Welcome Guest. | Log In | Register | Membership Benefits

Most Popular Articles

'Factory Outlets' Selling Stolen Facebook, Twitter Credentials At Discount Rates

    February 08, 2012
   

Smarter, Stealthier, Sneakier Malware

    February 08, 2012
   

I'm Sorry I Called Your Baby Ugly ... But It Is

    February 08, 2012
   

CJIS Rules Not Impossible To Comply With, But It'll Cost Ya

    February 08, 2012
   

Utilities Facing Brute-Force Attack Threat

    February 06, 2012
   

New Privacy, Security, Anti-Tracking Software For Internet Explorer

    February 08, 2012
   

Have Your Users' Passwords Already Been Hacked?

    February 07, 2012
   

Hackers Post Symantec Source Code After Failed Extortion Attempt

    February 07, 2012
   

Más DDoS: More Powerful, Complex, And Widespread

    February 07, 2012
   

Law Enforcement Ups Its Game In Cybercrime

    February 07, 2012
   

Splunk Launches Big Data Security Solution

    February 08, 2012
   

How (And Why) Attackers Choose Their Targets

    February 07, 2012
   

The 7 Coolest Hacks Of 2011

    December 27, 2011 | 1 Comments
   

VeriSign Breach May Actually Reaffirm Commitment To CA Model

    February 06, 2012
   

Beware Of Valentine's Day Infections, Warns PandaLabs

    February 08, 2012
   

New Drive-By Spam Infects Those Who Open Email -- No Attachment Needed

    January 28, 2012
   

The Future of Web Authentication

    January 30, 2012
   

Researchers Postpone Release Of Free Smart Meter Security Testing Tool

    January 31, 2012
   

Slide Show: DDoS With The Slow HTTP POST Attack

    November 29, 2010
   

Role-Based Encryption Provides Data Protection For Enterprises

    February 08, 2012
   

Big Data Could Create Compliance Issues

    January 30, 2012
   

M86 Security Releases New Biannual Labs Report

    February 08, 2012
   

Top 10 PCI Compliance Mistakes

    January 16, 2012
   

Where's My 'Minority Report' Dashboard?

    February 01, 2012
   

Passive Network Fingerprinting; p0f Gets Fresh Rewrite

    February 03, 2012
   

'Robin Sage' Profile Duped Military Intelligence, IT Security Pros

    July 06, 2010 | 23 Comments
   

INTERPOL Set To Open Global Cybercrime Center In 2014

    February 03, 2012
   

A Response To NoSQL Security Concerns

    February 06, 2012
   

Top 10 Security Mistakes SMBs Make

    December 01, 2011
   

SIA Comments To FTC On Benefits Of Facial Recognition Technology

    February 08, 2012
   

How To Spot A Fake Facebook Profile

    February 02, 2012
   

Are You Contributing To A DDoS Attack? Researcher Says You Might Be

    January 20, 2012
   

MasterCard And Silver Tail Systems To Bring Online Fraud Solutions To U.S.

    February 08, 2012
   

Adobe Calls For Defensive Approach In Security Research

    February 02, 2012
   

Hacktivists Turn To DNS Hijacking

    January 26, 2012
   

New Denial-Of-Service Attack Cripples Web Servers By Reading Slowly

    January 05, 2012
   

New Data Shows Rapid Surge In Phishing Email

    February 08, 2012
   

QR Code Malware Picks Up Steam

    December 29, 2011
   

'FOCA' And The Power Of Metadata Analysis

    August 03, 2009
   

New Hack Pinpoints Cell Phone User's Location, Personal And Business Relationships

    April 21, 2010 | 1 Comments
   

The Most Notorious Cybercrooks Of 2011 -- And How They Got Caught

    December 07, 2011
   

Six Deadly Security Blunders Businesses Make

    October 26, 2011 | 1 Comments
   

SailPoint AndSymantec Partner To Integrate the Leading Identity Governance And Data Loss Prevention Solutions

    February 08, 2012
   

Slideshow: Ten Free Security Monitoring Tools

    November 08, 2010 | 5 Comments
   

Poisoning The Data Well

    February 01, 2012
   

Google, Facebook, Bank Of America Behind New Email Security Standard

    January 30, 2012
   

Attackers Divert Bank Phone Calls to Cover Tracks

    February 01, 2012
   

Do You Need A Security Operations Center?

    January 28, 2012
   

When Good Apps Go Bad

    January 12, 2012
   

How Hackers Will Crack Your Password

    January 21, 2009
   







Bugs
ENTERPRISE VULNERABILITIES
Vulnerability:ssl-vpn end-point interrogator/installer activex control
Published:2010-11-03
Severity:High
Description:Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
Vulnerability:gvim
Published:2010-11-03
Severity:High
Description:Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse User32.dll or other DLL that is located in the same folder as a .TXT file. NOTE: some of these details are obtained from third party information.
Vulnerability:cforms
Published:2010-11-03
Severity:Medium
Description:Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.
Vulnerability:links, wsn links, wsn links
Published:2010-11-03
Severity:High
Description:Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.
Vulnerability:deluxebb
Published:2010-11-03
Severity:Medium
Description:SQL injection vulnerability in misc.php in DeluxeBB 1.3, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the xthedateformat parameter in a register action, a different vector than CVE-2005-2989, CVE-2006-2503, and CVE-2009-1033.



Briefing Centers
POWERFUL INFORMATION
AT YOUR FINGERTIPS
(SPONSORED LINKS)