Welcome Guest. | Log In | Register | Membership Benefits
Best Of Web Archive:
Most Recent | 1 | 2 | 3 | 4


Around The Web

TECHNOLOGY REVIEW
How ISPs Could Combat Botnets
Focusing on the top 50 infected networks could eliminate half of all infected machines, researchers say

LIGHT READING
Verizon, Novell Offer ID Management For The Clouds
New service will help enterprises make cloud apps more secure, vendors say

THE REGISTER
Spammers Ordered To Pay Tiny ISP Whopping $2.6M
Judgment against small-time spammers could set precedent

WALL STREET JOURNAL
New U.S. Push To Regulate Internet Access
Federal government proposes to regulate broadband usage under old rules for traditional phone networks

COMPUTERWORLD
Five Technology Security Myths, Busted
If you think you can stay safe by hiding behind an unlisted cell phone number, think again

HELP NET SECURITY
Money Mules Wanted
A deeper look at a scam to recruit unwitting money launderers via the Web

GLOBAL SECURITY MAGAZINE
Future EU Research: IT Security Priorities Identified In New Study
Wireless networks, cloud computing, and supply chains are among top areas for research.

IT INNOVATION
Will Cloud Computing Lead To Patent Liability For End Users?
Among many other concerns, cloud services users may have to worry about patent litigation, attorneys say

WEB HOSTING INDUSTRY REVIEW
Web Hosting Year In Review: Spam, Scams And Malware
Takedown of McColo ISP is watermark of 2009

HELP NET SECURITY
Phishers Prefer Paypal, Visa, eBay, and Amex
Broad Internet scams continue to focus on the big names, BitDefender says

INFORMATIONWEEK
Top 10 Security Challenges For 2010
Spam, cloud security will be top issues, raising the bar for ISPs, experts say

eSECURITY PLANET
Net Privacy 2010: How Far Will The Needle Move?
Lawmakers, service providers take a hard look at how Internet-collected data will be used in the new year

LOS ANGELES TIMES
Cyber Bullies Reign In South Korea
When individuals run afoul of public opinion, they may become targets of nasty online campaigns over Internet services

NEW YORK TIMES
Telecom Company To Pay $3 Million In China Bribe Case
Equipment vendor allegedly gave service provider officials free travel to U.S. resorts

SEARCH SECURITY
Hathaway Calls For International Cybercrime Task Force
Law enforcement efforts must extend across networks, former White House cybersecurity leader says

TMC NET
Wenatchee Man Charged With Cyberstalking
Threats took place over Facebook social networking service, according to authorities

LIGHT READING
NTT Offers Anti-DDoS Services
New service warns users if servers or routers see unusual rates of traffic

INFORMATIONWEEK
Researchers Bypass Secure Web Connections
EV SSL certificates make service users feel safer, but it may be a false feeling of security

WALL STREET JOURNAL
RIM Warns Update Has Spyware
Upgrade recommended by wireless carrier actually contains surveillance software, Blackberry users warned

GIZMODO
Prankster Gets Verizon CEO's Home Address, Visits Him To Discuss Privacy
Online video makes statement about service providers and user privacy


Best Of Web Archive:
Most Recent | 1| 2| 3| 4








Bugs
ENTERPRISE VULNERABILITIES
Vulnerability:ssl-vpn end-point interrogator/installer activex control
Published:2010-11-03
Severity:High
Description:Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
Vulnerability:gvim
Published:2010-11-03
Severity:High
Description:Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse User32.dll or other DLL that is located in the same folder as a .TXT file. NOTE: some of these details are obtained from third party information.
Vulnerability:cforms
Published:2010-11-03
Severity:Medium
Description:Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.
Vulnerability:links, wsn links, wsn links
Published:2010-11-03
Severity:High
Description:Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.
Vulnerability:deluxebb
Published:2010-11-03
Severity:Medium
Description:SQL injection vulnerability in misc.php in DeluxeBB 1.3, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the xthedateformat parameter in a register action, a different vector than CVE-2005-2989, CVE-2006-2503, and CVE-2009-1033.



Briefing Centers
POWERFUL INFORMATION
AT YOUR FINGERTIPS
(SPONSORED LINKS)