Add To Watchlist

VULNERABILITIES

The Wire

Palin candidacy raises eyebrows in Alaska

Alaska Gov. Sarah Palin's reputation as a crusading reformer after pushing through higher taxes on oil companies has been tarnished by revelations that members of her staff tried to have her former brother-in-law fired from his job as an Alaska state trooper.

Biden's career provides grist for McCain's mill

In August 2007, three men who later became entangled in a Mississippi bribery scheme raised money for Sen. Joe Biden's run for president.

Hackers: Social Networking Sites Flawed

Social networking Web sites such as MySpace.com are increasingly juicy targets for computer hackers, who are demonstrating a pair of vulnerabilities they claim expose sensitive personal information and could be exploited by online criminals.

The Vine

Vulnerabilities

Senator Kennedy loses his last battle against cancer. He has done mistakes, no doubt about it.

'Smart Grid' may be vulnerable to hackers
Source: CNN

WASHINGTON (CNN) -- Is it really so smart to forge ahead with the high technology, digitally based electricity distribution and transmission system known as the "Smart Grid"? Tests have shown that a hacker can break into the system, and cybersecurity experts said a massive blacko …

Biggest Internet security risk unveiled at DEFCON
Source: tech.blorge.com

Hackers at the recent DEFCON conference demonstrated Internet flaws even more shocking than the recent DNS vulnerability. A design error that's been known, has been exploited and probably has been used by government security agencies like the NSA.

Major Internet Security Flaw Also Affects E-Mail
Source: firstcoastnews.com

"A newly discovered flaw in the Internet's core infrastructure not only permits hackers to force people to visit Web sites they didn't want to, it also allows them to intercept e-mail messages, the researcher who discovered the bug said Wednesday."

Major DNS vulnerability found
Source: Soggypickle dot com

"Today, CERT is issuing an advisory for a massive multivendor patch to resolve a major issue in DNS that could allow attackers to easily compromise any name server (it also affects clients).

Microsoft: Vista Has Fewer Flaws Than Other First-Year OSes
Source: darkreading.com

Vista logged fewer vulnerabilities in its first year than XP, Red Hat, Ubuntu, and Apple Mac OS X did in their first years

Serious Flash vulns menace at least 10,000 websites
Source: The Register (UK)

Researchers from Google and a well-known security firm have documented serious vulnerabilities in Adobe Flash content which leave tens of thousands of websites susceptible to attacks that steal the personal details of visitors.

New Hacking Technique Exploits Common Programming Error
Source: searchsecurity.techtarget.com

Researchers at Watchfire Inc. say they have discovered a reliable method for exploiting a common programming error, which until now had been considered simply a quality problem and not a security vulnerability.

Safari For Windows Not So Secure
Source: CNET

Within hours of Apple's public release of the beta for Safari 3.0 for Windows, three security researchers independently found holes within the new browser.

Look out, Google and Yahoo; hacker to publish month of search engine bugs
Source: SC Magazine

A hacker using the alias "Mustlive" announced this week that June will feature the next month-long vulnerability disclosure project, this one dedicated to search engine bugs.

Microsoft to offer more Patch Tuesday details in advanced notifications
Source: SC Magazine

A new initiative from Microsoft will take some of the sting out of its Patch Tuesday security updates by offering additional information about the patches five days prior to their release.

Microsoft to release seven patches - including DNS fix - on Patch Tuesday
Source: SC Magazine

Microsoft today announced it will release seven Patch Tuesday fixes next week, including one for a flaw in Windows Server 2000 and 2003 DNS Service.

New Windows Vista hacked already
Source: normantranscript.com

The marketing propaganda touting Microsoft's new Vista operating system as "the most secure version of Windows yet" has done nothing to stop both white and black hat hackers from discovering Vista vulnerabilities.

Mozilla flaws more joke than jeopardy
Source: securityfocus.com

Two presenters razzed developers of the open-source Mozilla browser this weekend at the ToorCon hacking convention in San Diego with claims that the browser's Javascript implementation is flawed, but the lecture appears to have been more stand-up comedy routine than substantiati …

Apple Wireless Vulnerable After All
Source: securityfocus.com

Apple released an update on Thursday to fix three critical flaws in its Airport wireless drivers that could allow attackers to remotely take control of a desktop or laptop Mac OS X system.

Attackers Pass On OS, Aim For Drivers And Apps
Source: securityfocus.com

While Apple has frequently been criticized by security researchers over the difficulty many flaw finders have found in reporting vulnerabilities to the company, the Mac maker responded quickly to the report filed by Maynor and "johnny cache," the duo said.

Apple security update plugs holes in Mac OS X
Source: Apple Insider

Apple Computer on Tuesday clamped down on a number of vulnerabilities in its Mac OS X operating system that could pose as backdoors for hackers or malicious users.

Malware Evolution: Mac OS X Vulnerabilities 2005 - 2006
Source: -

This article looks at vulnerabilities detected in MacOS X in the first half of 2006. It compares these vulnerabilities to those detected in the first half of 2005, providing an overview of the evolution of threats targeting this increasingly popular platform.

Hacker Goes Public with Unpatched Browser Bugs
Source: newsfactor.com

A well-known hacker has vowed to disclose the details of at least one browser flaw every day in July as part of a project, called the Month of Bugs, that is designed to draw attention to unpatched security vulnerabilities.

Microsoft's Security Disclosures Come Under Fire
Source: eweek.com

Is Microsoft silently fixing security vulnerabilities and deliberately obfuscating details about patches in its monthly security bulletins?

Microsoft: Our Bugs Aren't The Only Problem
Source: informationweek.com

Attacks that rely on "social engineering" tricks to fool users into visiting malicious Web sites are just as dangerous as any that exploit software vulnerabilities, a Microsoft security researcher argued this week.

Windows Updates users still waiting for WMF exploit fix
Source: The Register (UK)

Aside from the two unofficial patches, including one released by the company itself today, Microsoft is waiting until January the 10th to officially roll out the WMF exploit fix as part of their scheduled Security Update.

This area needs news. Click here to seed the vine