Rootkit code to exploit major Intel chip

Wednesday, March 18th, 2009

This is the scariest, stealthiest, and most dangerous rootkit I’ve seen come around since the legendary Blue Pill! No, I’m not just trying to sensationalize this or spread fear, uncertainty and doubt. This is serious and represents a massive new security threat for us all. Security Researchers Joanna Rutkowska and Loic ...

Researcher upset by Windows DNS patch

Tuesday, March 17th, 2009

One of the patches Microsoft issued last week is nothing of the sort, according to a researcher who has accused Microsoft of making functionality a higher priority than security. According to Tyler Reguly, a senior security engineer with nCircle Security, last Tuesday's MS09-008 update does not fix the problem for all ...

Adobe Patches Zero-Day Vulnerability

Tuesday, March 10th, 2009

Adobe released a patch today for a zero-day vulnerability under attack by hackers. The patch, available for version 9 of Adobe Reader and Adobe Acrobat, comes a day earlier than the company’s planned release. Patches for earlier versions of the product are still slated for March 18. The vulnerability is the result ...

No User Action Required In Newly Discovered PDF Attack

Tuesday, March 10th, 2009

Merely storing -- without opening -- a malicious PDF file can trigger an attack that exploits the new, unpatched zero-day flaw in Adobe Reader, a researcher has discovered. Didier Stevens, a researcher and IT security consultant with Contrast Europe NV, today released a proof-of-concept demonstration that shows how a file ...

Twitter closes SMS spoofing hole

Friday, March 6th, 2009

Twitter, the micro-blogging site, has closed an SMS spoofing security hole which, until Wednesday night, left accounts open to being hijacked. The vulnerability was due to an authentication weakness that allowed anyone who knew a user's mobile number to spoof their messages, provided that the user's mobile number was set ...