Welcome Guest. | Log In | Register | Membership Benefits
Best Of Web Archive:
Most Recent | 1 | 2 | 3


Around The Web

FINANCIAL POST
Canada New Breeding Ground For Cybercrime
The number of Canadian servers hosting phishing sites jumped 319 percent over the past year

THE WALL STREET JOURNAL
Intel Sees the Cloud From Both Sides Now
Intel's new hybrid server combined with a service called AppUp offers small business a way to adopt cloud computing securely

TECHWORLD
Hotmail Emails Stolen By Hackers
Cross-site scripting flaw on Microsoft's website allowed attackers to read and steal emails from Hotmail users

THE DUO BULLETIN
When Angry Birds Attack: Android Edition
Details on the vulnerability in Android that allowed installation of arbitrary applications with arbitrary permissions on a victim?s device

THE TECH HERALD
Apple Finally Admits To Rogue Antivirus Problems
Apple has admitted publically what consumers and security experts have known for some time--that Macintosh users are being targeted in an effort to spread fake security products

INFORMATION WEEK SMB
SMBs At Risk For Financial Fraud
Small and midsize businesses are at greater risk than consumers, according to Javelin Strategy & Research

COMPUTERWORLD
How To Stop Your Executives From Being Harpooned
Keep them updated on recent whaling threats and incidents and regularly provide tips on how to avoid falling for these attacks

INFOSECURITY
Data Breaches Have Delayed Acquisitions Or Product Rollouts, Study Finds
One fourth of organizations have had a merger, acquisition, or new product rollout stopped or slowed by a data breach, McAfee and SAIC report finds

COMPUTERWORLD
Building A Healthcare IT Security EcosystemBuilding A Healthcare IT Security Ecosystem
Small companies in the healthcare business need to develop a information technology environment that can scale with their size and protect their regulated data

CHANNELPRO
Security Is a Safe Bet for VARs
Security consultants that serve small and medium businesses help stave off threats, but also reap 50 to 65 percent margins

SMALL BUSINESS COMPUTING
Dell Debuts Integrated Security for Midsized Businesses
Dell and Juniper Networks team to provide a trio of products aimed to secure medium-sized businesses with firewall, VPN, intrusion prevention, anti-spam, anti-virus and Web filtering technologies

DARKREADING
Four Must-Have SMB Security Tools
For compliance, all small and medium businesses must have firewalls, client antivirus, password management and backups

ZDNET ASIA
Basic Security Measures No Longer Enough For SMBs
Security experts maintain that basic security measures are no longer enough for small and medium businesses, which need a more complete and holistic approach to security.

COMPUTER RESELLER NEWS
SMB Cloud Spending To Approach $100 Billion By 2014
Small and medium businesses are quickly adopting cloud services as a way to reduce costs, doubling the market in five years

NETWORKWORLD
Microsoft To Lead SMBs To The Cloud With New Windows Server
Microsoft preps its latest small business server, dubbed "Aurora," aiming to lead SMBs to cloud services. Among those services will be security monitoring

DARKREADING
Small And Midsize Businesses Look For Ways To Cut Compliance Costs
Compliance with security regulations is expensive, but there are ways for smaller businesses to cut costs

PCWORLD
Koobface Variant Tainted 5 Million Websites
Network Solutions inadvertently hosts malicious code when it places the rogue Small Business Success Index widget on at least 120,000 parked domains

WEB APPLICATION SECURITY CONSORTIUM
WASC Threat Classification v2.0 Released
WASC Threat Classification v2.0 Released

GLOBAL SECURITY MAGAZINE
Record-Breaking 43 Anti-Malware Products Undergo VB100 Certification Testing On Windows 7
Seven products fail to make grade in largest test ever

ABS CBN NEWS
Kaspersky Predicts More iPhone, Android Attacks In 2010
Kaspersky Predicts More iPhone, Android Attacks In 2010


Best Of Web Archive:
Most Recent | 1| 2| 3








Bugs
ENTERPRISE VULNERABILITIES
Vulnerability:ssl-vpn end-point interrogator/installer activex control
Published:2010-11-03
Severity:High
Description:Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
Vulnerability:gvim
Published:2010-11-03
Severity:High
Description:Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse User32.dll or other DLL that is located in the same folder as a .TXT file. NOTE: some of these details are obtained from third party information.
Vulnerability:cforms
Published:2010-11-03
Severity:Medium
Description:Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.
Vulnerability:links, wsn links, wsn links
Published:2010-11-03
Severity:High
Description:Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.
Vulnerability:deluxebb
Published:2010-11-03
Severity:Medium
Description:SQL injection vulnerability in misc.php in DeluxeBB 1.3, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the xthedateformat parameter in a register action, a different vector than CVE-2005-2989, CVE-2006-2503, and CVE-2009-1033.



Briefing Centers
POWERFUL INFORMATION
AT YOUR FINGERTIPS
(SPONSORED LINKS)