flaws

Mozilla issued 10 patches on Friday for its Firefox browser, including three for critical vulnerabilities. The latest version of Firefox is now 2.0.0.12. read more »
addto Add this link to... report Bury 
The flaws disclosed last week in Adobe System's Reader and Acrobat programs have been used to exploit computers since at least January via malicious banner advertisements, security analysts are reporting. read more »
addto Add this link to... report Bury 
As discussed in the past, cross site scripting (XSS) can be exploited by phishers to build really effective attacks. Today we have analyzed another similar attack that includes some enhanced features. The attack was exploiting an injection flaw in an Internet banking application, specifically located in the module used to display warning messages to users. The function took a single GET parameter: https://www.well-known-bank.com/popup.asp?msg=[ASCII_encoded_message_to_display] And then returned a page read more »
addto Add this link to... report Bury 
p strong Dealing with and managing unpatched third-party software is key as hackers use them to compromise your OS according to Charles Miller principal analyst for Independent Security Evaluators in this OnSecurity podcast. strong br p ...Embedded Linux From a Trusted Source Reduce your development schedules with pre-compiled Linux components, along with tools and support. read more »
addto Add this link to... report Bury 
p strong Dealing with and managing unpatched third-party software is key as hackers use such applications to compromise operating systems according to Charles Miller principal analyst for Independent Security Evaluators in this OnSecurity podcast. strong br p ...Online Education-Accredited Learn from Home-Fully accredited 1000's of Degrees 2 Hours per week. read more »
addto Add this link to... report Bury 
Buffer overflows can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system....SOLVE MORE ISSUES on the first call. Try WebEx FREE Zap remote support issues. Crush support log jams. Blast through firewalls. Try WebEx Remote Support now! read more »
addto Add this link to... report Bury 
Two months after Adobe Systems patched a serious flaw in its Flash development software, there are still hundreds of thousands of Web pages serving up buggy Shockwave Flash (.swf) files that could be exploited by hackers, according to a Google researcher. read more »
addto Add this link to... report Bury 
Adobe has upgraded its Flash Player to fix seven vulnerabilities in the graphics and video software widely used for interactive Web pages and banner advertisements. read more »
addto Add this link to... report Bury 
Oracle released 41 security fixes for its flagship database and several other products Tuesday, including 15 patches for vulnerabilities that can be exploited remotely without a username or password. read more »
addto Add this link to... report Bury 
'Hate the vuln, love the finder'ToorCon In a first for a major company, Microsoft has publicly pledged not to sue or press charges against ethical hackers who responsibly find security flaws in its online services.… read more »
addto Add this link to... report Bury 
http://www.theregister.co.uk/2008/04/21/microsoft_oks_online_flaw_finding/By Dan GoodinThe Register21st April 2008ToorCon - In a first for a major company, Microsoft has publicly pledged not to sue or press charges against ethical hackers who responsibly find security flaws in its online services.The promise, extended Saturday at the ToorCon security conference in Seattle, is a bold and significant move. While researchers are generally free to attack legally acquired software running on their own hardware, read more »
addto Add this link to... report Bury