|
 |
|
 |
|
Predefined News Feeds:
[
]
[
]
[
]
[
]
[
]
[
]
[ Security ]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
[
]
| |
 |
|
 |
 | |  | |
In the latest edition of its monthly security ritual, Microsoft patches two bugs, both deemed "important," and issued an advisory about a flaw recently discovered in the Internet Explorer browser.

Source: ()
| |  | |  |
 | |  | |
2009-12-18
Twitter attacker had proper credentials
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 14 Jul 2009 07:00:00 GMT
Learn about and download the latest computer security updates for July 2009. Read tips on protecting your computer by using anti-spyware and anti-spam programs.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 16:54:48 -0500
After last month's mammoth Patch Tuesday release, administrators will be glad to know that this month Microsoft delivers only 2 bulletins that fix 8 vulnerabilities targeting Movie Maker and Office, a...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 12:33:38 -0500
GnuPG stands for GNU Privacy Guard and is GNU's tool for secure communication and data storage. It can be used to encrypt data and to create digital signatures. It includes an advanced key management ...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 20:15:59 -0500
Rising PC Doctor application was designed to be a professional and smart security tool for protection against malware.
With its seven key functions of automatic malware analysis, immunization of US...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Mar 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves seven privately reported vulnerabilities in Microsoft Office Excel. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
For the second time in two years, Wyndham Hotels and Resorts says hackers managed to access its computer systems, stealing personal data including customer payment card data.

Source: ()
| |  | |  |
 | |  | |
2009-12-18
PhotoDNA scans images for child abuse
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 09 Jun 2009 07:00:00 GMT
Learn about and download the latest computer security updates for June 2009. Read tips on protecting your computer by using anti-spyware and anti-spam programs.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 16:08:34 -0500
Rapidly approaching the point when retaliation against countries suspected of launching cyber attacks and engaging in cyber espionage will be ordered, the UK Government's security and counter-terroris...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 12:31:46 -0500
Botan aims to be a portable, easy to use, and efficient C crypto library. It currently supports the following algorithms:Block Ciphers: Blowfish, CAST256, CAST5, CS-Cipher, DES/DESX/TripleDES, GOST,...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 20:14:50 -0500
Trojan Killer application is a malicious computer software (malware) removal tool. Samples of malware include various types of adware (displays unwanted advertising); spyware (may keep and send logs o...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Mar 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update addresses a privately reported vulnerability in Windows Movie Maker and Microsoft Producer 2003. Windows Live Movie Maker, which is available for Windows Vista and Windows 7, is not affected by this vulnerability. The vulnerability could allow remote code execution if an attacker sent a specially crafted Movie Maker or Microsoft Producer project file and persuaded the user to open the specially crafted file. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Security software firm unveils prototype system designed to help carriers weed out malware and other security vulnerabilities on mobile devices.

Source: ()
| |  | |  |
 | |  | |
2009-12-16
Conficker data highlights infected networks
>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your
Enterprise RP rollout gets an A .
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 12 May 2009 07:00:00 GMT
Learn about and download the latest computer security updates for May 2009. Read tips on protecting your computer by using anti-spyware and anti-spam programs.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 15:21:38 -0500
Anton Chuvakin, the well-known security expert and consultant in the field of log management and PCI DSS compliance and author of many books, and Lenny Zeltser, leader of the security consulting team ...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Mon, 8 Mar 2010 20:01:03 -0500
ntop is a network traffic probe that shows the network usage, similar to what the popular top Unix command does.
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 12:30:39 -0500
Tor is a toolset for a wide range of organizations and people that want to improve their safety and security on the Internet. Using Tor can help you anonymize web browsing and publishing, instant mess...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves one publicly disclosed and one privately reported vulnerability in Microsoft Windows. The vulnerabilities could allow elevation of privilege if an attacker logged on to the system and then ran a specially crafted application. To exploit either vulnerability, an attacker must have valid logon credentials and be able to log on locally. The vulnerabilities could not be exploited remotely or by anonymous users.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Networking and security firm offers commercial support for Quaresso, a startup offering a new spin on the armored browser with remote support to shore up the last mile.

Source: ()
| |  | |  |
 | |  | |
2009-09-17
Popular apps need better patching, says report
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 28 Apr 2009 07:00:00 GMT
Basic definition of botnets, and links to how to recognize and avoid computer infection. Keep your computer from becoming a zombie by installing a firewall, keeping your antivirus, antispyware, and software up-to-date
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 11:59:51 -0500
Proofpoint announced findings from a survey of 122 RSA Conference 2010 attendees, conducted at its exposition booth, about email security trends.
Key findings from the survey include:
Spear p...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Sun, 7 Mar 2010 07:57:21 -0500
Shorewall is a high-level tool for configuring Netfilter. You describe your firewall/gateway requirements using entries in a set of configuration files. Shorewall reads those configuration files and w...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Sun, 7 Mar 2010 07:48:54 -0500
Master Voyager is especially designed to create protected DVD/CD discs and USB Memory Sticks. It creates protected areas on the media and it is needed to enter password to see protected contents. In a...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service if a specially crafted ticket renewal request is sent to the Windows Kerberos domain from an authenticated user on a trusted non-Windows Kerberos realm. The denial of service could persist until the domain controller is restarted.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Latest security update addresses multiple flaws in Apache HTTP Web Server, addressing vulnerabilities such as the SSL threat TLS renegotiation threat.

Source: ()
| |  | |  |
 | |  | |
2010-02-02
Google offers bounty on browser bugs
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Mon, 27 Apr 2009 07:00:00 GMT
Basic definition of spam and how to prevent it, recognize identity theft spams, and avoid phishing.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 11:50:24 -0500
TeamViewer released TeamViewer and TeamViewer Pro iPhone. Designed for iPhone or iPod touch, from versions 2.2.1 and newer, the applications access or control remote Windows or Mac computers located a...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 2 Mar 2010 19:59:45 -0500
segatex is a tool to configure SELinux policy with the help of a GUI. At the push of buttons, it can generate a .te file in the /root/segatex directory. You can then edit your .te file, make a module,...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Thu, 4 Mar 2010 04:22:05 -0500
SimpleAuthority is a free Certification Authority (CA). It generates keys and certificates that provide cryptographic digital identities for a community of people and/or computer servers. These identi...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Microsoft DirectShow. The vulnerability could allow remote code execution if a user opened a specially crafted AVI file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
U.S. Computer Emergency Readiness Team issues warning that software associated with Energizer DUO USB battery charger contains a Trojan that makes users' PC susceptible to hackers.

Source: ()
| |  | |  |
 | |  | |
2010-01-28
Cyberattacks from U.S. "greatest concern"
>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your
Enterprise RP rollout gets an A .
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Thu, 16 Apr 2009 07:00:00 GMT
Basic definition of internet filters, and links to where to download Microsoft filtering services and programs.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 10:57:30 -0500
Following yesterday's news about the Energizer DUO USB recharger that infects PCs with a Trojan, here is another piece of equipment whose software comes bundled with malware: the new Vodafone HTC Magi...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 2 Mar 2010 19:58:21 -0500
NuFW is an authenticating firewall. It adds user-based filtering to Netfilter, the state of the art IP filtering layer from the Linux kernel. Its exclusive algorithm allows authenticated filtering eve...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Thu, 4 Mar 2010 03:57:33 -0500
REFOG Personal Monitor integrates several tools to ensure thorough monitoring of computer systems.
It keeps track of every word or keystroke command entered by a user. It also monitors the Clipboar...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves several privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow remote code execution if an attacker created a specially crafted SMB packet and sent the packet to an affected system. Firewall best practices and standard default firewall configurations can help protect networks from attacks originating outside the enterprise perimeter that would attempt to exploit these vulnerabilities.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Jim Bidzos says the Internet security industry has a long way to go.

Source: ()
| |  | |  |
 | |  | |
2010-01-21
Microsoft patches as fraudsters target IE flaw
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Thu, 16 Apr 2009 07:00:00 GMT
See a basic definition of identity theft and links to in-depth information about how to recognize and prevent it.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 09:30:38 -0500
The relative easiness of setting up a mobile botnet of nearly 8,000 phones has been demonstrated by Derek Brown and Daniel Tijerina at this year's edition of the RSA Conference in San Francisco.
...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Mon, 1 Mar 2010 18:22:54 -0500
The netfilter/iptables project is the Linux 2.4.x / 2.5.x firewalling subsystem. It delivers you the functionality of packet filtering (stateless or stateful), all different kinds of NAT (Network Addr...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Thu, 4 Mar 2010 03:56:18 -0500
CryptoExpert uses an on-the-fly encryption system to encrypt your files and keeps the data hidden in virtual drives. When you start the application and enter the password, it will mount the drives int...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Microsoft Windows Client/Server Run-time Subsystem (CSRSS). The vulnerability could allow elevation of privilege if an attacker logs on to the system and starts a specially crafted application designed to continue running after the attacker logs out. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability. The vulnerability could not be exploited by anonymous users.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
The latest survey by the Anti Phishing Working Group shows that organized phishing syndicates are working all the angles to get their hands on the most valuable data.

Source: ()
| |  | |  |
 | |  | |
2010-01-18
Attack on IE 0-day refined by researchers
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 14 Apr 2009 07:00:00 GMT
Learn about and download the latest computer security updates for March 2009. Read tips on protecting your computer by using anti-spyware and anti-spam programs.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Tue, 9 Mar 2010 08:12:49 -0500
A highly critical buffer overflow vulnerability affecting the Opera browser has been discovered by Marcin Ressel of Secunia:
The vulnerability is caused due to an error when processing HTTP respons...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Fri, 26 Feb 2010 14:35:39 -0500
John the Ripper is a fast password cracker. Its primary purpose is to detect weak Unix passwords. Besides several crypt password hash types most commonly found on various Unix flavors, supported out o...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Sun, 28 Feb 2010 17:19:49 -0500
Data Guardian is a secure database application with up to 448-bits of Blowfish encryption regardless of how sensitive your data is. Create multiple databases in Data Guardian for a variety of purpos...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Windows Server 2008 Hyper-V and Windows Server 2008 R2 Hyper-V. The vulnerability could allow denial of service if a malformed sequence of machine instructions is run by an authenticated user in one of the guest virtual machines hosted by the Hyper-V server. An attacker must have valid logon credentials and be able to log on locally into a guest virtual machine to exploit this vulnerability. The vulnerability could not be exploited remotely or by anonymous users.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
In an address at the annual RSA show, FBI Director Robert Mueller outlines challenges the agency has in fighting cyber crime, seeks broader partnerships with private-sector firms.

Source: ()
| |  | |  |
 | |  | |
2010-03-04
Monster botnet held 800,000 people's details
>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your
Enterprise RP rollout gets an A .
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Wed, 08 Apr 2009 07:00:00 GMT
Learn about the Conficker worm, how it spreads, and how to remove it from your computer if you're infected.
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Mon, 8 Mar 2010 16:40:50 -0500
A serious vulnerability in Apache's HTTP web server that enables the attacker to gain remote access to the server and total control of a database, has been discovered by Brett Gervasoni, a researcher ...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Thu, 25 Feb 2010 17:15:01 -0500
AIDE (Advanced Intrusion Detection Environment) is a free replacement for Tripwire. It does the same things as the semi-free Tripwire and more.
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Sun, 28 Feb 2010 17:12:35 -0500
CCleaner (Crap Cleaner) is a freeware system optimisation tool.
CCleaner removes unused and temporary files from your system - allowing it to run faster, more efficiently and giving you more HDD sp...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves four privately reported vulnerabilities in Microsoft Windows. The most severe of these vulnerabilities could allow remote code execution if specially crafted packets are sent to a computer with IPv6 enabled. An attacker could try to exploit the vulnerability by creating specially crafted ICMPv6 packets and sending the packets to a system with IPv6 enabled. This vulnerability may only be exploited if the attacker is on-link.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Despite the lousy macroeconomic climate and tighter IT budgets, most information technology workers charged with protecting data networks got a raise last year and will likely get another this year.

Source: ()
| |  | |  |
 | |  | |
2010-03-04
Google: 'no timetable' on China talks
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Thu, 26 Mar 2009 07:00:00 GMT
Find information on how to prevent computer worms and viruses and to improve your computer's security. Follow some best practices to keep your system up-to-date by maintaining an up-to-date antivirus software subscription
Source: Recent Security at Home information (Keep up to date with the ten most recent syndicated articles from Microsoft Security at Home.)
| |  | |  |
 | |  | |
Mon, 8 Mar 2010 11:15:27 -0500
The human factor is the weakest link of the security chain - this statement has been said and written so many times, that is starting to become a cliche'. Even so, it doesn't make it less true.
It...
Source: Help Net Security - Security World (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Thu, 25 Feb 2010 17:14:44 -0500
MIMEDefang is a flexible MIME email scanner designed to protect Windows clients from viruses. However, it can do many other kinds of mail processing, such as replacing parts of messages with URLs, add...
Source: Help Net Security - Linux Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Sat, 27 Feb 2010 17:54:12 -0500
Identity Finder searches your computer for personally identifiable information and prompts you to either securely delete or encrypt the data it uncovers.
It uncovers multiple variations of specifi...
Source: Help Net Security - Windows Software (Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update addresses a privately reported vulnerability for Microsoft software. This security update is rated Critical for all supported editions of Microsoft Windows 2000 and Windows XP, Important for all supported editions of Windows Vista and Windows 7, Moderate for all supported editions of Windows Server 2003, and Low for all supported editions of Windows Server 2008 and Windows Server 2008 R2.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Department of Homeland Security Secretary Janet Napolitano told security experts and media that while many great ideas have been suggested, less talk and more action is needed to safeguard government and corporate networks.

Source: ()
| |  | |  |
 | |  | |
2010-02-26
Latvian hacker tweets hard on banking whistle
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Microsoft Windows 2000, Windows XP, and Windows Server 2003. Other versions of Windows are not impacted by this security update. The vulnerability could allow remote code execution if an application, such as a Web browser, passes specially crafted data to the ShellExecute API function through the Windows Shell Handler.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Security experts are torn between just how far the government and the private sector should go to protect critical data from cyber criminals without violating individual rights.

Source: ()
| |  | |  |
 | |  | |
2010-02-25
MS uses court order to take out Waledac botnet
>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your
Enterprise RP rollout gets an A .
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow remote code execution if an attacker sent a specially crafted SMB response to a client-initiated SMB request. To exploit these vulnerabilities, an attacker must convince the user to initiate an SMB connection to a malicious SMB server.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
The open source ClamAV project is setting its sights on buggy Windows desktop installations after making a name for itself safeguarding e-mail gateways.

Source: ()
| |  | |  |
 | |  | |
Enterprise Intrusion Analysis, Part One
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Moderate - This security update resolves a privately reported vulnerability in Microsoft Paint. The vulnerability could allow remote code execution if a user viewed a specially crafted JPEG image file using Microsoft Paint. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
"Mariposa" gained access to information in more than 13 million PCs worldwide, making it one of the most destructive botnets in history, though authorities say that the operators weren't sophisticated hackers.

Source: ()
| |  | |  |
 | |  | |
Responding to a Brute Force SSH Attack
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves six privately reported vulnerabilities in Microsoft Office PowerPoint. The vulnerabilities could allow remote code execution if a user opens a specially crafted PowerPoint file. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
At RSA, most heads are in the cloud with everyone from Symantec to IBM delivering new cloud-based security solutions.

Source: ()
| |  | |  |
 | |  | |
Data Recovery on Linux and ext3
>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your
Enterprise RP rollout gets an A .
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 09 Feb 2010 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Microsoft Office that could allow remote code execution if a user opens a specially crafted Office file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Three Spanish hackers believed to be responsible for using a botnet to steal log-in credentials and customer banking data were arrested following a multinational investigation.

Source: ()
| |  | |  |
 | |  | |
WiMax: Just Another Security Challenge?
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Thu, 21 Jan 2010 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves seven privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer. The more severe vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Study finds porous data protection policies and technologies are putting millions of customers -- and their assets -- at risk.

Source: ()
| |  | |  |
 | |  | |
Time to Squish SQL Injection
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 12 Jan 2010 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user viewed content rendered in a specially crafted Embedded OpenType (EOT) font in client applications that can render EOT fonts, such as Microsoft Internet Explorer, Microsoft Office PowerPoint, or Microsoft Office Word. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs, view, change, or delete data, or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
White House cyber coordinator Howard Schmidt makes news at the RSA show, announcing the declassification of the cybersecurity plan developed two years ago.

Source: ()
| |  | |  |
 | |  | |
Lazy Workers May Be Deemed Hackers
>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your
Enterprise RP rollout gets an A .
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 08 Dec 2009 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Microsoft Office Project. The vulnerability could allow remote code execution if a user opens a specially crafted Project file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
At RSA, Microsoft's Scott Charney compares infected PCs' spamming to secondhand smoke -- and suggests they also be banned from the Net.

Source: ()
| |  | |  |
 | |  | |
The Scale of Security
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 08 Dec 2009 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Microsoft WordPad and Microsoft Office text converters. The vulnerability could allow remote code execution if a specially crafted Word 97 file is opened in WordPad or Microsoft Office Word. An attacker who successfully exploited this vulnerability could gain the same privileges as the user. Users whose accounts are configured to have fewer privileges on the system could be less impacted than users who operate with administrative privileges.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
The latest patch from Microsoft is designed to address a malware distribution that affected some users of Windows XP.

Source: ()
| |  | |  |
 | |  | |
Hacker-Tool Law Still Does Little
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 08 Dec 2009 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves four privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer. The vulnerabilities could allow remote code execution if a user views a specially crafted Web page using Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. An ActiveX control built with Microsoft Active Template Library (ATL) headers could also allow remote code execution; for more information about this issue, see the subsection, Frequently Asked Questions (FAQ) Related to This Security Update, in this section.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
News, Infocus, Columns, Vulnerabilities, Bugtraq ...
Source: SecurityFocus News (SecurityFocus is the most comprehensive and trusted source of security
information on the Internet. We are a vendor-neutral site that provides
objective, timely and comprehensive security information to all members of
the security community, from end users, security hobbyists and network
administrators to security consultants, IT Managers, CIOs and CSOs.)
| |  | |  |
 | |  | |
Tue, 08 Dec 2009 08:00:00 GMT
Bulletin Severity Rating:Critical - This security update resolves two privately reported vulnerabilities in Microsoft Windows. The more severe of these vulnerabilities could allow remote code execution if messages received by the Internet Authentication Service server are copied incorrectly into memory when handling PEAP authentication attempts. On Windows Server 2008, the Internet Authentication Service is replaced by Network Policy Server (NPS). An attacker who successfully exploited either of these vulnerabilities could take complete control of an affected system. Servers using Internet Authentication Service or Network Policy Server are only affected when using PEAP with MS-CHAP v2 authentication.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Tue, 08 Dec 2009 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves two privately reported vulnerabilities in Microsoft Windows. The more severe of these vulnerabilities could allow remote code execution if an attacker sent a specially crafted HTTP request to an ADFS-enabled Web server. An attacker would need to be an authenticated user in order to exploit either of these vulnerabilities.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Tue, 08 Dec 2009 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow a denial of service if a remote, authenticated attacker, while communicating through Internet Protocol security (IPsec), sends a specially crafted ISAKMP message to the Local Security Authority Subsystem Service (LSASS) on an affected system.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Tue, 10 Nov 2009 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
 | |  | |
Tue, 10 Nov 2009 08:00:00 GMT
Bulletin Severity Rating:Important - This security update resolves several privately reported vulnerabilities in Microsoft Office Excel. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Source: Microsoft Security Bulletins (Microsoft Security Bulletins)
| |  | |  |
|
|
|