BackTrack 4 Beta Released

Wednesday, February 11th, 2009

This is it!  After many months of effort from the Remote Exploit Dev team, BackTrack 4 Beta is ready and available.  I thought I'd post up some "getting started" notes, to help people out with the first surge of questions. Default password to BackTrack 4 hasn't changed, still root / toor. KDE ...

Internet Explorer executes code in pictures

Wednesday, February 11th, 2009

A feature in Internet Explorer, which checked the type of file before presenting it to the user, has been found to allow execution of JavaScript embedded in an image. The MIME sniffing functionality was originally meant to compensate for web servers sending out the wrong content type information when they ...

Verizon expands anti-DoS protection

Tuesday, February 10th, 2009

Verizon Business has announced a global expansion of its WAN-based service to detect and defend against denial-of-service attacks. DoS attacks have been around for years but are on the rise with backing from organised groups, including intelligence agencies inside smaller nations that use the attacks as a form of cyber-terrorism against ...

OpenDNS to block Conficker

Sunday, February 8th, 2009

On Monday, OpenDNS, the free DNS service, plans to start blocking the Conficker worm's attempts to connect to potential control servers. According to The Register, the new free service will also be able to alert administrators to the presence of the Conficker worm and assist them in locating infected machines. Conficker ...

IRS Stimulus Package Phishing Scam

Friday, February 6th, 2009

US-CERT is aware of public reports indicating that phishing scams are circulating via fraudulent U.S. Internal Revenue Service emails offering users stimulus package payments. These emails include text that attempts to convince users to follow a link to a website or to complete an attached document. The website and document ...