Malware Help. Org | Blog

PC security, privacy, anonymity and anti-malware Resource




Archive for the 'Vulnerabilities' Category

Security: Apple releases massive security update

March 19th, 2008 by Shanmuga


"Known as APPLE-SA-2008-03-18 Security Update 2008-002, it contains more than 40 specific fixes for versions of Mac OS X. The most significant updates include Apache, ClamAV, Emacs, OpenSSH, PHP, and X11. To get the update, go to the Software Update pane in System Preferences, or Apple’s Software Downloads Web site. The update "is recommended for all users and improves the security of Mac OS X," according to the Apple Downloads page.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Security, Vulnerabilities | No Comments »

Vulnerabilities: Malicious subtitle file could harm VLC media player

March 19th, 2008 by Shanmuga


"A flaw in the widely-used open-source VLC media player could allow an attacker to execute harmful code on a PC. The problem stems from a buffer overflow that can occur when the player processes subtitle files used for movies, according to a security advisory.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Vulnerabilities | 2 Comments »

Microsoft fixes a dozen critical Office flaws in four patches

March 14th, 2008 by Shanmuga


"Microsoft released its March 2008 security bulletin, which includes four bulletins, all deemed critical by Microsoft. The most serious of these affects Microsoft Excel, which alone has six specific "Common Vulnerablities and Exposures" vulnerabilities noted, one of which has been exploited in the wild.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Vulnerabilities | 1 Comment »

Mozilla adds 900 fixes and upgrades Firefox 3 beta

March 14th, 2008 by Shanmuga


"Mozilla released the latest beta of Firefox 3, including some 900 bug fixes and highlighting for users that it is for testing purposes only. The release comes less than a week after Microsoft showed off the next version of its browser – Internet Explorer 8 – at its annual Mix show for developers.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Security, Vulnerabilities | 1 Comment »

Hacked: Researchers figure out how to crack GSM phone security

February 23rd, 2008 by Shanmuga


"Two enterprising researchers claim to have figured out a way to eavesdrop on calls made using GSM mobile phones, cracking open its much-vaunted encryption.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Hacking, Vulnerabilities | 2 Comments »

Vulnerabilities: Serious Browser Bugs Spoil Opera Tune

February 23rd, 2008 by Shanmuga


"Opera has shipped a high-priority update to its flagship Web browser to correct multiple flaws that put Windows users at risk of malicious hacker attacks.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Vulnerabilities | No Comments »

Is it time to consider PDF a threat?

February 15th, 2008 by Shanmuga


"Adobe released patches for its Reader and Acrobat programs last Wednesday, but there’s reason to suspect that the company has closed the barn door long after the cattle fled. According to a blog entry at the SANS Internet Storm Center, this particular vulnerability has been exploited in the wild for several weeks. In this case, hackers use malicious banner ads as a host for an infected PDF. The PDF then installs the Zonebac Trojan, which sets to work deactivating antivirus products, modifying search results, and changing banner ads.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Vulnerabilities | No Comments »

Microsoft Issues Biggest Patch Update in a Year

February 13th, 2008 by Shanmuga


"Microsoft on Tuesday rolled out 11 security updates that patch 17 vulnerabilities in Windows, Office, Internet Explorer, Internet Information Server (IIS) and several other components and technologies. It was the most patch bulletins Microsoft’s has issued since February 2007, even though it yanked one expected update — scheduled last week to fix problems in VBScript and JScript — at the last minute. Five of the 11 were ranked "critical," Microsoft’s highest rating in its four-step threat-scoring system. The others were pegged as "important," the second-highest rating.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Vulnerabilities | 1 Comment »

Mozilla Dismisses New Firefox Flaw Warning

February 13th, 2008 by Shanmuga


"Published reports of an information leakage vulnerability affecting fully patched versions of the open-source Firefox browser have been greatly exaggerated, according to Mozilla chief evangelist Mike Shaver.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Vulnerabilities | No Comments »

Mozilla patches 11 Firefox bugs

February 13th, 2008 by Shanmuga


"Mozilla Corp. late yesterday patched Firefox to quash 11 bugs, including one from three weeks ago that posed a threat to users who had installed any of the more than 600 add-ons for the open-source browser. Firefox 2.0.0.12 fixed four vulnerabilities that Mozilla ranked "critical," one it pegged "high" and three each rated as "moderate" and "low," according to the security advisory posted Thursday.
Read the rest of this entry »

If you enjoyed this post, make sure you subscribe to my RSS feed!

Category: Vulnerabilities | No Comments »