SECURITY RELATED RSS FEEDS

Latest Advisories/Security Related News

 
The Register - Security
Last Downloaded: Mon, 15 Mar 2010 02:34:26 GMT.
View The Raw XML Source Of The Register - Security. hide
  Google '99.9%' certain to pull China search plug  

At some unspecified point in the future

Google is now "99.9 per cent" certain it will shut down its Chinese search engine, according to a report citing "a person familiar with the company's thinking."…

Case Study: WhatsUp keeps Legoland turnstyles ringing

  Programmer gets 4 years in TJX hack case  

Dirty laundry delivered via FedEx

A former Barclays Bank programmer received 46 months in prison for helping TJX hacker Albert Gonzalez launder as much as $800,000, according to news reports.…

  Netflix cancels recommendation contest over privacy  

Not as anonymous as you think

Netflix has canceled a contest designed to improve its movie recommendation system out of concern it might compromise the privacy of its customers.…

  Trojan armed with hardware-based anti-piracy control  

Zeus borrows page from Microsoft

The latest version of the Zeus do-it-yourself crimeware kit goes to great lengths to thwart would-be pirates by introducing a hardware-based product activation scheme similar to what's found in Microsoft Windows.…

What is your recession sales strategy?

  Safari update cages numerous security bugs  

Code inject and info flaws fixed

Apple published an update of its Safari browser on Thursday that plugs 16 security vulnerabilities.…

  SSD tools crack passwords 100 times faster  

Ultra brute force attack

Password-cracking tools optimised to work with SSDs have achieved speeds up to 100 times quicker than previously possible.…

  McAfee inadvertently speeds creation of Metaploit IE exploit pack  

Unsanitised blog laid exploit hunt clues

A security researcher has credited McAfee for helping him to develop exploit code that cracks open an unpatched flaw in older versions of Internet Explorer.…

  Turkey cuffs 23 'militant' hacker suspects  

PKK s'kiddies

Turkey has arrested 23 hackers suspected of links with the outlawed Kurdistan Workers' Party (PKK) and attacks on government websites.…

  Sarah Palin to testify in email hack trial  

After Yahoo! breach 'paralyzed' Veep campaign

Former Republican vice presidential candidate Sarah Palin will testify in person against the college student accused of breaching her Yahoo mail account and leaking some of its contents online, according to published reports.…

What is your recession sales strategy?

  TSA worker tried to sabotage terror database, feds say  

One week after losing job

A former data analyst for the US Transportation Security Agency has been accused of trying to sabotage a terrorist screening database used to vet people with access to sensitive information and secure areas of the nation’s transportation network.…

  Microsoft plants Bing on Google-free Chinese Androids  

Google apps 'postponed' on China carriers

Motorola will soon push Microsoft's Bing search engine onto Android phones in China, after announcing an alliance with the Redmond software giant that will see Bing appear on Androids across the globe.…

The power of collaboration within unified communications

  One-third of orphaned Zeus botnets find way home  

Cyber security's short-lived victory

The takedown of 100 servers used to control Zeus-related botnets may be a short-lived victory, security researchers said after discovering that about a third of the orphaned channels were able to regain connectivity in less than 48 hours.…

Case Study: WhatsUp keeps Legoland turnstyles ringing

  Koobface gang refresh botnet to beat takedown  

Twitter scourge changes pants

Command and Control servers associated with the infamous Koobface worms have gone through a complete refresh over the last fortnight. Russian net security firm Kaspersky Lab reckons the change up might be aimed at making takedown efforts by cybercrime fighters more difficult.…

  Estonian DDoS revenge worm crafter jailed  

Infection still spreading

An Estonian virus writer has been jailed for two and a half years for creating a Windows worm family that launched denial of service attacks on the websites of a local insurance firm and ISP.…

  Tories on cyber war: Waffle, mutter, waffle. Um, vote for us!  

'Computers. Clicking, typing. Email. I could go on'

Tory peer and shadow security minister Baroness Pauline Neville Jones has set out her party's thoughts on cyber war and defence. Unfortunately once the waffle is stripped away there's pretty much nothing there.…

  Password reset questions dead easy to guess  

Your pet's name is Poochie? You're pwned

Guessing the answer to common password reset questions is far easier than previously thought, according to a new study by computer science researchers.…

  Bogus Playstation emulators pack Trojan payload  

'Will be around for a long time'

Retro gaming fans are being targeted in a new con designed to infect computers with a Trojan linked to scareware scams.…

  PayPal restores Cryptome for real  

Now go away

PayPal has finally made good on its pledge to restore Cryptome's account many hours after the firm's head of global communications told Register readers it had already done so.…

  Zeus botnets suffer mighty blow after ISP taken offline  

One quarter of C&C channels vanish

At least a quarter of the command and control servers linked to Zeus-related botnets have suddenly gone quiet, continuing a recent trend of takedowns hitting some of the world's most nefarious cyber operations.…

Offloading malware protection to the cloud

  Google boss says something will happen in China 'soon'  

Eight weeks and counting

Google CEO Eric Schmidt has reiterated that the company is currently in negotiations with the Chinese government over its future in the country - despite the Chinese government's claims to the contrary - and he expects some sort of development "soon".…

Case Study: WhatsUp keeps Legoland turnstyles ringing

 
SecurityFocus News
Last Downloaded: Mon, 15 Mar 2010 05:16:40 GMT.
View The Raw XML Source Of SecurityFocus News. hide
  News: Change in Focus  Change in Focus
  News: Twitter attacker had proper credentials  Twitter attacker had proper credentials
  News: PhotoDNA scans images for child abuse   PhotoDNA scans images for child abuse

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
  News: Conficker data highlights infected networks  Conficker data highlights infected networks
  Brief: Google offers bounty on browser bugs  Google offers bounty on browser bugs
  Brief: Cyberattacks from U.S. "greatest concern"   Cyberattacks from U.S. "greatest concern"

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
  Brief: Microsoft patches as fraudsters target IE flaw  Microsoft patches as fraudsters target IE flaw
  Brief: Attack on IE 0-day refined by researchers  Attack on IE 0-day refined by researchers
  News: Monster botnet held 800,000 people's details   Monster botnet held 800,000 people's details

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
  News: Google: 'no timetable' on China talks  Google: 'no timetable' on China talks
  News: Latvian hacker tweets hard on banking whistle  Latvian hacker tweets hard on banking whistle
  News: MS uses court order to take out Waledac botnet   MS uses court order to take out Waledac botnet

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
  Infocus: Enterprise Intrusion Analysis, Part One  Enterprise Intrusion Analysis, Part One
  Infocus: Responding to a Brute Force SSH Attack  Responding to a Brute Force SSH Attack
  Infocus: Data Recovery on Linux and ext3   Data Recovery on Linux and <i>ext3</i>

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
  Infocus: WiMax: Just Another Security Challenge?  WiMax: Just Another Security Challenge?
  Gunter Ollmann: Time to Squish SQL Injection  Time to Squish SQL Injection
  Mark Rasch: Lazy Workers May Be Deemed Hackers   Lazy Workers May Be Deemed Hackers

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
  Adam O'Donnell: The Scale of Security  The Scale of Security
  Mark Rasch: Hacker-Tool Law Still Does Little  Hacker-Tool Law Still Does Little
powered by zFeeder


Latest Security Files/Exploits

 
Packet Storm Security Last 20
Last Downloaded: Mon, 15 Mar 2010 02:34:26 GMT.
View The Raw XML Source Of Packet Storm Security Last 20. hide
  Botan-1.9.4.tgz  Botan is a C++ library of cryptographic algorithms, including AES, DES, SHA-1, RSA, DSA, Diffie-Hellman, and many others. It also supports X.509 certificates and CRLs, and PKCS #10 certificate requests, and has a high level filter/pipe message processing system. The library is easily portable to most systems and compilers, and includes a substantial tutorial and API reference.
  gnupg-2.0.15.tar.bz2  GnuPG (the GNU Privacy Guard or GPG) is GNU's tool for secure communication and data storage. It can be used to encrypt data and to create digital signatures. It includes an advanced key management facility and is compliant with the proposed OpenPGP Internet standard as described in RFC2440. As such, it is meant to be compatible with PGP from NAI, Inc. Because it does not use any patented algorithms, it can be used without any restrictions.
  fwbuilder-4.0.0.tar.gz  Firewall Builder consists of a GUI and set of policy compilers for various firewall platforms. It helps users maintain a database of objects and allows policy editing using simple drag-and-drop operations. The GUI and policy compilers are completely independent, which provides for a consistent abstract model and the same GUI for different firewall platforms. It currently supports iptables, ipfilter, ipfw, OpenBSD pf, Cisco PIX and FWSM, and Cisco routers access lists.
  anantasoft-xsrf.txt  Anantasoft Gazelle CMS suffers from a cross site request forgery vulnerability.
  secunia-etsdisclose.txt  Secunia Research has discovered security issue in Employee Timeclock Software, which can be exploited by malicious, local users to disclose sensitive information. The security issue is caused due to the application passing the database password via the command line to the mysqldump utility, which potentially can be exploited to disclose the password via the process list. Version 0.99 is affected.
  secunia-etssql.txt  Secunia Research has discovered some vulnerabilities in Employee Timeclock Software, which can be exploited by malicious people to conduct SQL injection attacks. Input passed to the username and password parameters in auth.php and login_action.php is not properly sanitized before being used in SQL queries. This can be exploited to manipulate SQL queries by injecting arbitrary SQL code. Version 0.99 is affected.
  notepadpoc.zip  The MS HTML Help control activex is prone to a remote CHM help file hijack vulnerability when applications invoke help. Multiple built-in applications are vulnerable to this. The impact of the vulnerability is the loading of the incorrect CHM help file when it resides in the same directory the application invoking help starts in. This proof of concept exploit leverages Notepad to demonstrate the vulnerability.
  tarcpio-overflow.txt  GNU Tar and GNU Cpio suffer from a heap-based buffer overflow vulnerability. Tar versions prior to 1.23 and Cpio versions prior to 2.11 are affected.
  ispcp-rfi.txt  ispCP Omega versions 1.0.4 and below suffer from a remote file inclusion vulnerability.
  secunia-etsb.txt  Secunia Research has discovered security issue in Employee Timeclock Software, which can be exploited by malicious people to disclose sensitive information. The database backup functionality stores the database backup with a semi-predictable file name inside the web root. This can be exploited to download the backup by guessing the file name. Version 0.99 is affected.
  httpdx-breaksvc.txt  Httpdx version 1.5.3 remote break services exploit.
  softbizjobsrecruitment-sql.txt  Softbiz Jobs and Recruitment script suffers from a remote SQL injection vulnerability.
  campsite-xsrf.txt  Campsite version 3.3.5 suffers from a cross site request forgery vulnerability.
  03.09.10-4.txt  iDefense Security Advisory 03.09.10 - Remote exploitation of a heap overflow vulnerability in Microsoft Corp.'s Excel could allow an attacker to execute arbitrary code with the privileges of the current user. This vulnerability occurs when parsing an MDXTUPLE record inside of the Excel Workbook globals stream. This record is used to store metadata for external data connections in the workbook. The vulnerability occurs when a MDXTUPLE record is broken up into several records. This could allow an attacker to trigger a heap based buffer overflow by controlling both the allocation size of a heap buffer and the number of bytes copied into this buffer. iDefense has confirmed the existence of this vulnerability in Excel versions 2007 SP0, SP1, and SP2. Previous versions do not appear to be affected as they do not support parsing the record that triggers the vulnerability. A full list of vulnerable Microsoft products can be found in Microsoft Security Bulletin MS10-017.
  03.09.10-3.txt  iDefense Security Advisory 03.09.10 - Remote exploitation of a heap overflow vulnerability in Microsoft Corp.'s Excel could allow an attacker to execute arbitrary code with the privileges of the current user. This vulnerability occurs when parsing an MDXSET record inside of the Excel Workbook globals stream. This record is used to store metadata for external data connections in the workbook. The vulnerability occurs when a MDXSET record is broken up into several records. This could allow an attacker to trigger a heap based buffer overflow by controlling both the allocation size of a heap buffer and the number of bytes copied into this buffer. iDefense has confirmed the existence of this vulnerability in Excel versions 2007 SP0, SP1, and SP2. Previous versions do not appear to be affected as they do not support parsing the record that triggers the vulnerability. A full list of vulnerable Microsoft products can be found in Microsoft Security Bulletin MS10-017.
  03.09.10-2.txt  iDefense Security Advisory 03.09.10 - Remote exploitation of an uninitialized memory vulnerability in Microsoft Corp.'s Excel could allow an attacker to execute arbitrary code with the privileges of the current user. The vulnerability occurs due to Excel using a local function variable without properly initializing it. This error occurs when parsing several related records inside of an Excel worksheet. When Excel parses certain records in a particular order, a stack variable may not be initialized properly. If an attacker can control the area of memory used for this variable, then it is possible to execute arbitrary code on the targeted host. iDefense has confirmed the existence of this vulnerability in Excel versions 2003 SP3, 2007 SP0, SP1, and SP3 . Previous versions do not appear to be affected. A full list of vulnerable Microsoft products can be found in Microsoft Security Bulletin MS10-017.
  60cyclecms-xss.txt  60cycleCMS suffers from a cross site scripting vulnerability.
  03.09.10-1.txt  iDefense Security Advisory 03.09.10 - Remote exploitation of a type confusion vulnerability in Microsoft Corp.'s Excel could allow an attacker to execute arbitrary code with the privileges of the current user. This vulnerability is a type confusion vulnerability that occurs when parsing several related Excel record types. In this case, the type confusion is due to multiple records containing fields that identify the type of an object shared between them. By controlling memory outside of the bounds of the allocated heap chunk, an attacker can control a C++ object pointer used in a virtual function call. This can result in an area of memory being treated as a different type of object than it actually is, resulting in access outside of the bounds of the allocated object. iDefense has confirmed the existence of this vulnerability in all currently supported versions of Excel (2007 SP1/SP2, 2003 SP3, XP SP3), and also the currently unsupported Excel 2000 SP3. A full list of vulnerable Microsoft products can be found in Microsoft Security Bulletin MS10-017.
  friendlytr69-sql.txt  Friendly-Tech FriendlyTR69 CPE remote management version 2.8.9 suffers from a remote SQL injection vulnerability.
  hydra-sqlxss.txt  Hydra CMS suffers from cross site scripting and remote SQL injection vulnerabilities.
powered by zFeeder