' Resource Leak Local Denial of Service Vulnerability
- Vuln: Citrix NetScaler and Access Gateway Denial Of Service Vulnerability
- Vuln: PDFLib 'open_basedir' Restriction Bypass Vulnerability
- Vuln: Multiple Vendor TLS Protocol Session Renegotiation Security Vulnerability
Search
Search Result
-
Security 2009 report
Category: Network Security & Hacking News/Latest Security News
As promised, here is a report from the Security 2009 Conference that took place in Oslo in October. The conference had focus on security issues related to the current economic situation, and how to deal ...Friday, 06 November 2009 -
Don't panic over the secret copyright treaty
Category: Network Security & Hacking News/Latest Security News
OPINION: Secret gatherings of the world's governments are usually the stuff of fevered imaginings, but just one such gathering is this week generating its own fair share of paranoia. OPINION: Secret ...Thursday, 05 November 2009 -
NOW LIVE! McAfee Online Support Community
Category: Network Security & Hacking News/Global Security News
The McAfee Online Support Community gives you a way to interact with other McAfee business users to ask questions and share best practices. Additionally, you’ll be able to talk with McAfee professionals ...Wednesday, 04 November 2009 -
Mac malware disguised as game
Category: Network Security & Hacking News/Latest Security News
Symantec shared an uncommon Mac malware type on one of their official blogs: a combination of malware and a game similar to the once popular Space Invaders. They detected the threat as OSX.Loosemaque. ...Wednesday, 04 November 2009 -
Intelligence agency hit by DoS attacks
Category: Network Security & Hacking News/Latest Security News
According to The Local, Sweden is seeing her share of cyber disruptions and attacks this last few days. First a technical error blocked access to hundreds of Swedish websites for half an hour, then t... ...Wednesday, 04 November 2009 -
Tentative Speaker List for SANS Incident Detection Summit
Category: Network Security & Hacking News/Latest Security News
Thanks to everyone who attended the Bejtlich and Bradley Webcast for SANS yesterday. We recorded that Webcast audio is now available) to start a discussion concerning professional incident detection. ...Tuesday, 03 November 2009 -
Get peace of mind during kids’ computer time
Category: Network Security & Hacking News/Latest Security News
We want to keep kids safe online, but as they grow older we also want to respect their privacy. We know that kids are going to use computers for school work and for communicating with their friends, but ...Monday, 02 November 2009 -
Kaspkersky False Positive in gosearch.gif
Category: Network Security & Hacking News/Latest Security News
Kaspersky is detecting gosearch.gif as Trojan.JS.ramif.a. gosearch.gif is a standard magnifying glass icon used in Sharepoint as a search button. I submitted this to Kaspersky and they concur its a false ...Monday, 02 November 2009 -
Your new client security analyst
Category: Network Security & Hacking News/Latest Security News
After seven years, my colleague Natalie Lambert is leaving Forrester. In the year that I have been at Forrester, she has been a good team-mate, sounding board for ideas, gleeful mischief-maker, and collaborator ...Monday, 02 November 2009 -
Facebook spamming practices revealed
Category: Network Security & Hacking News/Latest Security News
Dennis Yu, the CEO of BlitzLocal, was a guest yesterday on TechCrunch, and he shared his thoughts and knowledge about Facebook spamming and advertising. BlitzLocal is an advertising agency that - b... ...Monday, 02 November 2009 -
Good online music services would beat punishment, say file-sharers
Category: Network Security & Hacking News/Latest Security News
The provision of appealing, legal online music services would be a more powerful incentive to stop illegal file-sharing than the proposed cutting off of internet access, copyright-infringing downloaders ...Monday, 02 November 2009 -
Good online music services would beat punishment, say file-sharers
Category: Network Security & Hacking News/Latest Security News
The provision of appealing, legal online music services would be a more powerful incentive to stop illegal file-sharing than the proposed cutting off of internet access, copyright-infringing downloaders ...Monday, 02 November 2009 -
Global security best practices
Category: Network Security & Hacking News/Latest Security News
The latest Microsoft Security Intelligence Report shares security best practices from countries that have consistently exhibited low malware infection. These best practices and security intelligence p... ...Monday, 02 November 2009 -
Announcing Into The Boxes – E-Magazine
Category: Network Security & Hacking News/Latest Security News
I have been a little busy of late. Work, family, and a few side projects have taken up a lot of my time. Good news, however, I am ready to make one of those side projects public. That project is an ...Sunday, 01 November 2009 -
Software Security Initiatives:Maturity Models, Metrics and Business Cases
Category: Network Security & Hacking News/Latest Security News
On November 4, I am going to present at Italy OWASP Day E-Gov 09 OWASP-CONSIP sponsored conference (CONSIP is a company of the Italian Department of Economy and Finance). I will be presenting on the topic ...Sunday, 01 November 2009 -
Risk Driven Security Testing
Category: Network Security & Hacking News/Latest Security News
I presented today at IMI Security Summit on the topic of "Threat Analysis as methodology for deriving risk-based security tests of web application software". The conference gave me the opportunity to evangelize ...Friday, 30 October 2009 -
Twitter Lists = all the @SecurityTwits in one place!
Category: Network Security & Hacking News/Latest Security News
Twitter rolled out lists to everyone today. The thing I'm most excited about is the ability to follow all of the Security Twits with a single click. I already follow quite a few of them, probably more ...Thursday, 29 October 2009 -
Securing the Toughest Times
Category: Network Security & Hacking News/Latest Security News
by Ron Woerner Whether you call it lay-offs, downsizing, rightsizing, redundancies, a reduction in force, or whatever, a reduction in staff stinks. Downturns in the economy often translate to a reduced ...Wednesday, 28 October 2009 -
Links for 2009-10-28 [del.icio.us]
Category: Network Security & Hacking News/Latest Security News
Hackers Access Llywelyn's Pub Credit Server - Kansas City News Story - KMBC Kansas City This is goofy. First off, Credit Server would indicate a payment processor breach. Not likely the case if this one ...Wednesday, 28 October 2009 -
Guardian Unlimited: Lord Mandelson sets date for blocking filesharers' internet connections "Campaign against illegal filesharers will begin with warning letters only, but with option of blocks from summer 2011"
Category: Network Security & Hacking News/Latest Security News
Guardian Unlimited: Lord Mandelson sets date for blocking filesharers' internet connections Campaign against illegal filesharers will begin with warning letters only, but with option of blocks from summer ...Wednesday, 28 October 2009 -
Enterprise Open Source Intelligence Gathering – Part 2 Blogs, Message Boards and Metadata
Category: Network Security & Hacking News/Latest Security News
This post is part two of my three part series on Enterprise Open Source Intelligence Gathering. This information relates to the presentation that I am giving this week at the 7th Annual Ohio Information ...Wednesday, 28 October 2009 -
OAMP: OpenBSD 4.6 + Chroot Apache + MySQL + PHP
Category: Network Security & Hacking News/Latest Security News
IntroductionI'm combining the OAMP howto with chroot from the start this time because it's really the proper and secure thing to do. You can read more about how chroot works in my last article about it, ...Wednesday, 28 October 2009 -
Interesting Information Security Bits RSA Catch-up Part 2
Category: Network Security & Hacking News/Latest Security News
Here is part 2 of my catch-up posts. Argument For Anonymity Secure Computing: Sec-C Tags: ( anonymity ) RaDaJo (RAul, DAvid and JOrge) Security Blog: Samurai Web Testing Framework (WTF) Firefox Add-ons ...Tuesday, 27 October 2009 -
Former Anti-Virus Researcher Turns Tables On Industry
Category: Network Security & Hacking News/Latest Security News
A security researcher shunned by the anti-virus community for violating its unwritten rules has attempted to turn the tables, erecting a Web service that virus writers could use to make their creations ...Tuesday, 27 October 2009 -
SecuraBit Episode 43 – The Academy Pro
Category: Network Security & Hacking News/Latest Security News
SecuraBit Episode 43 – The Academy Pro Guest Interview: Peter Giannoulis of The Academy Pro Metasploit Rising http://blog.metasploit.com/2009/10/metasploit-rising.html WordPress 2.8.5: Hardening Release ...Tuesday, 27 October 2009 -
Links for 2009-10-26 [del.icio.us]
Category: Network Security & Hacking News/Latest Security News
Using Evil WiFi To Educate Users amp; IT Admins - Evil Bytes Blog - Dark Reading Some HiR link love on Dark Reading Mid-Missouri nuclear plant still using dial-up Internet access - Kansas City Star SCADA ...Monday, 26 October 2009 -
Day 1 in Sao Paulo Brazil -- I'm Back
Category: Network Security & Hacking News/Latest Security News
What can I say; it's great to be back. It's been too long (over 5 years) since I lived here. It's raining today, and I think will continue all week including my trip to present at OWASP in Brasilia towards ...Monday, 26 October 2009 -
EU Parliament drew back from file-sharer demands over legal uncertainty
Category: Network Security & Hacking News/Latest Security News
The European Parliament has had to withdraw demands for court oversight of the cutting off of file sharers' internet access after it received legal advice that it had been over-stepping its powers. The ...Monday, 26 October 2009 -
Cigital’s Gary McGraw talks cloud security with Chris Hoff
Category: Network Security & Hacking News/Latest Security News
Security needs to pay more attention to the protocols which bind the applications and infrastructure together. That's where the cracks are appearing. What is cloud computing? In an interview with Cigital's ...Saturday, 24 October 2009 -
One of those “quick updates”…
Category: Network Security & Hacking News/Latest Security News
I'm ashamed that my blog has much more of these posts that it should, but yes, this is another one. I'm not posting anything here for some time, life has been a little more demading than usual for other ...Friday, 23 October 2009 -
Best Practices for Verifying and Cleaning up a Compromised Site
Category: Network Security & Hacking News/Global Security News
Written by Panayiotis Mavrommatis, Security Team As part of Cyber Security Awareness Month, Google's Anti-Malware Team is publishing a series of educational blog posts inspired by questions we've received ...Thursday, 22 October 2009 -
ZBOT and a CapitalOne Phish
Category: Network Security & Hacking News/Latest Security News
In this most recent spam campaign, our spam traps caught an uncanny combination of a CapitalOne phish and a ZBOT variant. Below is a screenshot of an email sample making the rounds: The spam campaign would ...Thursday, 22 October 2009 -
Playing games
Category: Network Security & Hacking News/Latest Security News
by Jeff Kirsch Recently, my son told me a story about how he played chess with a friend at school. In his story, he said his friend executed a certain move; my son then asked me if I had ever tried that ...Wednesday, 21 October 2009 -
Links for 2009-10-21 [del.icio.us]
Category: Network Security & Hacking News/Latest Security News
reDuh - TCP Redirection over HTTP So much tunneling Winnage! ghostnomad.com IT Haikus You know, Id link to just one or two, but all of them are so damn good! TrueCrypt - Free Open-Source Disk Encryption ...Wednesday, 21 October 2009 -
DojoCon to Stream Talks Live
Category: Network Security & Hacking News/Latest Security News
As I mentioned last month I will be speaking at DojoCon, on Saturday 7 November at Capitol College in Laurel, MD. Organizer Marcus Carey asked me to share the following: DojoCon will Stream Live all ...Wednesday, 21 October 2009 -
Explore the new security features in Windows 7
Category: Network Security & Hacking News/Latest Security News
Windows 7, the newest operating system from Microsoft, simplifies computer security, making it easier for you to reduce the risk of viruses, spyware, and other malware. In addition, the improved backup ...Wednesday, 21 October 2009 -
Russian SPAM on YouTube
Category: Network Security & Hacking News/Global Security News
We had earlier blogged about spammers abusing different social networking websites and taking full advantage to host their spam on them. Recently researchers at McAfee Labs came across a new spam campaign ...Wednesday, 21 October 2009 -
2600 Article: Roll Your Own Hive-Mind
Category: Network Security & Hacking News/Latest Security News
Editorial comment: This initially showed up in the Autumn 2009 issue of 2600: The Hacker Quarterly,Volume 26 Number 3, which is on stands now! I wrote it almost a year ago. Today, I would say that Google ...Monday, 19 October 2009 -
TalkTalk’s WiFi Hacking No No!
Category: Network Security & Hacking News/Latest Security News
Last week Internet Service Provider (ISP) TalkTalk pulled a hacking publicity stunt, which they aimed to demonstrate why they should be absolved of all responsibility for the portion of their customers ...Monday, 19 October 2009 -
Web Application Firewalls and Vulnerability Assessment
Category: Network Security & Hacking News/Latest Security News
In a recent Dark Reading article titled Integrating WAFs and Vulnerability Scanners multiple views were shared on this topic, however, we didn't get a chance to chime in - so we're chiming now. In August ...Monday, 19 October 2009 -
20/20 Hindsight – Walmart Lessons Learned for Tenable Customers
Category: Network Security & Hacking News/Latest Security News
Wired magazine recently ran an excellent story detailing how Walmart suffered a deep intrusion. The story provides many examples of cliché security lapses such as not disabling a remote VPN account for ...Monday, 19 October 2009 -
Security Analysis and Data Visualization - A Book
Category: Network Security & Hacking News/Latest Security News
Hi, My name is Olu Akindeinde from down town Africa. I will like to share my book with this community. It is on Security Analysis and Data Visualization. Whilst being practical oriented with 38 case studies ...Saturday, 17 October 2009
