Security Advisory for Adobe Flash Player, Adobe Reader and Acrobat

Monday, April 11th, 2011

A critical vulnerability exists in Flash Player 10.2.153.1 and earlier versions (Adobe Flash Player 10.2.154.25 and earlier for Chrome users) for Windows, Macintosh, Linux and Solaris, Adobe Flash Player 10.2.156.12 and earlier versions for Android, and the Authplay.dll component that ships with Adobe Reader and Acrobat X (10.0.2) and earlier ...

Vulnerability in MHTML Could Allow Information Disclosure

Saturday, January 29th, 2011

Microsoft is investigating new public reports of a vulnerability in all supported editions of Microsoft Windows. The vulnerability could allow an attacker to cause a victim to run malicious scripts when visiting various Web sites, resulting in information disclosure. This impact is similar to server-side cross-site scripting (XSS) vulnerabilities. Microsoft ...

Facebook allows apps to access user’s address and mobile number

Monday, January 17th, 2011

In a move sure to have privacy advocates up in arms, Facebook will now allow apps to access a user's current address and mobile phone number. The new ''feature'' was quietly introduced in a blog post by Facebook platform developer relations employee Jeff Bowen late last Friday night. The Atlantic spotted ...

Security tool uncovers multiple bugs in every browser

Tuesday, January 4th, 2011

Browser security specialist Michal Zalewski believes that Chinese hackers have long been aware of a security vulnerability in Internet Explorer which has only recently come to public attention. It is believed that this vulnerability could be exploited to infect computers, though current efforts have succeeded only in provoking crashes. The ...

New URL Shortener Hijacks Browsers for DDoS

Tuesday, December 21st, 2010

In order to outline the dangers of implicitly trusting shortened URLs, a student has launched a service which generates links that take users to their destination, but also hijack their browsers for DDoS.  Called d0z.me, the service is the creation of Ben Schmidt (@supernothing307), a computer science major at University ...