Zero Day

Syndicate content
Updated: 1 hour 36 min ago

Verizon DBIR challenge clue #2

Fri, 2010-08-13 20:52

This year’s Verizon Data Breach Investigations Report (DBIR) challenge is well and truly underway. I see where the (public) contestants are stumped so, here’s a clue to nudge them along.



Critical Apple QuickTime flaw dings Windows OS

Fri, 2010-08-13 17:36

Apple has shipped QuickTime 7.6.7 to fix a critical vulnerability that exposes Windows users to malicious hacker attacks.



Security flaws haunt NTLMv1-2 challenge-response protocol

Fri, 2010-08-13 00:17

The NTLMv1-2 challenge-response protocol provides absolutely no protection against credentials forwarding/relay or reflection attacks. This means that an active attacker (such as a man-the-middle) can redirect the login of the legitimate user to authenticate his own session.



Opera closes 'high severity' security hole

Thu, 2010-08-12 20:15

The most serious of the three flaw could allow hackers to execute harmful code and take complete control of a target compute



A Special Offer From Our Sponsor

Thu, 2010-08-12 20:15

Apple zaps JailbreakMe.com bugs in record time

Wed, 2010-08-11 22:34

The iOS 3.2.2 update corrects two flaws — a stack buffer overflow in FreeType’s handling of CFF opcodes, and a privilege escalation issue in IOSurface — that combined to expose Apple’s devices to takeover if a user simply surfs to a rigged Web site.



Psst, psst! A clue to Verizon data breach report challenge

Wed, 2010-08-11 22:24

So, according to a little birdie tweeting in the night, the 2010 Verizon Data Breach Investigations Report (DBIR) contains another encryption challenge that leads to actual cash prizes.



Adobe warns of critical Flash Player flaws

Wed, 2010-08-11 19:01

The flaws affect Adobe Flash Player 10.1.53.64 and earlier versions for Windows, Macintosh, Linux and Solaris.



Microsoft drops record 14 bulletins in largest-ever Patch Tuesday

Wed, 2010-08-11 00:40

It’s a very busy Patch Tuesday for Windows users: 14 bulletins covering 34 serious security vulnerabilities in Internet Explorer, Microsoft Windows, Microsoft Office, Silverlight, Microsoft XML Core Services and Server Message Block



German ministers advised to dump BlackBerry for security reasons

Tue, 2010-08-10 16:44

Citing the potential for “political IT attacks”, Germany’s Interior Minister is advising ministers to dump the BlackBerry, and replace it with BSI-certified SiMKo 2 smart phones.



Popular brands impersonated in latest malware campaign

Mon, 2010-08-09 21:59

Multiple vendors are reporting on a currently ongoing scareware and client-side exploits serving, spam campaign, impersonating Best Buy, Chase, Macy’s, Target.com and Evite.



Apple to patch JailbreakMe.com flaw this week

Mon, 2010-08-09 21:22

Barring last minute hiccups, Apple will ship a critical iOS patch this week to fix the vulnerabilities exploited by the JailbreakMe.com site.



Windows 7 dinged by new zero-day vulnerability

Fri, 2010-08-06 23:37

Microsoft’s Windows 7 operating system is vulnerable to a new zero-day vulnerability that exposes users to blue-screen crashes or code execution attacks.