Unauthentication

Monday, September 28th, 2009

In computer security, a lot of effort is spent on the authentication problem. Whether it's passwords, secure tokens, secret questions, image mnemonics, or something else, engineers are continually coming up with more complicated—and hopefully more secure—ways for you to prove you are who you say you are over the Internet. This ...

Critical iTunes flaw exposes Mac, Windows to hacker attacks

Tuesday, September 22nd, 2009

Apple has shipped iTunes 9.0.1 to fix a critical security hole that puts Mac and Windows users at risk of computer takeover attacks. The vulnerability could be used by hackers to launch code execution attacks via booby-trapped “.pls” files, Apple warned in an advisory. Source: http://blogs.zdnet.com/security/?p=4379

Firefox 3.5.3 Released!

Wednesday, September 9th, 2009

Firefox 3.5.3 fixes the following security issues: Chrome privilege escalation with FeedWriter Location bar spoofing via tall line-height Unicode characters TreeColumns dangling pointer vulnerability Crashes with evidence of memory corruption (rv:1.9.1.3/1.9.0.14) Help > Check for Updates or download here: http://www.mozilla.com/firefox

Hole in Windows Vista and 7 allows remote reboot

Tuesday, September 8th, 2009

A vulnerability in Microsoft's implementation of the SMB2 protocol can be exploited via the net to crash or reboot Windows Vista and Windows 7 systems. The root of the problem is an error in how the srv2.sys driver handles client requests when the header of the "Process Id High" field ...

Microsoft Warns IIS Vulnerability Is Under Attack

Saturday, September 5th, 2009

Microsoft officials are reporting limited attacks targeting a zero-day vulnerability in the FTP service in Internet Information Services.The IIS vulnerability warning follows the release of new exploit code that can be used to create a DoS (denial of service) condition on Windows XP and Windows Server 2003 without requiring Write ...