Exploit code loose for six-month-old Windows bug

Friday, October 10th, 2008

Microsoft Corp. yesterday acknowledged that exploit code is circulating for a vulnerability it acknowledged six months ago, but has yet to patch. It's not clear whether Microsoft intends to fix the flaw next week. On Thursday, Microsoft revised a security advisory it first posted April 19 about a bug in Windows XP, ...

Researcher to Demonstrate Attack Code for Intel Chips

Monday, July 14th, 2008

Security researcher and author Kris Kaspersky plans to demonstrate how an attacker can target flaws in Intel's microprocessors to remotely attack a computer using JavaScript or TCP/IP packets, regardless of what operating system the computer is running. Kaspersky will demonstrate how such an attack can be made in a presentation at ...

Microsoft warns of new Access attack

Tuesday, July 8th, 2008

Cybercriminals are exploiting a bug in software used by Microsoft's Access database program in a new online attack, Microsoft warned Monday.The flaw lies in the Snapshot Viewer ActiveX control, which ships with "all supported versions of Microsoft Office Access except Microsoft Access 2007," Microsoft said in a security advisory, published ...

Site Security Policy

Sunday, June 8th, 2008

OK gang, this is one of those rare moments where feedback from community will directly influence a security feature that’ll make a real difference. First some background... About 6 months ago Brandon Sterne left a cushy infosec position at eBay for Mozilla to solve an extremely important Web security problem he ...

Crypto Virus Returns

Saturday, June 7th, 2008

The emergence of a variant on a virus that encrypts the victim's data with a strong 1,024-bit algorithm so the victim can't unscramble it without paying a ransom has begun to spread, potentially posing a major threat, according to the antimalware firm which discovered it. Kaspersky Lab says the new variant ...