Critical flaw in Cisco Secure Desktop
- aapl
- activex control
- adobe pdf reader
- adobe reader
- anti spam law
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus solution
- apache software foundation
- apple fans
- archive file formats
- assumptions
- attacker
- bad guys
- batten down
- batten down the hatches
- china reports
- code execution
- computer security researcher
- continual challenge
- corruption case
- cross compilers
- cyber attacks
- cyber attacks
- cyber attacks
- cyber attacks
- cyber attacks
- cyber attacks
- cyber attacks
- cyber commander
- cyber training
- digital war
- dirty laundry
- ftc staff
- government accountability office
- government accountability office
- government accountability office
- government accountability office
- hack
- hacker
- hacker
- infosec
- initial reviews
- intego
- intuit
- italian judge
- java plugin
- java update
- law enforcement officials
- longtime provider
- mac antivirus
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- mac os x
- macworld
- malicious attacks
- malicious users
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- massive headache
- michelle obama
- mid 80s
- ms patch
- national security agency
- network administrators
- nonplussed
- pc world
- personal finances
- physical security
- pilot fish
- privacy study
- s computer networks
- safari browser
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security risks
- security team
- security team
- security team
- security team
- security team
- security team
- security team
- social networking sites
- social networking sites
- social networking sites
- social networking sites
- social networks
- social networks
- social networks
- social networks
- software bugs
- sun ships
- unsolicited email
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- windows server 2003 r2
- world researchers
- worm infections
- yearlong study
- young adults
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
If an attacker can entice a user to visit an attacker controlled web page, the vulnerable ActiveX control could be invoked to download an attacker-modified package.
Apple patches Pwn2Own flaw used to hack Safari
- aapl
- adobe partner
- adobe pdf reader
- anti spam law
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus solution
- apache org
- apache software foundation
- bad guys
- batten down
- canadian hacker
- china search engine
- coalmine
- code execution
- command line parameters
- computer operating system
- computer security researcher
- continual challenge
- cross compilers
- cyber attacks
- cyber attacks
- cyber attacks
- cyber attacks
- cyber attacks
- cyber attacks
- cyber commander
- cyber threat
- cyber training
- digital war
- flu cases
- foreign correspondents club
- ftc staff
- hack
- hacker
- hackings
- health care organization
- initial reviews
- ipad
- java flaw
- java plugin
- law enforcement officials
- longtime provider
- mac antivirus
- macworld
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- massive headache
- michelle obama
- microsoft employ
- mid 80s
- ms patch
- national science foundation
- national security agency
- network administrators
- network solutions
- new ground
- new york times
- nonplussed
- novel approach
- passwords hackers
- pc users
- pc world
- phisher
- pilot fish
- political opponents
- preventing spam
- privacy in the workplace
- ransomware
- s computer networks
- safari browser
- security weaknesses
- social networking sites
- social networking sites
- social networking sites
- software bugs
- spammer
- swine flu
- target reports
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- vulnerability
- windows server 2003 r2
- yahoo email accounts
- youtube
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
- zero day
According to Apple's advisory accompanying the patch, the actual vulnerability was not in the Safari browser but in the way ATS (Apple Type Services) handles certain fonts.
WordPress blogs hacked, redirecting to malware
- adobe partner
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- america atm
- anti spam law
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- antivirus software
- bad guys
- bofa
- breadth
- canadian hacker
- china search engine
- chinese internet users
- coalmine
- command line parameters
- computer operating system
- computer users
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- cross compilers
- cyber commander
- cyber threat
- cyber training
- dalai lama
- digital war
- email accounts
- emergency patch
- espionage network
- federal aviation administration
- flu cases
- foreign correspondents club
- ftc staff
- hackings
- hardware
- health care organization
- heartland
- ipad
- java flaw
- jc penney co inc
- macworld
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- malware
- michelle obama
- microsoft employ
- misstep
- ms patch
- national science foundation
- network solutions
- new ground
- new york times
- notorious computer hacker
- novel approach
- pc users
- pc world
- pdf hack
- pdf reader
- phisher
- political opponents
- preventing spam
- privacy in the workplace
- ransomware
- s computer networks
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security weaknesses
- sensitive data
- sensitive data
- sensitive data
- severity rating
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- software survey
- spammer
- swine flu
- target reports
- third parties
- updater software
- web browser software
- worm attacks
- worm attacks
- yahoo email accounts
- yahoo hack
- youtube
The attacks occurred mostly on WordPress blogs hosted by Network Solutions but it appears that there are multiple security weaknesses in play.
Sun Java flaw exposes Windows users to dangerous Web attacks
- adobe partner
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- america atm
- anti spam law
- antivirus pc
- bofa
- breadth
- canadian hacker
- cansecwest
- china search engine
- chinese internet users
- coalmine
- command line parameters
- computer users
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical patch
- critical security
- critical security
- critical security
- critical security
- cross compilers
- cyber threat
- dalai lama
- debit card numbers
- debit card numbers
- debit card numbers
- debit card numbers
- debit card numbers
- debit card numbers
- debit card numbers
- dumb mistakes
- email accounts
- emergency patch
- espionage network
- federal aviation administration
- flu cases
- foreign correspondents club
- ftc staff
- hacker challenge
- hackings
- hardware
- health care organization
- heartland
- insider information
- insider trading
- ipad
- java flaw
- java update
- jc penney co inc
- michelle obama
- microsoft employ
- misstep
- ms patch
- new ground
- new york times
- notorious computer hacker
- pc users
- pc world
- pdf hack
- pdf reader
- phisher
- political opponents
- preventing spam
- privacy in the workplace
- root certificate authority
- s computer networks
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- sensitive data
- sensitive data
- severity rating
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- software programmers
- software survey
- sole survivor
- spammer
- startling revelation
- swine flu
- target reports
- third parties
- updater software
- web browser software
- wlans
- worm attacks
- yahoo email accounts
- yahoo hack
- youtube
The flaw occurs because the Java-Plugin Browser is running "javaws.exe" without validating command-line parameters.
Adobe suggests workaround for PDF embedded executable hack
- adobe partner
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- adobe pdf
- antivirus pc
- backdoor programs
- breadth
- canadian hacker
- cansecwest
- censorship in schools
- china search engine
- chinese internet users
- computer hackers
- computer users
- credit card theft
- critical security
- critical security
- critical security
- cyber threat
- debit card numbers
- debit card numbers
- debit card numbers
- debit card numbers
- debit card numbers
- debit card numbers
- dumb mistakes
- email accounts
- emergency patch
- federal aviation administration
- flu cases
- foreign correspondents club
- hacker challenge
- hackings
- hardware
- health care organization
- heartland
- insider information
- insider trading
- internet censorship
- internet explorer 8
- internet explorer 8
- internet filtering software
- ipad
- java update
- jc penney co inc
- mac operating system
- microsoft vulnerabilities
- misstep
- new ground
- notorious computer hacker
- pc users
- pc world
- pdf reader
- phish
- phisher
- political opponents
- privacy in the workplace
- privileged accounts
- quicktime media player
- response teams
- root certificate authority
- s computer networks
- security holes
- security holes
- security holes
- security holes
- security holes
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security researchers
- security vulnerabilities
- sensitive data
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- social networking site
- software programmers
- software survey
- sole survivor
- spammer
- startling revelation
- swine flu
- target reports
- third parties
- trojan downloaders
- web browser software
- web filtering software
- wlans
- yahoo email accounts
- yahoo hack
- youtube
- zeus
Adobe is suggesting that users configure its PDF Reader product to limit the damage from an attack.
[Quick Post] Facebook Striptease Dance Party
I received this mail:
Subject of mail is catchy and anyone can get diverted to it.at a first look url also seems to be coming from facebook but in fact it is not.
look at the highlighted url.thats the original url.so beware of it.
Facebook Problems.
As everyone probably knows, Facebooks sourcecode has leaked. Facebook is sending out letters to everyone to stop publishing it's source code. I guess it's a little late for that. Everyone who knows Google can find it back. But I guess the problems doesn't stop there. It seems that they run a very old thttpd server, namely version 1.0. While it is a cool and tiny server, I would not run it. Just ask Google. Now, there is a tiny unnoticed lesson in this because the same happened to del.icio.us once. Imagine your server spits out PHP files as plain text. read more »




Recent comments
6 weeks 4 days ago
49 weeks 2 days ago
50 weeks 3 days ago
1 year 3 days ago
1 year 3 days ago
1 year 3 days ago
1 year 3 days ago
1 year 6 weeks ago
1 year 14 weeks ago
1 year 16 weeks ago