![]() |
Sign Up! | Tags | Domains | Statistics | Options | Advanced Search |
zdnet.com » Zero Day - Aug 28, 2008
Do not trust that passcode lock on Apple’s iPhone. The feature, which lets users set a four-digit pincode to limit access to the device, can be easily bypassed with a few finger taps on the iPhone to give an intruder …
Also tagged: apple, browsers, wireless, passwords, data theft, exploit code, spam and phishing, responsible disclosure, pen testing, patch watch, arbitrary code execution, mobile in security, locally running web servers
zdnet.com » Zero Day - Aug 27, 2008
If the StopBadware coalition has its way, software updaters from Sun Microsystems (see screenshot above) and Apple will carry the embarrassing “badware” label. According to a draft of revamped guidelines (.pdf) from …
Also tagged: apple, flash, adobe, firefox, open source, malware, browsers, passwords, anti virus, botnets, zero day attacks, punditocracy, responsible disclosure, patch watch, arbitrary code execution
zdnet.com » Zero Day - Aug 26, 2008
The next time you get the urge to enter angry messages to phishers on fake (malicious) Web sites, stop and consider this discovery by researcher Joe Stewart. The identity thieves behind the Asprox botnet have built …
Also tagged: flash, adobe, malware, browsers, phishing, anti virus, botnets, data theft, rootkits, spam and phishing, spyware and adware, patch watch
zdnet.com » Zero Day - Aug 26, 2008
The U.S. Computer Emergency Readiness Team (CERT) has issued a warning for what it calls “active attacks” against Linux-based computing infrastructures using compromised SSH keys. The attack appears to initially use …
Also tagged: research, open source, botnets, data theft, exploit code, zero day attacks, metasploit, pen testing, patch watch, arbitrary code execution, kernel level exploits, complex attacks, locally running web servers
zdnet.com » Zero Day - Aug 25, 2008
The Register’s Dan Goodin has the scoop on an obvious security vulnerability that’s being ignored by the powers at Facebook. The issue, as demonstrated by this proof-of-concept, shows how a social network application …
Also tagged: web 2 0, privacy, malware, browsers, hackers, facebook, anti virus, data theft, exploit code, viruses and worms, pen testing, patch watch, arbitrary code execution, social networking applications
zdnet.com » Zero Day - Aug 24, 2008
More than a week after a cryptic note hinted at a security breach at Fedora, the open-source group has finally fessed up to two separate server intrusions that compromised the security of Red Hat’s OpenSSH packages …
Also tagged: open source, malware, browsers, hackers, passwords, data theft, exploit code, zero day attacks, responsible disclosure, pen testing, patch watch, arbitrary code execution, complex attacks
zdnet.com » Zero Day - Aug 23, 2008
The United States Computer Emergency Response Team (US-CERT) has raised an alarm for a serious vulnerability in Apache Tomcat, warning that a proof-of-concept exploit is publicly available. The code, posted to …
Also tagged: privacy, open source, malware, hackers, passwords, phishing, anti virus, data theft, exploit code, zero day attacks, responsible disclosure, pen testing, patch watch, denial of service dos, arbitrary code execution, complex attacks, locally running web servers
zdnet.com » Zero Day - Aug 22, 2008
According to published reports, Nokia and Sun have both confirmed the existence of serious security problems in the Series 40 and Java Platform Micro Edition (Java ME) , giving instant credibility to the claims by …
Also tagged: research, malware, browsers, java, hackers, passwords, botnets, data theft, exploit code, responsible disclosure, pen testing, arbitrary code execution, complex attacks, mobile in security
zdnet.com » Zero Day - Aug 22, 2008
According to published reports, Nokia and Sun have both confirmed the existence of serious security problems in the Series 40 and Java 2 Platform Micro Edition (J2ME), giving instant credibility to the claims by Polish …
Also tagged: research, malware, browsers, java, hackers, passwords, botnets, data theft, exploit code, responsible disclosure, pen testing, arbitrary code execution, complex attacks, mobile in security
zdnet.com » Zero Day - Aug 22, 2008
In addition to this long list of missing Microsoft patches, there are at least three serious (unpatched) vulnerabilities in the Microsoft Office productivity suite. On August 12, the same day Microsoft released a slew …
Also tagged: microsoft, malware, browsers, botnets, data theft, exploit code, zero day attacks, responsible disclosure, pen testing, patch watch, arbitrary code execution