Best Of Web
Best Of The Web
THE REGISTER
Apple Cracks Down On Black Market In iOS Beta Passes
Apple has ordered sites offering beta versions of its iOS operating system to shut down after filing DMCA requests with their host providers
TOFINO SECURITY BLOG
#1 ICS And SCADA Security Myth: Protection By Air Gap
The theory of air-gap security is nice for the power grid and other critical infrastructure systems, but it doesn't work in reality
COMPUTERWORLD
Google Says Spam Not Coming From Android Botnets
Search engine giant disputes Microsoft and Sophos research claims that a new wave of pharmacy, penny stock and e-card spam emails are being sent by Android spam botnets
ZDNET BLOG
Warning: Fake Skype App On Android Is Malware
New malware attack poses as Android Skype application and tries to siphon money from victims
THE NEW YORK TIMES BLOG
AT&T To Start Blocking Stolen Cellphones This Week
AT&T this week will kick off its new program that tracks devices that have been reported stolen and prevent reactivation of stolen devices on its own network
HOMELAND SECURITY NEWSWIRE
New Book Confirms Israel Behind Killing Of Iran Nuclear Scientists
Newly published book details Israel's alleged campaign to take out Iranian nuclear scientists, and that the cyberattacks against Iran's nuclear program was an Israeli innovation, not an American one
INFOSEC ISLAND
Department Of Homeland Security Enhances Cybersecurity Team
DHS deputy undersecretary Mark Weatherford has been aggressively beefing up DHS's cybersecurity talent pool since joining the agency six months ago
COMPUTER WEEKLY
Security Think Tank: Flame A Good Reason To Keep Up With Emerging Threat Analysis
New exploit appears to be a general-purpose spying tool
SECURELIST
DNSChanger: Last Call On Cleanup
FBI-run replacement DNS servers are coming down. Will your systems be affected?
CLARIONLEDGER.COM
Phishing Scams Spread To Utilities
About 1,000 complaints filed in one week in Mississippi
TORONTO SUN
British Columbia Cyber Expert Faces $1.1 Million Lawsuit
Managing director of Securikai planned to extort money from New York law firm, suit alleges
SECURITY-FAQS.COM
The Keys To Making Your Website Visitors Feel More Secure
How your site looks and behaves can affect users' confidence in it, expert says
THE TELEGRAPH
Thieves Placed Bugs And Hacked Onboard Computers Of Luxury Cars
Leader of gang that bugged cars with GPS tracking devices before stealing them is now facing jail
ZDNET
Telecom Portal Shut After 70% Of Customers Found To Be Using Default Passwords
Top Dutch telecom firm shuts its customer self-service portal because users weren't changing their defaults
THE REGISTER
Phone-Raiding Trojan Slips Past Apple's App Store Censors
'Find and Call' app might be called slurp, stalk, and spam
DEATH AND TAXES
WikiLeaks Releases Syria Files Containing 2.5 Million Emails
Free information publisher has begun publishing huge store of emails from 680 Syria-related entities
INFOSEC ISLAND
ENISA: High Roller Online Bank Robberies Reveal Security Gaps
Banks should assume customer PCs are infected, European security agency warns
FIERCE GOVERNMENT IT
FBI: Global Economic Slowdown Exacerbated Cyber Espionage
Economic woes have accelerated foreign theft of U.S. companies' intellectual property, FBI official says
COMPUTER ACTIVE
Home Office Warns Cyber Crime A Growing Threat To UK
Cyberterrorism and crime are widespread threats, Home Office warns
KREBS ON SECURITY
Court Ruling Could Be Boon To Cyberheist Victims
Federal appeals court decision would make it easier for small-business owners to recovers stolen funds
NETWORK WORLD
Intel/McAfee: What's The Future Of Security?
Microcomputer giant's acquisition of security giant still hasn't completely played out yet
THE REGISTER
Computer Error Triggers Mass Rocket Launch
Virus blamed as 15-minute fireworks display is launched all at once
CSO ONLINE
'Drop Dead' Date Looms For DNSChanger Trojan Fix
After Monday, people whose computers are still infected will lose Internet service or experience slow access, working group says
HERALD
Cybercrime Hits One In Three
About a third of Irish companies say they were affected by online crime in the past year
THE REGISTER
Mexican Election Loser And Anonymous Say Vote Was 'Fraudulent'
Hacktivist group says it cracked server and uncovered evidence that the election's organizers preissued a number of ballots
SYDNEY MORNING HERALD
Researchers Prove Drones Can Be Hacked
University researchers say they hacked into an airborne drone and wrested control from the pilot
ZDNET
Microsoft Engineer Discovers Android Spam Botnet
Botnet is sending out spam on an industrial and international scale, researcher says
CSO
Survey: Banks Strengthen Online Security Teams To Fight Cyber Threats
In survey of Asian CIOs and CTOs, Singapore execs are most concerned about security threats
PUBLIC SERVICE
UK Ministry Of Defense To Get New Cyber Defenses
Contract is extended to help agency cope with an unprecedented level of 'potentially serious' attempts to infiltrate its systems
CHINA DAILY
Virus Attacks Computer System At Israel's Defense Ministry
Virus penetrated agency's strong security defenses, but no serious damage reported
SC MAGAZINE
Preparing For A Post-Flame World
Sophisticated exploit could be a harbinger of attacks to come
HELP NET SECURITY
Blackhole Exploit Kit Upgraded
Authors add unpatched XML Core Services vulnerability, ability to dynamically generate new domains
BLOOMBERG
Ex-Citigroup Executive Gets Eight Years For Embezzlement
Former VP made false accounting entries, transferred money from various Citigroup accounts to his own
THE ABSTRACT
Clickjacking Rootkits For Android: The Next Big Threat?
Mobile security researchers have identified a flaw in Android 4.0.4 and earlier models that clickjacking rootkits could exploit
WHITEHAT SECURITY
WhiteHat Security Website Statistics Report
New report helps enterprises gauge how their website security stacks up against those of their peers
HACK IN THE BOX
Hackers Post Hundreds Of Israeli Email Addresses And Passwords
Islamic hackers reveal active data on Anonymous Arab website
HACK IN THE BOX
Mac Espionage Trojan Targets Uighur Activists
Researchers at Kaspersky Lab said they have come across new advanced persistent threat
THE REGISTER
Microsoft Names Zeus Ringleaders And Notifies FBI
Software giant says two men are key to botnet�s operation and could help authorities find others responsible for malware�s distribution and money laundering
CNET
Facebook Email Mess: Address Books Altered; Email Lost
Implementation of unified email is causing unwanted changes to Facebook users' address books; some messages are lost
HEALTHCARE INFOSECURITY
Supreme Court Ruling Ends Uncertainty--Time to Refocus On Security And Privacy Plans
The ruling clears the way for continued development of state health insurance exchanges and accountable care organizations, both of which must take steps to protect patient data
Best Of Web Archive:
Most Recent | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76 | 77 | 78 | 79 | 80 | 81 | 82 | 83 | 84 | 85 | 86 | 87 | 88 | 89 | 90 | 91 | 92 | 93 | 94 | 95 | 96 | 97 | 98 | 99 | 100 | 101 | 102 | 103 | 104 | 105 | 106 | 107 | 108 | 109 | 110 | 111 | 112 | 113 | 114 | 115 | 116 | 117 | 118 | 119 | 120 | 121 | 122 | 123 | 124 | 125 | 126 | 127 | 128 | 129 | 130 | 131 | 132 | 133 | 134 | 135 | 136 | 137 | 138 | 139 | 140 | 141 | 142 | 143 | 144 | 145 | 146 | 147 | 148 | 149 | 150 | 151 | 152 | 153 | 154 | 155 | 156 | 157 | 158 | 159 | 160 | 161 | 162 | 163 | 164 | 165 | 166 | 167 | 168 | 169 | 170 | 171 | 172 | 173 | 174 | 175 | 176 | 177 | 178 | 179 | 180 | 181 | 182 | 183 | 184 | 185 | 186 | 187 | 188 | 189 | 190 | 191 | 192 | 193 | 194 | 195 | 196 | 197 | 198 | 199 | 200 | 201 | 202 | 203 | 204 | 205 | 206 | 207 | 208 | 209 | 210 | 211 | 212 | 213 | 214 | 215 | 216
Free Research and Reports
Whitepapers
Upcoming Events
Dark Reading Digital Magazine
In This Issue
- How Hackers Fool Your Employees: People are your most vulnerable endpoint. Make sure your security strategy addresses that fact.
- Not All Or Nothing: Effective security doesn't mean stopping all attackers.
Tech Insight
Bugs
Enterprise Vulnerabilities From DHS/US-CERT's National Vulnerability Database
CVE-2013-3342 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 do not properly handle operating-system domain blacklists, which has unspecified impact and attack vectors.
CVE-2013-3341 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3339, and CVE-2013-3340.
CVE-2013-3340 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3339, and CVE-2013-3341.
CVE-2013-3339 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3338, CVE-2013-3340, and CVE-2013-3341.
CVE-2013-3338 (acrobat_reader)
Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2013-2732, CVE-2013-2734, CVE-2013-2735, CVE-2013-2736, CVE-2013-3337, CVE-2013-3339, CVE-2013-3340, and CVE-2013-3341.



