Welcome Guest. | Log In | Register | Membership Benefits
Best Of Web Archive:
Most Recent | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76 | 77 | 78 | 79 | 80 | 81 | 82 | 83 | 84 | 85 | 86 | 87 | 88 | 89 | 90 | 91 | 92 | 93 | 94 | 95 | 96 | 97 | 98 | 99 | 100 | 101 | 102 | 103 | 104 | 105 | 106 | 107 | 108 | 109 | 110 | 111 | 112 | 113 | 114 | 115 | 116 | 117 | 118 | 119 | 120 | 121 | 122 | 123 | 124 | 125 | 126 | 127 | 128 | 129 | 130 | 131 | 132 | 133 | 134 | 135 | 136 | 137 | 138 | 139 | 140 | 141 | 142 | 143 | 144 | 145 | 146 | 147 | 148 | 149 | 150 | 151 | 152 | 153 | 154 | 155 | 156 | 157 | 158 | 159 | 160 | 161 | 162 | 163 | 164 | 165 | 166 | 167 | 168 | 169 | 170 | 171 | 172 | 173


Best Of The Web

ESECURITY PLANET
Small Businesses, Southern States Targeted By Spammers
Spammers appear to be targeting those with the weakest defenses, Symantec report says

COMPUTERWORLD
Some Experts Question Efforts To Identify Cyberattackers
Attribution continues to be a chief issue in cyberattacks

SOPHOS
Data-Stealing "Smart Dust" -- Should We Be Worried?
Futuristic hacking idea probably can be swept away for now

ARS TECHNICA
Users Of Location Services Worried About Robberies, Stalking
Geolocation services present security risks, study says

CNET
Finjan Sues McAfee, Symantec Over Patents
After Microsoft licensed its patents in 2005, company says other security vendors should follow suit

THREAT POST
Talk On Chinese Cyber Army Pulled From Black Hat
Concerns raised by Chinese, Taiwanese governments, according to report

KASPERSKY
'Myrtus And Guava' Malware Launches Via USB Devices
Malicious driver also carries valid digital signature, researchers say

ZDNET
Ex-MI6 Man Admits To Official Secrets Breach
Employee downloaded a list of staff and operatives to a USB drive, then attempted to sell it

COMPUTER ACTIVE
Visa Improves Online Security With Codesure
Chip-and-pin bank card also includes one-time password generator

SEARCH SECURITY
Poisoned Mel Gibson Search Results Yield Fake Adobe Flash Installer
Search for "Mel Gibson tapes" brings poisoned pages, TrendLabs says

HOST EXPLOIT
Men Say HP Put Them Through 'Nightmare'
Alleged hackers say charges brought against them were false

SOPHOS
The 'Never Gonna Drink Coca Cola Again' Facebook Scam
Link promises "horrific" video, but leads to horrific malware

PC WORLD
Seeing Tough Times Ahead, Symantec Plans Layoffs
Symantec will cut 4.5 percent of the cost of its workforce and outsource some of its IT and finance operations

INFO SECURITY
New Phishing Attack Disguised As PDF Reader Update
Attacks are on the upswing since June, Symantec research says

GOVERNMENT COMPUTER NEWS
Is Your Smart Phone Infected With Malware?
Most users wouldn't know if it were, survey says

SUPERSTORE SEARCH
The Top 10 Items Stolen Online
PlayStation, Wii at the top of the list, statistics say

HOST EXPLOIT
15,000 Victims Of Fraud In First Half Of 2010
Online shopping, auction frauds top the list, study says

THE ATLANTIC
What's This Mysterious White House Cyber Event All About?
Participants say Obama administration is doing another review on cyber policy

HEALTHCARE INFO SECURITY
HIPAA Privacy, Security Updates Unveiled
Proposed rules could strengthen enforcement of compliance

COMPUTERWORLD UKE
Phone Ransom Trojan Disables PC, Asks For $4
Bizarre piece of ransomware puzzles security researchers

GOVERNMENT COMPUTER NEWS
Forensic Web Service Could Reconstruct The Scene Of The Cybercrime
NIST considers Web forensics tool

ZDNET
Report: Apple Had The Most Vulnerabilities Throughout 2005-2010
Oracle was No. 2 on the hit parade, researchers say

COMPUTERWORLD UK
NSA Denies Nationwide Electronic Spy Network Claim
"Perfect Citizen" project involves no surveillance or monitoring, agency says

YAHOO!
Malware Support Even Better Than Security Vendors
Rogue software sometimes offers better customer service than the real thing

THE REGISTER
Facebook For Hackers Shut Down In Pakistan
Five arrested as Pakbugs cybercrime forum is cracked

COMPUTERACTIVE
How To Recognize And Avoid Online Scams
A look at the most common categories of scams, and what to do about them

THE HILL
White House Meeting Will Stress Economic Side Of Cybersecurity
Officials consider economic incentives to encourage private-sector investment in cybersecurity

THE REGISTER
Zeus Baddies Unleash Nasty New Bank Trojan
Toolkit targets U.S., U.K., Spanish, and German banks

GOVERNMENT INFO SECURITY
Pros And Cons Of A Cybersecurity Bill
Expert offers detailed analysis of legislation in Congress

KREBS ON SECURITY
Pirate Bay Hack Exposes User Booty
Security weaknesses in popular file-sharing site may have exposed personal info of 4 million users

FEDERAL COMPUTER WEEK
Homeland Security To Take FISMA Lead
Officials clarify federal government agencies' roles in cybersecurity efforts

DEFENSE SYSTEMS
Cybershield For Private Sector Sparks Big Brother Fears
NSA "Perfect Citizen" plan causes some observers to worry about a surveillance state

ANCHORAGE DAILY NEWS
25,000 Sign Up For State Credit Protection After Data Lost
Breach causes high percentage of Alaska employees to seek identity theft protection

NETWORK WORLD
Facebook Slapped With Class-Action Privacy Lawsuit
Social networking firm says there is "no merit" to allegation that it mishandled user data

BIZ REPORT
Anchor Intelligence: Attempted Click Fraud Up 26 Percent
Increase may be due to resurgent botnet traffic, research firm says

HELP NET SECURITY
Employees Bypass Security Roadblocks To Engage In Social Networking
Workarounds are contributing to growth of malware distributed via social networks, study says

EXAMINER.COM
Virus Report: Rogue Progams Disabling Windows XP On The Rise
Malware works around most security controls built into the OS, report says

NETWORK WORLD
Cisco Warns Attendees That The Cisco Live Database Was Hacked
Cisco Live conference attendee database was hit by a hacker who was able to access badge numbers, name, title, company address, and email addresses

WIRED
FBI Raids 'Elektronic Tribulation Army' Over Witness Intimidation
FBI agents raided the homes of three alleged members of a hacker gang that harassed a security expert who helped put the group's leader in jail

COMPUTERWORLD
Researcher Cracks 'Secret' Code In U.S. Cyber Command Logo
A security researcher cracked the code embedded in the seal of the U.S. Cyber Command (Cybercom) -- it represents the MD5 hash of the group's mission statement


Best Of Web Archive:
Most Recent | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76 | 77 | 78 | 79 | 80 | 81 | 82 | 83 | 84 | 85 | 86 | 87 | 88 | 89 | 90 | 91 | 92 | 93 | 94 | 95 | 96 | 97 | 98 | 99 | 100 | 101 | 102 | 103 | 104 | 105 | 106 | 107 | 108 | 109 | 110 | 111 | 112 | 113 | 114 | 115 | 116 | 117 | 118 | 119 | 120 | 121 | 122 | 123 | 124 | 125 | 126 | 127 | 128 | 129 | 130 | 131 | 132 | 133 | 134 | 135 | 136 | 137 | 138 | 139 | 140 | 141 | 142 | 143 | 144 | 145 | 146 | 147 | 148 | 149 | 150 | 151 | 152 | 153 | 154 | 155 | 156 | 157 | 158 | 159 | 160 | 161 | 162 | 163 | 164 | 165 | 166 | 167 | 168 | 169 | 170 | 171 | 172 | 173








Bugs
ENTERPRISE VULNERABILITIES
Vulnerability:ssl-vpn end-point interrogator/installer activex control
Published:2010-11-03
Severity:High
Description:Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
Vulnerability:gvim
Published:2010-11-03
Severity:High
Description:Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse User32.dll or other DLL that is located in the same folder as a .TXT file. NOTE: some of these details are obtained from third party information.
Vulnerability:cforms
Published:2010-11-03
Severity:Medium
Description:Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.
Vulnerability:links, wsn links, wsn links
Published:2010-11-03
Severity:High
Description:Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.
Vulnerability:deluxebb
Published:2010-11-03
Severity:Medium
Description:SQL injection vulnerability in misc.php in DeluxeBB 1.3, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the xthedateformat parameter in a register action, a different vector than CVE-2005-2989, CVE-2006-2503, and CVE-2009-1033.



Briefing Centers
POWERFUL INFORMATION
AT YOUR FINGERTIPS
(SPONSORED LINKS)