Blogs about: Vulnerabilities

Featured Blog

Researchers Raise Alarm Over New Iteration of Coreflood Botnet

Smokey wrote 14 hours ago: The seven-year-old Coreflood botnet is quietly stealing thousands of passwords from corporate users … more »

Tags: Advisories, Alerts, malware, Security, anti-phishing working group, Coreflood Botnet Trojan, infections, Microsoft Windows, Networks

DNS Vulnerability Notes, part 21 comment

Clay wrote 4 days ago: Looks like the details of the Kaminsky DNS vulnerability (intended to be released in mid August) hav … more »

Tags: Security, dns, Vulnerability Assessment, dns cache poisoning

Crippling Crypto: The Debian OpenSSL Debacle

Dino Dai Zovi wrote 5 days ago: This weekend at The Last HOPE, Jacob Appelbaum, Karsten Nohl and I gave the following presentation o … more »

Tags: Conferences

Microsoft Security Bulletin MS08-033 (Critical): Vulnerabilities in DirectX Could Allow Remote Code Execution (951698)

Smokey wrote 1 week ago: Published: June 10, 2008 | Updated: July 16, 2008 This security update resolves two privately report … more »

Tags: Advisories, Alerts, Downloads, malware, Security, 951698, attacks, critical update, DirectX vulnerabilities

Peng's links for Thursday, 17 July2 comments

Peng wrote 1 week ago: Planet Mozilla: Google calendar may display real names of other Google mail users. I meant to post … more »

Tags: Entertainment, Mozilla, Open-Source, Tech, ubuntu, firefox, Google, Marketing, Video

Peng's links for Wednesday, 16 July

Peng wrote 1 week ago: Ben Collins: Canonical and the Linux kernel. There’s an incorrect belief that Canonical, pare … more »

Tags: GNU/Linux, Open-Source, Tech, ubuntu, Canonical, Envy

Pwnie Award Nominations Close Today

Dino Dai Zovi wrote 1 week ago: This is just a friendly reminder that the nominations for the Pwnie Awards close today.  You can … more »

Tags: Conferences

DNS Vulnerability Notes

Clay wrote 1 week ago: I’ve been experimenting with various DNS implementations this week since the release of the la … more »

Tags: Security, dns, Backtrack, Vulnerability Assessment, Nemesis, RFC 1035

security holes

whitenoise wrote 1 week ago: This XKCD strip is…simply…fantastic!! … more »

Tags: Fun, Software, Linux, Computer, Fedora, photos, media, Linux, opensource

heise SSL Guardian: protection against unsafe SSL certificates

Smokey wrote 2 weeks ago: Https connections are often used to transfer important data, such as passwords, PINs, or credit card … more »

Tags: Downloads, Security, General, News, Advisories, Freeware, SSL certificates, encrypted data, heise SSL Guardian

What is a vulnerability?

jatnikonm wrote 2 weeks ago: A vulnerability is a hole or a weakness in the application, which can be a design flaw or an impleme … more »

Highly critical vulnerabilities reported in vBulletin

Smokey wrote 2 weeks ago: Some highly critical vulnerabilities have been reported in vBulletin, which can be exploited by mali … more »

Tags: malware, Downloads, Security, Alerts, Advisories, Highly Critical Vulnerabilities, vbulletin, 372, 3.6.10 PL2

Dan Kaminsky Disqualified from Most Overhyped Bug Pwnie10 comments

Dino Dai Zovi wrote 2 weeks ago: I can be pretty skeptical and cynical at times (part of what drives my interest in security) and I a … more »

Tags: Conferences

Microsoft patch cause major 'net issues for users of ZoneAlarm firewalls5 comments

Peng wrote 2 weeks ago: I usually don’t worry about news from Microsoft, but this morning I saw a note on mozillaZine … more »

Tags: GNU/Linux, ubuntu, Tech, Microsoft, Updates, winxp

Apple updates Leopard to 10.5.4

Smokey wrote 2 weeks ago: Apple has released Mac OS X 10.5.4, the fourth update to Leopard since it was released last October. … more »

Tags: Downloads, Security, General, Alerts, News, Advisories, Apple, Safari, leopard 10.5.4 released

ARDAgent.app Vulnerability Analysis3 comments

Dino Dai Zovi wrote 3 weeks ago: Apple recently released Mac OS X 10.5.4 with accompanying security updates for 25 vulnerabilities. … more »

Tags: Apple

Microsoft Security Bulletin Advance Notification for July 2008

Smokey wrote 3 weeks ago: Published: July 3, 2008 Microsoft Security Bulletin Advance Notification issued: July 3, 2008 Micros … more »

Tags: malware, Downloads, Security, General, Alerts, News, Advisories, Microsoft SQL Server, MU

Opera 9.51 Released (Recommended security and stability upgrade)

Smokey wrote 3 weeks ago: -July 3, 2008: Opera 9.51 released, this is a recommended security and stability upgrade. Several hi … more »

Tags: Downloads, Security, General, Alerts, News, Advisories, Download, Highly Critical Vulnerabilities, Opera 9.51 realeased

Peng's links for Saturday, 5 July

Peng wrote 3 weeks ago: It’s Saturday? I woke up this am and after the holiday yesterday (with the busses in town runn … more »

Tags: GNU/Linux, ubuntu, Open-Source, Baseball, Tech, Entertainment, Mozilla, beta, MLB