Web bugs return using digital certificates

Thursday, April 3rd, 2008

Spammers are once again using web bugs to verify the validity of of email addresses. This time the trick is not done with graphics but with digital certificates. Alexander Klink from German consultants Cynops has discovered a vulnerability in Microsoft products – or possibly in the Crypto API – that ...

Slide.com Hosting Malware

Monday, March 31st, 2008

Websense Security Labs has been tracking the use of Slide.com as a hosting site for malware for several months. The popular Web 2.0 social networking Web site, ranked 252 by Alexa (Alexa Ranking), is both the largest Facebook application developer and a free and easy place to host malware. Having tracked the various ways malware is hosted on ...

Firefox update fixes critical security vulnerabilities

Wednesday, March 26th, 2008

The Mozilla project is distributing version 2.0.0.13 of its popular open source Firefox browser. This release fixes several critical vulnerabilities which could be exploited by attackers to inject malicious code or fake page content. The browser's JavaScript engine contains several of the security vulnerabilities. Due to incorrect processing, attackers can execute ...

Microsoft Warns of New Attack on Word

Saturday, March 22nd, 2008

Be extra careful when opening documents in Windows, especially if they are Word files. Microsoft on Friday warned that cyber criminals may be taking advantage of an unpatched flaw in the Windows operating system to install malicious software on a victim's PC. The reported attack, now under investigation by Microsoft, involves a ...

Wi-Fu! Attacking the 802.11 Client

Monday, March 17th, 2008

Wi-Fu! More than just a statement, it reflects you wireless security skill set from knowledge and practical experience. This covers everything from using the tools out there to profile and attack your wireless network, to checking the security of your client devices yourself. If you feel your Wi-Foo is slipping, ...