Adobe fixes clickjacking flaw

Thursday, October 16th, 2008

Adobe Systems has released a new version of its Flash Player software, fixing a critical security bug that could make the Internet a dangerous place for Web surfers. The new Flash Player 10 software, released Wednesday, fixes security flaws in Adobe's multimedia software including bugs that could allow hackers to pull ...

New Google bugs empower phishermen

Saturday, October 11th, 2008

Google's Gmail service suffers from security flaws that make it trivial for attackers to create authentic-looking spoof pages that steal users' login credentials, a security expert has demonstrated. Google Calendar and other sensitive Google services are susceptible to similar tampering. A proof-of-concept (PoC) attack, published by Adrian Pastor of the GNUCitizen ...

Exploit code loose for six-month-old Windows bug

Friday, October 10th, 2008

Microsoft Corp. yesterday acknowledged that exploit code is circulating for a vulnerability it acknowledged six months ago, but has yet to patch. It's not clear whether Microsoft intends to fix the flaw next week. On Thursday, Microsoft revised a security advisory it first posted April 19 about a bug in Windows XP, ...

Asus warns of a virus infection in shipping Eee Boxes

Thursday, October 9th, 2008

The Japanese division of Taiwanese computer and component manufacturer Asus is warning customers that shipping versions of its Eee Box B202 desktop computer are infected with a virus. According to Asus, the virus is located on the D drive in a file called recycled.exe. When the user opens the D ...

Anatomy of a SQL Injection Attack

Wednesday, October 8th, 2008

While there are a number of security risks in the world of electronic commerce, SQL injection is one of the most common Web site attack techniques used to steal customer data such as credit card numbers, hold customer data hostage by encrypting it or destroy data outright. Where a Web server ...