- Vuln: Mahara Resume Blocktype Cross Site Scripting Vulnerability
- Vuln: Mahara Admin Password Reset Security Bypass Vulnerability
- Vuln: Google Chrome prior to 3.0.195.32 Multiple Security Vulnerabilities
- Vuln: Multiple Horde Products Cross-Site Scripting Vulnerabilities and File Overwrite Vulnerability
- Vuln: Mod_Perl Path_Info Remote Denial Of Service Vulnerability
- Vuln: Apache mod_perl 'Apache::Status' and 'Apache2::Status' Cross Site Scripting Vulnerability
- Vuln: FreeBSD 'fifo_vnops.c' Resource Leak Local Denial of Service Vulnerability
- Vuln: Citrix NetScaler and Access Gateway Denial Of Service Vulnerability
- Vuln: PDFLib 'open_basedir' Restriction Bypass Vulnerability
- Vuln: Multiple Vendor TLS Protocol Session Renegotiation Security Vulnerability
Search
Search Result
-
Fragus exploit pack’s pricy business model locks users in
Category: Network Security & Hacking News/Latest Security News
The $800 attack toolkit comes with a self-destruct mechanism after a certain time period Security researchers at Symantec are closely monitoring the Fragus exploit pack, an $800 package of tools developed ...Friday, 06 November 2009 -
Bredolab surges to new heights thanks to Cutwail botnet
Category: Network Security & Hacking News/Latest Security News
... did had difficulties in detecting the new variant resulting in less protection for an end user system. In some cases, not even 30% of the engines did detect the trojan after more than 6 hours when the ...Thursday, 05 November 2009 -
Lose/Lose: Kill an Alien, Delete a File
Category: Network Security & Hacking News/Latest Security News
... prey. This usage of natural human reactions to trigger certain actions may be a form of research to some but what we see it as is this: a social engineering technique. Mac users can get protection from ...Wednesday, 04 November 2009 -
What DAM Does
Category: Network Security & Hacking News/Latest Security News
Database Activity Monitoring (DAM) tools have a range of capabilities, including data collection and analysis. But the real question is how does this technology help you. Database Activity Monitoring ...Wednesday, 04 November 2009 -
Hong Kong's data protection review is inadequate
Category: Network Security & Hacking News/Latest Security News
OPINION: Hong Kong's data protection laws should be brought into line with those of the EU and other countries, according to Hong Kong's Government and privacy office. Unfortunately they are refusing to ...Tuesday, 03 November 2009 -
Hong Kong's data protection review is inadequate
Category: Network Security & Hacking News/Latest Security News
OPINION: Hong Kong's data protection laws should be brought into line with those of the EU and other countries, according to Hong Kong's Government and privacy office. Unfortunately they are refusing to ...Tuesday, 03 November 2009 -
Seaports Still At Risk of Biological and Chemical Threats
Category: Network Security & Hacking News/Global Security News
U.S. Customs and Border Protection should consider taking additional steps to counter biological and chemical threats in maritime cargo, according to the Homeland Security Department's inspector general. ...Tuesday, 03 November 2009 -
Smoking (Cloud) Crack
Category: Network Security & Hacking News/Latest Security News
Making waves in the infosec blogosphere today: Cracking a PGP-protected ZIP file using Amazon's EC2 cloud computing infrastructure. There's some interesting data presented, especially when extrapolating ...Tuesday, 03 November 2009 -
Tentative Speaker List for SANS Incident Detection Summit
Category: Network Security & Hacking News/Latest Security News
Thanks to everyone who attended the Bejtlich and Bradley Webcast for SANS yesterday. We recorded that Webcast audio is now available) to start a discussion concerning professional incident detection. ...Tuesday, 03 November 2009 -
Elite Loader Goes Public
Category: Network Security & Hacking News/Latest Security News
... as part of the DLOADER family of Trojans so product users need not worry about being infected. Trend Micro Smart Protection Network™ blocks the download of all malicious files and access to malicious URLs ...Monday, 02 November 2009 -
Pricing Scheme for a DDoS Extortion Attack
Category: Network Security & Hacking News/Latest Security News
... you contact the companies involved in the protection of DDoS-attacks and they begin to block our bots, we will increase the number of bots to 50 000, and the protection of 50 000 bots is very, very expensive. ...Monday, 02 November 2009 -
Vuln: Xerox Fiery WebTools 'summary.php' SQL Injection Vulnerability
Category: Network Security & Hacking News/Security Exploits and Security Patches
Xerox Fiery WebTools 'summary.php' SQL Injection Vulnerability Read Full ArticleMonday, 02 November 2009 -
My WAF went W00F!
Category: Network Security & Hacking News/Latest Security News
We have finally made it this week into Mathieu Dessus'slist of fingerprinted WAFs. Wow! You're probably wondering by now what is this list and why should you care about it? Well, let me tell you all about ...Monday, 02 November 2009 -
Your new client security analyst
Category: Network Security & Hacking News/Latest Security News
... 2007, I anticipated the rapid move of anti-virus to the cloud, which we see today in Panda Security’s “collective intelligence,” in McAfee’s Artemis project, Trend Micro’s Smart Protection Network, ...Monday, 02 November 2009 -
Computer Aided Investigative Environment 1.0 released
Category: Network Security & Hacking News/Latest Security News
Version 1.0 of the Computer Aided INvestigative Environment Linux live distribution has been released. CAINE and NetBookCAINE (NBCAINE) provide a complete digital forensic environment that's organised ...Monday, 02 November 2009 -
Malware Conceals Itself as Boss’s Letter
Category: Network Security & Hacking News/Latest Security News
... via its Trend Micro Smart Protection Network that detects TROJ_CUTWAIL.GT and blocks the spammed email message. Non-Trend Micro products users can use free tools like HouseCall to stay secure from this ...Monday, 02 November 2009 -
Christmas Spam Spotted
Category: Network Security & Hacking News/Latest Security News
... spam. As usual, users are advised not to avail any products from spammers. Trend Micro protects users from this attack through its Smart Protection Network. Non-Trend Micro products users can use free ...Monday, 02 November 2009 -
Software Security Initiatives:Maturity Models, Metrics and Business Cases
Category: Network Security & Hacking News/Latest Security News
On November 4, I am going to present at Italy OWASP Day E-Gov 09 OWASP-CONSIP sponsored conference (CONSIP is a company of the Italian Department of Economy and Finance). I will be presenting on the topic ...Sunday, 01 November 2009 -
How Secure is your UK Online Banking?
Category: Network Security & Hacking News/Latest Security News
... (token/key), consider switching to a bank which does. 2. Password Protection a. Ensure your bank account password is a unique password to you. Using the same password with other websites such as Social ...Sunday, 01 November 2009 -
Risk Driven Security Testing
Category: Network Security & Hacking News/Latest Security News
I presented today at IMI Security Summit on the topic of "Threat Analysis as methodology for deriving risk-based security tests of web application software". The conference gave me the opportunity to evangelize ...Friday, 30 October 2009 -
CREDANT Technologies Reports Strongest Quarter Ever
Category: Network Security & Hacking News/Latest Security News
CREDANT Technologies, the market leader in endpoint data protection solutions today announced their best quarterly revenue bookings in the history of the company. CREDANT enjoyed great success across the ...Friday, 30 October 2009 -
Finjan says controlled access Web portals now prime target of cybercriminals
Category: Network Security & Hacking News/Latest Security News
As news of the Guardian web site hack broke on Sunday, Finjan, the business Internet security specialist, said that identity information on consumers and companies continues to be a prime target for criminal ...Friday, 30 October 2009 -
Finjan warns companies as China prepares for cyber-espionage
Category: Network Security & Hacking News/Latest Security News
A report commissioned by a US Congressional advisory panel monitoring the security implications of trading with China has warned that China has started spying on the US government and major companies. ...Friday, 30 October 2009 -
CREDANT Technologies Gains Two Recognitions
Category: Network Security & Hacking News/Latest Security News
CREDANT Technologies, the market leader in endpoint data protection solutions, today announced it has been ranked number 93 on Technology Fast 500™, and is a finalist in GSN: Government Security News Homeland ...Friday, 30 October 2009 -
SanDisk Cruzer Enterprise Flash Drives Earn Certification
Category: Network Security & Hacking News/Latest Security News
... To deliver an additional layer of security for government and enterprise organizations, SanDisk provides Cruzer Enterprise secure USB drives with McAfee Malware Protection, which features an automatic ...Friday, 30 October 2009 -
A makeover for federal cybersecurity reporting
Category: Network Security & Hacking News/Latest Security News
... spent $133 million over the past six years on certification and accreditation (C&A) reports, a process whereby agencies evaluate every three years what defensive security protections are in place to ...Friday, 30 October 2009 -
Commission vows to continue legal action against UK over alleged lack of e-privacy protection
Category: Network Security & Hacking News/Latest Security News
The European Commission has rejected the UK's defence of its electronic privacy laws and will continue to pursue legal action against the Government in a case sparked by BT's use of Phorm web activity ...Friday, 30 October 2009 -
Defeating Zombies: Five Ways To Improve Defenses
Category: Network Security & Hacking News/Latest Security News
... it in front of the door and leaving the windows unsecured. Shooting zombies in any other location other than the head is another good example (those who have read "The Zombie Survival Guide: Complete Protection ...Friday, 30 October 2009 -
DHS to open new cyber operations center
Category: Network Security & Hacking News/Latest Security News
During a roundtable at RSA Conference Europe last week, Philip Reitinger, U.S. Department of Homeland Security (DHS) Deputy Under Secretary for the National Protection and Programs Directorate announc... ...Friday, 30 October 2009 -
Enterprise Open Source Intelligence Gathering – Part 3 Monitoring and Social Media Policies
Category: Network Security & Hacking News/Latest Security News
This is the final article in my series on Enterprise Open Source Intelligence Gathering. This information relates to the main topics from my presentation that I am giving this week at the 7th Annual Ohio ...Thursday, 29 October 2009 -
Do machines dream of electric malware?
Category: Network Security & Hacking News/Global Security News
Posted by: Oliver Fisher, Anti-Malware Team We've explored Google's anti-malware processes several times recently, as well as our efforts to work with webmasters to help protect their users. However, ...Thursday, 29 October 2009 -
Interesting Information Security Bits for 10/29/2009
Category: Network Security & Hacking News/Latest Security News
Good afternoon everybody! I hope your day is going well. Here are today's Interesting Information Security Bits from around the web. The Security Baselines for Windows 7 and IE 8 are now available. Now ...Thursday, 29 October 2009 -
The curious case of asset Valuation.
Category: Network Security & Hacking News/Latest Security News
... better bridges the rationalization for security spending with protection strategies. And we can altogether avoid the curious tendency to classify and value assets as “revenue generating” ...Thursday, 29 October 2009 -
Securing the Toughest Times
Category: Network Security & Hacking News/Latest Security News
... need to ensure the protection of personnel and assets during the lay-offs. On the physical side, you need to make sure that those announcing the lay-offs are protected should the employee(s) get upset ...Wednesday, 28 October 2009 -
Partnerships and Procurement Are Not the Answer
Category: Network Security & Hacking News/Latest Security News
... in mind. Step three is for private sector leaders to visit their Congressional representatives in person and say they are tired of paying corporate income tax while receiving zero protection from foreign ...Wednesday, 28 October 2009 -
Panda Internet Security 2010 3 User (CD-ROM) newly tagged "computer security"
Category: Network Security & Hacking Products/Computer Security
... by R. Blease Customer tags: protection for pcs, panda software, computer security, panda, internet security, utilities, filtering, security Read Full Article ...Wednesday, 28 October 2009 -
Enterprise Open Source Intelligence Gathering – Part 2 Blogs, Message Boards and Metadata
Category: Network Security & Hacking News/Latest Security News
This post is part two of my three part series on Enterprise Open Source Intelligence Gathering. This information relates to the presentation that I am giving this week at the 7th Annual Ohio Information ...Wednesday, 28 October 2009 -
Know Your Tools
Category: Network Security & Hacking News/Latest Security News
Ever have one of those days where nothing really seems to go right? You're working on something that should be simple and it ends up throwing seemingly unexplainable errors back at you no matter what you ...Wednesday, 28 October 2009 -
Domain-Specific Modeling: Enabling Full Code Generation (Paperback) newly tagged "programming"
Category: Network Security & Hacking Products/Programming
Domain-Specific Modeling: Enabling Full Code Generation (Paperback) By Steven Kelly Buy new: $81.45 32 used and new from $68.00 Customer Rating: First tagged ...Wednesday, 28 October 2009 -
Fordham report on Children's Privacy
Category: Network Security & Hacking News/Latest Security News
... privacy concerns implicated by these trends. The Study reports on the results of a survey of all fifty states and finds that state educational databases across the country ignore key privacy protections ...Wednesday, 28 October 2009 -
OAMP: OpenBSD 4.6 + Chroot Apache + MySQL + PHP
Category: Network Security & Hacking News/Latest Security News
IntroductionI'm combining the OAMP howto with chroot from the start this time because it's really the proper and secure thing to do. You can read more about how chroot works in my last article about it, ...Wednesday, 28 October 2009 -
Fake Facebook Password Notification Leads to Malware
Category: Network Security & Hacking News/Latest Security News
... notifications even if comes from a known source. Trend Micro product users are protected from this attack via the Smart Protection Network, which detects and blocks this kind of spam. Non-Trend Micro product ...Tuesday, 27 October 2009 -
FDIC Spam Points to Info Stealer
Category: Network Security & Hacking News/Latest Security News
... by this though, as they are protected by the Smart Protection Network. Non-product users, on the other hand, can use HouseCall, Trend Micro’s highly popular and capable on-demand scanner for identifying ...Tuesday, 27 October 2009 -
Interesting Information Security Bits for 10/27/2009
Category: Network Security & Hacking News/Latest Security News
Good afternoon everybody! I hope your day is going well. Here are today's Interesting Information Security Bits from around the web. Some good tips and resources for gathering intelligence. Enterprise ...Tuesday, 27 October 2009 -
Initial Thoughts on Cloud A6
Category: Network Security & Hacking News/Latest Security News
I'm a little late to this issue, but let me start by saying I read Craig Balding's RSA Europe 2009 Presentation this evening. In it he mentioned something called the A6 Working Group. I learned this ...Tuesday, 27 October 2009 -
Toata Scanning for Zen Shopping Cart with Brain File
Category: Network Security & Hacking News/Latest Security News
If you've been a long time reader of this blog, then you know about our ongoing efforts to help stem the tide of web application infections. Here is another example of this effort in action. A couple of ...Tuesday, 27 October 2009 -
Acunetix WVS Version 6.5 build 20091027 released
Category: Network Security & Hacking News/Global Security News
An updated build for Acunetix WVS Version 6.5 has been released. It includes a number of bug fixes. Bug fixes: Fixed: Redirect on LoginSequenceStep was not followed correctly Fix in URL Rewrite module ...Tuesday, 27 October 2009 -
Wednesday is Last Day for Discounted SANS Registration
Category: Network Security & Hacking News/Latest Security News
In my off time I'm still busy organizing the SANS WhatWorks in Incident Detection Summit 2009, taking place in Washington, DC on 9-10 Dec 09. The agenda page should be updated soon to feature all of the ...Tuesday, 27 October 2009 -
Getting your n00b fill of security
Category: Network Security & Hacking News/Latest Security News
Continuing my “Getting your fill of” series Dave Shackleford recently posted an excellent blog entry titled “One for the n00bs”: http://daveshackleford.com/?p=277 It relates the security community ...Monday, 26 October 2009 -
IPv6 Tunneling Protocols: Good for Adoption, Not So Hot for Security
Category: Network Security & Hacking News/Latest Security News
... protocols are focused on easing the transition to IPv6 and neither one claims to offer any significant security protections. In fact the Teredo RFC goes so far as to call itself the IPv6 Provider of Last ...Monday, 26 October 2009 -
Mootools Blog
Category: News Feeds / Related Projects
http://feeds.feedburner.com/mootools-blog
