Ever heard of Induc, Sninsfs or OSX.iservice? These new types of attacks emerged in 2009 and could become more prevalent in the year ahead.
Potty-mouths charged for Comcast hijack
The Register - Security
Destination '69 dick tard lane'
The potty-mouthed hackers who hijacked Comcast's domain name for several hours last year were charged with intentionally damaging a protected computer system.
EU security agency highlights cloud computing risks
Network World on Security
Cloud computing users face problems including loss of control over data, difficulties proving compliance, and additional legal risks as data moves from one legal jurisdiction to another, according to a assessement of cloud computing risks from the Europea
Banks on watch after suspected card breach
Network World on Security
An apparent data breach in Spain has caused Visa and MasterCard to warn banks of possible fraudulent credit card transactions.
Cyberattacks on U.S. military jump sharply in 2009
Network World on Security
Cyberattacks on the U.S. Department of Defense -- many of them coming from China -- have jumped sharply in 2009, a U.S. congressional committee reported Thursday.
Mandriva Linux Security Update Advisory - glpi (MDVA-2009:214)
Help Net Security - Advisories
_______________________________________________________________________
Mandriva Linux Advisory MDVA-2009:214
http://www.mandriva.com/security/
_________________...
A Linux Security Primer
LinuxSecurity.com - Latest News
LinuxSecurity.com: Linux aficionados and computer security experts -- not to mention many IT writers -- are known to use a couple of terms with, well, not-easily-discernable definitions when they talk about Linux security. Problem is, you need to k
Using a Cisco Router as a "Remote Collector" for tcpdump or Wireshark
LinuxSecurity.com - Latest News
LinuxSecurity.com: Have you ever thought about your routers. I mean - *really* thought about them? They think all day long, processing all of the packets in and out of your company's WAN or internet connection, and hardly ever complain. But can
PHP 5.3.1 Security Updates
LinuxSecurity.com - Latest News
LinuxSecurity.com: Nearly five months after the release of PHP 5.3.0, the PHP developers have released the first maintenance update to the 5.3 branch of their popular programming language. The PHP 5.3.1 update focuses on stability and includes appr
Google Chrome OS goes open source in Chromium OS
LinuxSecurity.com - Latest News
LinuxSecurity.com: Google today has officially open sourced its under-development Chrome OS operating system under the Chromium OS project. The code is available now at: http://www.chromium.org/chromium-os/building-chromium-os - I'm currently in t
VUPEN - KDE kdelibs Floating Point Numbers Memory Corruption Vulnerability
VUPEN Security Advisories
A vulnerability has been identified in KDE kdelibs, which could be exploited by attackers to compromise a vulnerable system...
VUPEN - K-Meleon Floating Point Numbers Memory Corruption Vulnerability
VUPEN Security Advisories
A vulnerability has been identified in K-Meleon, which could be exploited by attackers to compromise a vulnerable system...
VUPEN - PEAR Mail "form" Parameter Sendmail Argument Injection Vulnerability
VUPEN Security Advisories
A vulnerability has been identified in PEAR Mail, which could be exploited by attackers to bypass security restrictions and gain knowledge of sensitive information...
SuSE 11.0 Security Update: qemu (2009-11-12)
Nessus.org Plugins
Synopsis :
The remote SuSE system is missing a security patch for qemu
Description :
The VNC server of qemu was vulnerable to use-after-free
bugs, that allowed the execution of code on the host system
ini
SuSE 11.1 Security Update: qemu (2009-11-12)
Nessus.org Plugins
Synopsis :
The remote SuSE system is missing a security patch for qemu
Description :
The VNC server of qemu was vulnerable to use-after-free
bugs, that allowed the execution of code on the host system
ini
Microsoft denies building security 'backdoor' in Windows 7
Techworld.com Security News
Privacy organisations shouldn't read too much into NSA involvement it says
Microsoft has denied building a backdoor into Windows 7, responding to concerns from privacy organisations after it was revealed that the Nationa
How to avoid joining a botnet
Techworld.com Security News
3 easy steps to web security
Banging the drum for security awareness never gets old. As much as CSOs try to get folks to bone up on safe practices (both online and in the office), there are always going to be some who need remindi
Hackers Comcast.net aangeklaagd
Security.NL nieuws
De drie hackers die er vorig jaar in slaagden de DNS van internetprovider Comcast te kapen, zijn door de Amerikaanse overheid aangeklaagd.
Palin noemt hackeraanval dieptepunt van campagne
Security.NL nieuws
Het kraken van Sarah Palin's persoonlijke e-mailadres was voor de Republikeinse kandidaat-vice-president het dieptepunt in haar campagne, zo laat ze in haar boek 'Going Rogue: An American Life' weten.
Nieuwe worm bouwt eerste iPhone botnet
Security.NL nieuws
Na verschillende onschuldige iPhone wormen, is er nu een zeer gevaarlijke variant gesignaleerd die het eerste iPhone botnet aan het bouwen is, zo laat XS4ALL aan Security.nl weten.
Wrecking CRU: hackers cause massive climate data breach
The Register - Security
Secretive scientists' source code goes walkabout
The University of East Anglia has confirmed that a data breach has put a large quantity of emails and other documents from staff at its Climate Research Unit online. CRU is one of the three lead
QinetiQ mail virus patent attracts barbs
The Register - Security: Anti-Virus
Looks a bit familiar
An anti-virus expert has poured cold water on a patent from British technology firm QinetiQ that supposedly offers a new technique for tackling malicious email attachments.
Three Charged in Comcast Cyber-Attack
Security - RSS Feeds
Three men were charged by federal indictment Nov. 19 in connection with attacking Comcast.net and redirecting traffic to sites under their control. The group altered Comcast's DNS records and is estimated to have cost the company more than $128,000.
10 Lessons Google Must Learn About OS Security
LinuxSecurity.com - Latest News
LinuxSecurity.com: News Analysis: Google is new to the operating system market, so it has to demonstrate that it understands how to build and maintain a secure Web OS. The history of Windows security has shown there are many avenues of attack again
Arrested: Suspected Zeus Trojan distributors
silicon.com :
None
VUPEN - PHP Security Update Fixes Security Bypass and DoS Vulnerabilities
VUPEN Security Advisories
Multiple vulnerabilities have been identified in PHP, which could be exploited by attackers to cause a denial of service or bypass security restrictions...
VUPEN - Cisco VPN Client "cvpnd.exe" Local Denial of Service Vulnerability
VUPEN Security Advisories
A vulnerability has been identified in Cisco VPN Client, which could be exploited by local attackers to cause a denial of service...
VUPEN - Opera Floating Point Number Handling Memory Corruption Vulnerability
VUPEN Security Advisories
A vulnerability has been identified in Opera, which could be exploited by attackers to compromise a vulnerable system...
Wpad.cn gevaarlijkste domeinnaam in China
Security.NL nieuws
Een Chinese domeinnaam die voor 1200 euro wordt aangeboden, zou aanvallers informatie over miljoenen Chinezen geven en helpen bij het uitvoeren van phishingaanvallen en andere soorten fraude.
IE8-lek maakt veilige websites onveilig
Security.NL nieuws
Een beveiligingsmaatregel in Internet Explorer 8 bevat een lek, waardoor websites die in principe veilig zijn, kunnen worden aangevallen.
Microsoft: Chrome OS features zijn niet alles
Security.NL nieuws
Microsoft verschilt van mening met Google over hoe je een veilig besturingssysteem ontwikkelt, volgens de softwaregigant gaat het namelijk niet om de features, maar om de toegepaste processen.
Security.nl Pencak Silat team knokt in Vietnam
Security.NL nieuws
Sinds 2006 sponsort Security.nl n van de beste Pencak Silat teams van Nederland en Europa en de heren en dame van Team Bongkot zijn op dit moment in Vietnam aan het knokken.
Cisco lanceert iPhone security app
Security.NL nieuws
Cisco biedt een gratis iPhone app aan die gebruikers allerlei beveiligingsinformatie geeft, zoals waarschuwingen, IPS signatures, security bulletins, uitbraken en links naar security blogs, persberichten, Twitter en Podcasts.
MS discovers flaw in Google plug-in for IE
The Register - Security
Google whacked
Microsoft has helped discover a flaw in the Google Chome Frame plug-in for Internet Explorer users.
Security Pro Says New SSL Attack Can Hit Many Sites
(PC World)
Yahoo! News: Security News
PC World - A Seattle computer security consultant says he's developed a new way to exploit a recently disclosed bug in the SSL protocol, used to secure communications on the Internet. The attack, while difficult to execute, could give attackers a very pow
Microsoft Uncovers Vulnerability in Google Chrome Plug-in for IE
Security - RSS Feeds
Microsoft uncovered a vulnerability in a controversial Google plug-in for Internet Explorer that could be exploited to bypass cross-origin protections. Google patched the issue this week in an update.
- Microsoft researchers uncovered a flaw in t
VUPEN - SuSE Security Update Fixes Java Code Execution Vulnerabilities
VUPEN Security Advisories
Multiple vulnerabilities have been identified in SuSE, which could be exploited by attackers to bypass security restrictions, disclose sensitive information, cause a denial of service, or compromise an affected system...
VUPEN - HP Color LaserJet Remote Unauthorized Access and DoS Vulnerability
VUPEN Security Advisories
A vulnerability has been identified in HP Color LaserJet, which could be exploited by attackers to cause a denial of service or gain knowledge of sensitive information...
VUPEN - Linux Kernel "gdth_read_event()" Array Indexing Vulnerability
VUPEN Security Advisories
A vulnerability has been identified in Linux Kernel, which could be exploited by local attackers to cause a denial of service or gain elevated privileges...
How To Remember What You Forgot: Your Internal Google Comes To Rescue
The Best Article Every day
How to remember what you forgot? Is there a way to instruct your brain to remember those things that are buried under hundreds of layers of memories? Yes there is, and you have it since you were born.
Microsoft ontkent backdoor in Windows 7
Security.NL nieuws
De NSA liet tijdens een hoorzitting voor de Amerikaanse senaat weten dat het had meegeholpen aan Windows 7, maar volgens Microsoft zijn er geen achterdeurtjes aangebracht.
Google: Chrome OS veiliger dan Windows
Security.NL nieuws
Google heeft het eigen besturingssysteem Chromium aan de wereld gepresenteerd, dat volgens de zoekgigant veiliger dan traditionele besturingssystemen zal zijn.