Sponsored White Papers, Webcasts, and Downloads
ZDNet Dictionary Definition
- CVE
- Common Vulnerabilities and Exposures A list of information security exposures and vulnerabilities sponsored by US-CERT and maintained by the MITRE Corporation. The CVE mission is to provide standard...
- Full CVE Definition >>
ZDNet Resources
- Mac versus Windows vulnerability stats questioned
- Mac versus Windows vulnerability stats questionedExactly, it was a poor comparison...... and no conclusion can be reached either way. I realize that the authoring experts are writing in a Blog, yet I assume there will be at least a level of professional research, wanting to delve a little deeper than...
- Tags: Desktops, Operating systems, Windows vulnerability stat, Apple Macintosh, stat, CVE, Microsoft Windows, Apple Inc.
- Discussion threads 2007-12-20
- Better Mac OS X Security Numbers
- Some things just aren't credible on their face, so when George Ou mined Secunia's security advisories for vulnerability data to prove that Mac OS X is less secure than Windows/XP, I had an immediate problem. According to his research Secunia's security advisories since January 2004 cover about 238 serious Mac...
- Tags: Apple Mac OS, vulnerability
- Blog posts 2006-03-02
Additional Resources
- Major online ad site hacked, serving up exploit cocktail
- One more reason to use FirefoxUse Firefox with AdBlock Plus and a simple filter of *media-servers.net* and the problem is solved.I am not sure that they are "major" as I did not have a filter for them.AgreedYet, I bet the web hosts will STILL complain about it. RE: Major online...
- Tags: Cyberthreats, Spyware, adware & malware, Viruses and worms, Confession, online advertising, Microsoft Windows, Ryan
- Discussion threads 2009-11-10
- Gawker Media tricked into featuring malicious Suzuki ads
- A group of cybercriminals have successfully managed to trick Gawker's ad sales team into featuring malicious ads serving Adobe exploits (CVE-2008-2992; CVE-2009-0927) and scareware, by impersonating a legitimate ad agency inquiring about an upcoming Suzuki ad campaign. According to Gawker Media, the malware distributors were one of...
- Tags: Advertisement, Gawker Media, Suzuki, Dancho Danchev
- Blog posts 2009-10-27
- Sun patches 'critical' StarOffice/StarSuite flaw
- Sun patches Openoffice.org with 3.1.1The security problem in "CVE-2009-0200 / CVE-2009-0201: Manipulated Microsoft Word files can lead to heap overflows and arbitrary code execution" was patched in Openoffice.org in version 3.1.1.http://www.openoffice.org/security/bulletin.htmlMikeOpen_Office is FREEIf you run a Linux distro with Open_Office you are immune from 99.99% of this Windows silliness....So, Linux...
- Tags: Operating systems, UNIX, Microsoft Windows, OPEN SOURCE, PRODUCTIVITY, Cyberthreats, Linux, Sun Microsystems Inc., patch management
- Discussion threads 2009-09-18
- Adobe plugs critical ColdFusion, JRun vulnerabilities
- Adobe's never-ending run on the security treadmill hit a new gear this week with the release of patches to cover serious vulnerabilities in the ColdFusion and JRun web design and development platforms. The patches, rated critical, cover a total of 7 vulnerabilities, some of which "could lead...
- Tags: Adobe Systems Inc., Macromedia JRun, Allaire ColdFusion, Vulnerability, XSS, Cross-site Scripting Vulnerability, Development Tools, Software Development, Software/Web Development, Ryan Naraine
- Blog posts 2009-08-18
- Highly exploitable Linux kernel bug found, patched
- BWAHAHAHAHHAHAHAHA! I have been saying for years that linux is insecure and here we have the proof. How do you linux fanboys feel now knowing that I was right and you were wrong? LOL!!! And its been there for years! Don't forget to start your compilers,...
- Tags: UNIX, OPEN SOURCE, Operating systems, SECURITY, Linux kernel, Linux, vulnerability
- Discussion threads 2009-08-17
- Apple plugs code execution, phishing holes in Safari browser
- Apple has released Safari 4.0.3 to fix at least six security vulnerabilities that put Mac and Windows users at risk of hacker attacks. The update is considered highly-critical and should be immediately applied on both Windows and Mac systems because of the risk of information disclosure, phishing...
- Tags: Apple Macintosh, Apple Safari, Microsoft Windows Vista, Apple Inc., Web Site, Web Browser, Arbitrary Code Execution, Application Termination, Browser Version, Phishing, Microsoft Windows, Apple Mac OS X, Microsoft Windows Vista (Longhorn), Apple Mac OS, Microsoft Windows XP, Web Site Development, Cyberthreats, Operating Systems, Security, Spam And Phishing, Software, Internet, Ryan Naraine
- Blog posts 2009-08-12
- Apple warns of Mac attack risk via image files
- Apple today warned that opening or viewing image files could lead to remote code execution attacks against Mac OS X users. In an update that contains fixes for a total of 19 documented vulnerabilities, Apple said malicious hackers could rig PNG Portable Network Graphics and other images...
- Tags: Apple Macintosh, Apple Inc., Arbitrary Code Execution, Image, PNG, Attack, Application Termination, OpenEXR, Ryan Naraine
- Blog posts 2009-08-05
- Apple: GarageBand leaks user data to advertisers
- Apple today warned that its GarageBand software is leaking users' Web activity to third parties and advertisers. The company shipped GarageBand 5.1 to plug the hole and advise users to tweak their Safari browser preferences to avoid data leakage. Here's the relevant information from Apple's advisory: ...
- Tags: Apple Safari, Apple Inc., User Data, GarageBand, Advertiser, GarageBand 5.1, Default Preference, Channel Management, Marketing, Ryan Naraine
- Blog posts 2009-08-03
- Apple patches iPhone SMS flaw
- Apple has plugged an SMS flaw that would enable an attacker to take complete control over an iPhone. Researchers Charlie Miller and Collin Mulliner said at the Black Hat security conference that an attacker could use the SMS exploit to make calls, swipe data and send text...
- Tags: Apple iPhone, Flaw, Apple Inc., SMS, Text Messaging/SMS/MMS, Telephony, Cellular Phones, Consumer Electronics, Personal Technology, Online Communications, Networking, Larry Dignan
- Blog posts 2009-07-31
- Apple plugs dangerous Safari security holes
- Apple has released Safari 4.0.2 to fix a pair of security flaws that could lead to cross-site scripting or remote code execution attacks. The vulnerabilities affect Safari for Windows XP and Vista and Mac OS X. Here are the raw details: ...
- Tags: Apple Safari, XSS, Apple Inc., Safari 4.0.2, Security, Ryan Naraine
- Blog posts 2009-07-08
- Critical Adobe Shockwave flaw affects millions
- Adobe's Shockwave Player contains a critical vulnerability that could be exploited by remote hackers to take complete control of Windows computers, according to a warning from the software maker. The flaw affects Adobe Shockwave Player 11.5.0.596 and earlier versions. Details from Adobe's advisory: ...
- Tags: Adobe Systems Inc., Shockwave, Flaw, Shockwave Player, Adobe Shockwave Player, Security, Ryan Naraine
- Blog posts 2009-06-24
- Adobe patches 13 critical Reader, Acrobat vulnerabilities
- Adobe has issued its first ever scheduled quarterly update for its Reader/Acrobat product line, a mega-patch covering 13 documented security vulnerabilities. The patches address "critical vulnerabilities" in Adobe Reader 9.1.1 and Acrobat 9.1.1 and earlier versions. "These vulnerabilities would cause the application to crash and could potentially...
- Tags: Adobe Systems Inc., Adobe Acrobat, Vulnerability, Update, Arbitrary Code Execution, Memory Corruption Vulnerability, Security, Ryan Naraine
- Blog posts 2009-06-09
- Microsoft patches 31 Windows, IE, Office security holes
- Microsoft patches 31 Windows, IE, Office security holesWhat this article doesn't mention...How many of these 31 "security holes" are mitigated by configuring your server the way Microsoft recommends? Beyond trust released a good report based on last year?s stats on Microsoft Vulnerabilities and what percent of vulnerabilities are mitigated...
- Tags: Web browsers, Microsoft Windows Vista (Longhorn), Microsoft Office, Microsoft Corp., Microsoft Patches, security, Print Spooler
- Discussion threads 2009-06-09
- Apple Safari jumbo patch: 50 vulnerabilities fixed
- Apple Safari jumbo patch: 50 vulnerabilities fixedOf interestAdvisory here:http://support.apple.com/kb/HT3613TippingPoint's Zero Day Initiative credited with three CVE's.The big headline one exploiting SVG animation elements:CVE-ID: CVE-2009-1709Anyone want to beton which vendor will take the top spot of most vulnerable 2009? With this speed Apple is clearly going for the gold.The most...
- Tags: vulnerability, Apple Inc., Apple Safari
- Discussion threads 2009-06-08
- Apple Safari jumbo patch: 50+ vulnerabilities fixed
- Apple has shipped a whopper of a Safari browser update to fix more than 50 vulnerabilities, some rated extremely critical. The latest fixes, available in the new Safari 4.0, corrects a wide range of code execution and denial-of-service vulnerabilities and even comes with a fix for the...
- Tags: Apple Safari, Vulnerability, Apple Inc., Web Site, Web Site Development, Web Technology, Security, Internet, Ryan Naraine
- Blog posts 2009-06-08
- Apple plugs gaping QuickTime security holes
- Apple today released QuickTime 7.6.2 with fixes for a variety of security vulnerabilities, some of which could lead to arbitrary code execution attacks. The update, available for Mac OS X, Windows XP and Windows Vista, covers a total of 10 documented vulnerabilities that could be exploited via...
- Tags: Security, Apple QuickTime, Movie, Apple Inc., Arbitrary Code Execution, Buffer-overflow, Application Termination, Digital Music, Digital Media, Personal Technology, Consumer Electronics, Ryan Naraine
- Blog posts 2009-06-01
- Adobe plans quarterly Patch Day for Reader/Acrobat fixes
- Borrowing a few pages from Microsoft's playbook, Adobe today announced plans for a quarterly Patch Day for its Reader/Acrobat product lines and new initiatives to beef up its code hardening and security response processes. Starting this summer, Adobe Reader and Acrobat security patches will be released on...
- Tags: Adobe Systems Inc., Adobe SPLC, Security, Ryan Naraine
- Blog posts 2009-05-20
- Mac OS X vulnerable to 6-month old Java flaw
- Attention Mac OS X users: Turn Java off immediately or you could be at high risk of malicious code execution attacks. Tired of waiting for a patch from Apple for a Java flaw that was fixed upstream six months ago, Mac developer Landon Fuller (of Month of...
- Tags: Malicious Code, Apple Macintosh, Java Applet, Flaw, Vulnerability, Apple Inc., Applet, Landon Fuller, CVE-2008-5353, Apple Mac OS X, Apple Mac OS, Java, Programming Languages, Operating Systems, Security, Software, Software Development, Software/Web Development, Ryan Naraine
- Blog posts 2009-05-20
- << Previous
- page 1 of 1
- Next >>
Enterprise Applications
-
Check out some of the easiest and most powerful ways to boost productivity
while saving money on your application infrastructure. See ZDNet's
comprehensive
Enterprise Application
resource center, now!
- New Online Dashboard
-
-
Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems.
Oracle Topline
-
White Papers and Webcasts