Content Tagged ‘vulnerability’

Oracle discloses new zero day exploit and launches JDK for Mac OS X

April 30, 2012 - Oracle announces the release of Java JDK for OS X Lion and a zero day in its database products that has a proof-of-concept available in the wild. Read more

Opinion: America is under cyber attack, so what should we do?

April 27, 2012 - US House of Representatives kicked off “cybersecurity week,” with "America is Under Cyber Attack: Why Urgent Action is Needed." Is using Hollywood-style language really the way to deal with a really serious issue? (continue reading...) Read more

Microsoft rushes out fix after hackers reset passwords to hack Hotmail accounts

April 27, 2012 - Microsoft says it has fixed a serious vulnerability in Hotmail, that was allowing hackers to reset account passwords, locking out the account's real owner and giving attackers access to users' inboxes. Read more

Opinion: Why we need Anonymous 2.0

April 24, 2012 - A few thoughts on the "hacktivist" group Anonymous that came out of Josh Corman and Brian "Jericho" Martin's keynote at the SOURCE security conference in Boston last week. Read more

London Marathon website goof leaks 38,000 contact details

April 23, 2012 - The home addresses and personal email details of some 38,000 participants in Sunday's London Marathon were exposed for anyone to access on the race's official website. Celebrities were amongst those who had their private details exposed by the glitch. (continue reading...) Read more

SSCC 88 – iTunes security, Mac malware and Google’s FCC fine

April 22, 2012 - Chester Wisniewski and Paul Ducklin chat about the security issues surrounding Apple's new iTunes security, knowledge-based authentication, Mac malware and Google's fine from the FCC. Read more

Formula 1 website attacked by Anonymous, brought down by DDoS

April 20, 2012 - Anonymous hacktivists blasted the Formula 1 website off the net, with a distributed denial-of-service (DDoS) attack. Read more

BSides Austin – Security tools for the cloud, password storage, GoogleTV hacks, card key hacking and how to get ahead in IT

April 16, 2012 - There were lots of fantastic presentations at BSides Austin last week, here are a few of our favorites. Read more

What is it Like to be a Cisco Security Analyst?

April 16, 2012 - Security events, such as vulnerabilities and threats, that are detected globally continue to grow and evolve in scale, impact, diversity, and complexity. Compounded with this is the other side of the coin, the unreported or undetected events awaiting in the (continue reading...) Read more

New version of Sabpab Mac Trojan emerges, spread via Word documents

April 16, 2012 - A new version of the Mac OS X Sabpab Trojan horse has come to light, and rather than relying upon a Java vulnerability - it appears to be exploiting malformed Word documents instead. (continue reading...) Read more

Apple ratchets up security on App Store and iTunes

April 16, 2012 - Apple is prompting some of its iTunes/App Store/iOS customers to set up three new security questions and an alternate email, in an attempt to smother a growing wave of phishing and fraud. (continue reading...) Read more

Sabpab, new Mac OS X backdoor Trojan horse discovered

April 13, 2012 - More Mac malware has been discovered, capable of giving remote hackers access to your Apple Mac. Isn't it time you ran anti-virus software on your Mac? Read more

Android malware poses as Angry Birds Space game

April 12, 2012 - Android malware authors have seized an opportunity to infect unsuspecting smartphone users with the launch of the latest addition to the immensely popular "Angry Birds" series of games. Read more

Beware of a new Windows security vulnerability (MS12-024)

April 12, 2012 - As a part of the April’s “Patch Tuesday”, Microsoft released a fix for the MS12-024 / CVE-2012-0151 vulnerability. This issue was discovered and researched by us; we have been in contact with Microsoft engineers for the past few months (continue reading...) Read more

Apple security team touches down on Planet Earth!

April 10, 2012 - In KB article HT5244, Apple has - apparently for the very first time! - talked openly about a security problem before it has all its threat reponse ducks in a row. This is good news. (continue reading...) Read more

Patch Tuesday April 2012 – Critical updates for Windows, Office and Adobe Reader

April 10, 2012 - Microsoft released six patches for eleven vulnerabilities today for Windows, Office, SQL and other products. Adobe also updated their Reader app to fix four vulnerabilities that can be exploited by malicious PDF files. (continue reading...) Read more

Are Macs safer than PCs?

April 10, 2012 - Apple has traditionally marketed its systems as being more secure than those running Microsoft Windows, but just how true is that? Read more

SSCC 87 – Mac botnet, Global Payments, Flash Player updater, AES-NI and cloud encryption

April 7, 2012 - David Schwartzberg is this week's guest on the Chet Chat to talk about the data breach at Global Payments, a new Mac botnet and Flash Player updating. David also explained the new AES-NI encryption acceleration in Intel chips and a (continue reading...) Read more

Free Anti-virus: Worth Every Penny?

April 5, 2012 - Andrew Lee just drew my attention to a poll carried out by an IT magazine in the UK, asking the question ‘Do you think it's necessary to use paid-for anti-virus software to effectively protect your PC?’ Clearly this (continue reading...) Read more

Facebook logins aren’t being properly protected on iPhones, iPads and Android devices

April 5, 2012 - Facebook login credentials could be lifted from smartphones because the site is not encrypting the sensitive data on iOS and Android devices. Read more

Copyright © 2012 The Security Blog. All rights reserved.