Articles tagged with: vulnerability
Security »
Gumblar is a computer virus that first appeared in 2009. It has been identified as one of the most malicious viruses in existence. It is characterized by re-directing user’s Google searches and is suspecting to come from flash and PDF files.
Personal Computers
Visitors to an infected site will be redirected to an alternative site containing further Malware, which was once gumblar.cn, but has now switched to a variety of domains. The site sends the visitor an infected PDF that is opened by the visitor’s browser or Acrobat Reader. The PDF will …
articles »
Vulnerability in Microsoft Video ActiveX Control Could Allow Remote Code Execution
Microsoft is investigating a privately reported vulnerability in Microsoft Video ActiveX Control. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. When using Internet Explorer, code execution is remote and may not require any user intervention.
We are aware of attacks attempting to exploit the vulnerability.
Our investigation has shown that there are no by-design uses for this ActiveX Control in Internet Explorer which includes all of the Class Identifiers within the msvidctl.dll that …
Security, Server »
Multiple DNS implementations vulnerable to cache poisoning
Overview
Deficiencies in the DNS protocol and common DNS implementations facilitate DNS cache poisoning attacks.
I. Description
The Domain Name System (DNS) is responsible for translating host names to IP addresses (and vice versa) and is critical for the normal operation of internet-connected systems. DNS cache poisoning (sometimes referred to as cache pollution) is an attack technique that allows an attacker to introduce forged DNS information into the cache of a caching nameserver. DNS cache poisoning is not a new concept; in fact, there are published …
Server »
The DNS server at IP address 202.188.0.132 is susceptible to a DNS cache poisoning attack. The server is not changing its source port, query id, or both, between queries. This means it is easier than average for an attacker to spoof responses to DNS queries from this server, causing the server to serve a potentially malicious DNS record in response to any query.
Click here for more details on this vulnerability and how to patch it.
If you are not in control of your own DNS server, contact your DNS provider but …
It news »
PandaLabs has detected an increase in the use of spam combined with social engineering to spread malware. Several examples have appeared over the last few days.
The most recent case detected involves emails warning of an alleged malware alert (with subjects such as: Worm alert! or spyware alert!), but whose real aim is to spread the Nurech.Z worm. To make the messages more credible, typically trusted sources such as Customer Support are used as the name of the sender.
Another recent case uses photographs of Britney Spears as bait. The email has …
Linux »
< !DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
Welcome to the Ubuntu
Weekly Newsletter, Issue 84 for the weeks March23rd – March 29th, 2008. In
this issue we cover: new MOTUs, Ubuntu6.10 End-of-Life, Xubuntu refocuses,
Ubuntu countdown graphics,Launchpad 1.2.3, Launchpad logo contest closing,
Ubuntu UK Podcast #2,Reside@HOME: Linux Health Care, PWN To
OWN (Ubuntu wins), and much,much more!
== In This Issue
==
* MOTU Team news * Ubuntu Stats * Launchpad
news * Ubuntu Forum news * In the Press &
Blogosphere * Ubuntu UK Podcast #2 * Reside@HOME: Linux for Elderly Health Care * Automatix
discontinued * Full circle Magazine #11 * CanSecWest PWN2OWN
2008 – Ubuntu Wins! * Meeting & …
It news »
JERSEY CITY, NJ March 13, 2008 – Under a new initiative, Comodo, a leading Certification Authority, introduced the HackerProof Reseller Incentive Program aimed at highlighting to its channel partners the value of HackerProof to online eMerchants and the new revenue opportunities this presents for resellers. This program offers qualifying resellers special channel pricing and a year of free HackerProof service as a way for partners to experience first hand the value of this innovative service. This HackerProof offer is part of Comodo’s partner program designed to provide partners with an …





