Best Of Web
Best Of The Web
SOPHOS/strong>
Sex Tape Lure Spreads Mac And Windows Malware To Twitter Users
Hackers post promise of Leighton Meester video on Guy Kawasaki's Twitter account
COMPUTERWORLD UK
Warning: Unpatched Microsoft Flaw Is Set For Exploitation
Users warned that DirectShow bug is in exploit toolkit
ASSOCIATED PRESS
T.J. Maxx Parent Company Settles Suit Over Data Theft
Retailer will pay states $9.75 million
NETWORK WORLD
Humans Are The Weakest Link In Any Security System
Experts at Asian conference say hackers look for the human element first
MALAYSIA SUN
Gordon Brown To Appoint Britain's First Cybersecurity Chief
Prime minister expected to appoint Neil Thompson, a senior civil servant, to post
INFORMATIONWEEK
Your Malware-Infected Computer Is Being Traded Like A Stock
Finjan report discusses online trading platform for cybercrime
COMPUTER WEEKLY
Businesses Can Give Police Head Start In Busting Cybercriminals
Law enforcement experts say they need help in collecting, preserving digital evidence
FEDERAL COMPUTER WEEK
Tom Davis Says He Doesn��t Want Cyber Coordinator Job
Former Virginia Congressman reportedly is front-runner for cyber czar, but cites problems with post
DEPARTMENT OF JUSTICE
Spammer, Co-Conspirators Plead Guilty To Multimillion-Dollar Email Stock Fraud Scheme
Spammers falsified data in email to evade spam-blocking technology, DoJ says
ARS TECHNICA
FTC To Crack Down On Undisclosed 'Sponsored' Blogging
Bloggers might no longer be able to accept fees under the table to promote products online
FAIRWINDS PARTNERS
Affiliate Fraud Cybersquatting Model More Lucrative Than Pay-Per-Click
Affiliate fraud may be more than five times as profitable, yet often goes undetected, report says
REUTERS ALERTNET
U.S. Opposes China Software Filter Mandate
U.S. wants China to revoke requirement of filtering app in all PCs, official says
THE STAR
Secret U.S. Defense Data Found On Cast-Off Hard Drive
Students find information on multimillion-dollar Pentagon contracts stored on secondhand hard drive
GIGAOM
FTC To Take A Deep Look At Deep Packet Inspection
User traffic-monitoring methods could be violation of privacy
THE TECH HERALD
Stolen Laptop Contained 75,000 Unencrypted Customer Records
Laptop was one of four stolen from Dublin offices of Irish energy provider Bord Gais
COMPUTERWORLD UK
Nine-Ball Attack Dismissed As Hype
ScanSafe researchers say Websense researchers exaggerated scope of injection attack
DIGITAL SOAPBOX
ATMs Hacked By Brilliant Trojan Malware
Exploit allows attackers to print out list of account information of all ATM users
JAPAN TODAY
Electronic Makers Step Up Business For Stemming PC Data Leaks
Computer, electronics manufacturers build in features for protecting lost data
SOFTPEDIA
Microsoft Updates Spam Emails Spread Malware
Attackers push Trojans disguised as Microsoft security patches
GOVERNMENT COMPUTER NEWS
Securing Critical Infrastructure Needs Holistic Approach, Panel Says
Security is not about protecting specific networks or assets, experts say
COMPUTER WEEKLY
SMBs Hit By Increasing Spear Phishing Attacks
European gang resurges after five-month hiatus, researchers say
NETCRAFT
Faster Action Needed Against Phishing Sites
Steps needed to stop phishers from setting up their own domains
NETWORK WORLD
Defense Stalwarts See Cash In Cybersecurity
Lockheed, Boeing, other defense contractors beef up security expertise in anticipation of government spending spree
ASSOCIATED PRESS
Lax Security Leaves Card Data En Route To Banks Vulnerable
Banks, other companies not being as cautious as they should, experts say
ZDNET
Fake Microsoft Patches Themed Malware Campaigns Spreading
Researchers from CA and Sophos have spotted three active malware campaigns using fake Microsoft patch themes in order to spread via email
WIRED
TJX Hacker Was Awash In Cash; His Penniless Coder Faces Prison
Alleged TJX mastermind lived the high life, according to the programmer who worked for him and says he earned nothing from the scheme
MSNBC
Terrorists Recruit For Cyberwar, Official Says
A senior U.S. defense official says intelligence reports indicate extremist groups are seeking computer experts, including hackers to break into government and other networks
CRN
RIAA Wins RIAA Wins $1.92 Million Verdict In Music File-Sharing Case
A federal jury rules that a Minnesota mother who downloaded 24 songs violated music copyrights
COMPUTERWORLD
Apple Delivers Prodigious Patch Batch For Iphone With OS Update
Fixes 46 flaws, including bug used by 'Pwn2Own' winner in $5,000 contest
ZDNET
Company Tells PC Makers: Halt China Censorware
Solid Oak Software, which has accused a Chinese rival of stealing its code for anti-pornography software, has demanded that U.S. PC makers Dell, HP, and Gateway stop shipping computers loaded with the program 'Green Dam'
SECURITYFOCUS
Looking Back: Ghostnet Dismantled In A Day
The investigation into the GhostNet surveillance network took more than 10 months to finish, but only one day to take it down
CANADA.COM
More than half of teenagers mention risky behaviors, such as sex and drugs, on their MySpace accounts, U.S. researchers say
CA SECURITY ADVISOR RESEARCH BLOG
New Koobface Variant Found On Facebook
Attackers still looking to exploit popular social networking sites
COMPUTERWORLD
Heartland CEO Says Data Breach Was 'Devastating'
But analysts say the company's response may become a model for others
GOVERNMENT COMPUTER NEWS
Microsoft Finds Bug In Google's Sync For Outlook
Installing Google plug-in will disable Microsoft's Windows Desktop Search for Outlook, experts say
MSDN BLOG
The Story Behind The Microsoft-Adobe Security Partnership
An insider's perspective on how the two companies work together on security
SYMANTEC RESEARCH
Mass-Mailing Worm In Fake Twitter Account Invite
Researchers warn against messages containing attachment called Invitation Card.zip
BALTIMORE SUN
Hopkins' Applied Physics Laboratory Confirms Cyberattack
Encryption is important to security of popular apps, experts say
DEFENSE INDUSTRY DAILY
Air Force Awards ITT $49.9M Contract To Upgrade Cybersecurity System
New system will support exchange of top secret data
redORBIT
Intelligence Agencies Join Forces To Secure U.S. Cyber Infrastructure
NIST, DoD, other agencies embark on three-year initiative
Best Of Web Archive:
Most Recent | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76 | 77 | 78 | 79 | 80 | 81 | 82 | 83 | 84 | 85 | 86 | 87 | 88 | 89 | 90 | 91 | 92 | 93 | 94 | 95 | 96 | 97 | 98 | 99 | 100 | 101 | 102 | 103 | 104 | 105 | 106 | 107 | 108 | 109 | 110 | 111 | 112 | 113 | 114 | 115 | 116 | 117 | 118 | 119 | 120 | 121 | 122 | 123 | 124 | 125 | 126 | 127 | 128 | 129 | 130 | 131 | 132 | 133 | 134 | 135 | 136 | 137 | 138 | 139 | 140 | 141 | 142 | 143 | 144 | 145 | 146 | 147 | 148 | 149 | 150 | 151 | 152 | 153 | 154 | 155 | 156 | 157 | 158 | 159 | 160 | 161 | 162 | 163 | 164 | 165 | 166 | 167 | 168 | 169 | 170 | 171 | 172 | 173 | 174 | 175 | 176 | 177 | 178 | 179 | 180 | 181 | 182 | 183 | 184 | 185 | 186 | 187 | 188 | 189 | 190 | 191 | 192 | 193 | 194 | 195 | 196 | 197 | 198 | 199 | 200 | 201 | 202 | 203 | 204 | 205 | 206 | 207 | 208 | 209 | 210 | 211 | 212 | 213 | 214 | 215 | 216
Free Research and Reports
Whitepapers
Upcoming Events
Dark Reading Digital Magazine
In This Issue
- How Hackers Fool Your Employees: People are your most vulnerable endpoint. Make sure your security strategy addresses that fact.
- Not All Or Nothing: Effective security doesn't mean stopping all attackers.
Tech Insight
Bugs
Enterprise Vulnerabilities From DHS/US-CERT's National Vulnerability Database
CVE-2013-3342 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 do not properly handle operating-system domain blacklists, which has unspecified impact and attack vectors.
CVE-2013-3341 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3339, and CVE-2013-3340.
CVE-2013-3340 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3339, and CVE-2013-3341.
CVE-2013-3339 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3340, and CVE-2013-3341.
CVE-2013-3338 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3339, CVE-2013-3340, and CVE-2013-3341.



