Sponsored White Papers, Webcasts, and Downloads
ZDNet Resources
- Patch Tuesday: 7 bulletins, 18 flaws, all critical
- Its an all-critical Patch Tuesday.Microsoft has just released seven advisories -- all rated critical -- with patches for at least 18 vulnerabilities affecting the Windows operating system, the widely deployed Office productivity suite and the dominant Internet Explorer browser.Five of the 18 vulnerabilities affect Windows Vista.The batch of updates includes...
- Tags: Apple, Botnets, Browsers, Data theft, Exploit code, Hackers, Metasploit, Microsoft, Open source, Patch Watch, Pen testing, Responsible disclosure, Spam and Phishing, Spyware and Adware, Uncategorized, Viruses and Worms, Vulnerability research, Windows Vista, Zero-day attacks
- Blog posts 2007-05-08
- Botnet herders pounce on Windows DNS RPC flaw
- Online criminals have pounced on the unpatched Windows DNS Server service vulnerability, using the security hole to seed and replenish for-profit botnets.The latest twist in the ongoing attacks comes less than a week after Microsofts pre-patch advisory provided clues for hackers to write and release detailed exploit code.Anti-virus researchers have...
- Tags: Zero-day attacks, Vulnerability research, Viruses and Worms, Uncategorized, Symantec, Spyware and Adware, Spam and Phishing, Rootkits, Responsible disclosure, Pen testing, Patch Watch, Microsoft, Metasploit, Hackers, Exploit code, Data theft, Browsers, Botnets
- Blog posts 2007-04-17
- Oracle Patch Day: 37 flaws fixed
- Oracle has released its quarterly "critical patch update" with fixes for a total of 37 security holes in its database and application server products.The April 2007 CPU addresses a wide range of vulnerabilities affecting the following product lines:* Oracle Database (14 flaws, including one with a CVSS base score of...
- Tags: Vulnerability research, Pen testing, Uncategorized, Responsible disclosure, Patch Watch, Oracle, Metasploit, Hackers, Exploit code, Data theft
- Blog posts 2007-04-17
- How to turn off RPC management of DNS on a large scale
- In an advisory issued earlier today, Microsoft issued several workarounds/mitigations for the Windows DNS server service zero-day attacks, including a recommendation that network admins completely disable remote management of RPC capability for DNS Servers.The recommendation included instructions on registry key edits but if youre in charge of a large-scale Windows...
- Tags: Zero-day attacks, Uncategorized, Responsible disclosure, Pen testing, Patch Watch, Microsoft, Metasploit, Hackers, Exploit code, Data theft, Browsers
- Blog posts 2007-04-13
- Microsoft: Beware of .HLP files
- Microsoft is urging Windows users to be very careful when opening ".hlp" attachments.The warning follows the release of exploit code for possible new zero-day bug in the Microsoft Help subsystem, which is used to display files with the ".hlp" extension. The proof-of-concept code, posted at Milw0rm.com, provides instructions on how...
- Tags: Zero-day attacks, Viruses and Worms, Spam and Phishing, Rootkits, Pen testing, Patch Watch, Microsoft, Hackers, Exploit code, Data theft, Vulnerability research, Uncategorized, Spyware and Adware, Responsible disclosure, Browsers
- Blog posts 2007-04-11
- Microsoft knew of Windows .ANI flaw since December 2006
- A private security research outfit says it notified Microsoft about the animated cursor (.ani) code execution vulnerability since December 2006, a full four months ahead of yesterday's discovery of Internet Explorer drive-by attacks.According to Alexander Sotirov, chief reverse engineer at Determina, his research team discovered and reported the flaw to...
- Tags: Zero-day attacks, Windows Vista, Vulnerability research, Uncategorized, Spyware and Adware, Spam and Phishing, Rootkits, Responsible disclosure, Pen testing, Patch Watch, Mozilla, Microsoft, Hackers, Firefox, Exploit code, Data theft, Browsers, Botnets
- Blog posts 2007-03-30
- Black Hat RFID hacking demo threatened
- Another Black Hat conference, another vulnerability disclosure debate.IOActive's Chris Paget's plan to explain why RFID technology is "insecure and untrustworthy" has run into a legal stumbling block after secure card maker HID Corp. raised objections in a letter that claims possible patent infringement.InfoWorld's Paul Roberts is reporting that HID sent...
- Tags: Wi-Fi security, Pen testing, Black Hat, Exploit code, Responsible disclosure, Punditocracy, Cisco, Vulnerability research, Oracle, Hackers, Zero-day attacks, Uncategorized
- Blog posts 2007-02-27
- Symantec: Vista's UAC prompts can't always be trusted
- Microsofts implementation of the UAC user account control mechanism in Windows Vista continues to take a beating from security researchers. Less than a week after Polish hacker Joanna Rutkowska raised an alert for design -- and implementation -- bugs in the default no-admin component, a member of Symantecs Advanced...
- Tags: Black Hat, Data theft, Exploit code, Hackers, Microsoft, Pen testing, Punditocracy, Responsible disclosure, Uncategorized, Vulnerability research, Windows Vista
- Blog posts 2007-02-20
- Sun rushes out patch for Solaris Telnet exploit
- Sun Microsystems has rushed out patches to fix a code execution hole in the Solaris 10/11 telnet daemon (in.telnetd). The companys fix comes just days after a hacker known as "Kingcope" went public with details of the vulnerability, which allows a remote attacker to bypass the Sun Solaris telnet...
- Tags: Exploit code, Hackers, Patch Watch, Pen testing, Responsible disclosure, Uncategorized, Viruses and Worms, Vulnerability research
- Blog posts 2007-02-13
- MS Patch Tuesday: 12 bulletins, 6 critical, 20 vulnerabilities
- Microsoft's Patch Tuesday train rumbled into security central with a full load today: 12 bulletins with patches for at least 20 vulnerabilities in a wide range of widely used software products.Six of the 12 bulletins are rated "critical," Redmond's highest severity rating.As expected, there are fixes for gaping holes...
- Tags: Botnets, Browsers, Data theft, Exploit code, Hackers, Microsoft, Patch Watch, Uncategorized, Viruses and Worms, Vulnerability research, Zero-day attacks
- Blog posts 2007-02-13
Additional Resources
- We wanna be more like Apple - Microsoft and Ubuntu get ready to fire up the photocopiers!
- We wanna be more like Apple - Microsoft and Ubuntu get ready to fire up the photocopiers!Linux has no marketing.Market share is directly related to marketing. When is the last time anyone saw a Linux commercial?Isn't that the point?You say that Canonical needs to listen more to the "customers" but...
- Tags: Copiers, Operating systems, Desktops, Notebooks, Market-Share, Apple Inc., Ubuntu, wanna-be, Microsoft Corp., photocopier, Linux
- Discussion threads 2008-07-24
- Don't doubt Deputy Dan
- Don't doubt Deputy Danfound articleI found this related article Security Snafu Puts Dangerous Internet Flaw into Hackers’ Hands
- Tags: Deputy Dan
- Discussion threads 2008-07-24
- Is open source hurt by piracy?
- Is open source hurt by piracy?Only hurts Open Source if proprietary is seen as "better"Sounds like what you are saying is for example, that the competition in the office suite space is Open Office Vs MS Office Vs pirated MS Office. Those willing to pirate see both Open Office...
- Tags: Operating systems, open source, piracy, OpenOffice, Microsoft Office, Microsoft Corp., Linux, software
- Discussion threads 2008-07-24
- Georgia President's web site under DDoS attack from Russian hackers
- Georgia President's web site under DDoS attack from Russian hackersOh, its about the *another* Georgia.Is about the ex-commie Georgia and not the Ted Turner Birthplace.Anyways, a ddos attack can be done even for a single person, so there are not a real point to escalate this conflict in a full...
- Tags: Web site development, distributed denial of service, Russian Hackers, Web site, Web
- Discussion threads 2008-07-23
- News to know: Yahoo; VMware; Apple; DNS vulnerability
- Notable headlines: Ryan Naraine: Vulnerability disclosure gone awry: Understanding the DNS debacle RIM ships fix for BlackBerry code execution bug Dancho Danchev: Georgia President's web site under DDoS attack from Russian hackers 75% of online banking sites found vulnerable to security design...
- Tags: Apple iPhone, Google Inc., Larry Dignan, DNS, Yahoo! Inc., Vulnerability, Dana Blankenhorn, Health Care, Apple Inc., VMware Inc., App Store, Banking, Vertical Industries, Domain Names, Benefits, Healthcare, Security, Financial Services, Enterprise Software, Software, Internet, Human Resources
- Blog posts 2008-07-23
- (Photos: Tracking Last HOPE hackers)
- (Photos: Tracking Last HOPE hackers)Get your badge and stick it in the Microwave first!1. Get your badge and stick it in the Microwave first! Not long enough to melt the badge but just enough to zap the RFID electronics.2. If you require the RFID to work to...
- Tags: SECURITY, badge, Tracking Last HOPE, RFID, noise level, photograph
- Discussion threads 2008-07-22
- Georgia President's web site under DDoS attack from Russian hackers
- From Russia with political love? It appears so according to a deeper analysis of the command and control servers used by the attackers. During the weekend, Georgia President's web site was under a distributed denial of service attack which managed to take it offline for a couple of hours. The...
- Tags: Web, Russia, Server, Web Site, Hacker, Distributed Denial Of Service, Georgia, Attack, Russian, Shadowserver, C&C, C&C Server, Web Site Development, Security, Internet, Dancho Danchev
- Blog posts 2008-07-22
- News to know: Apple, Crapware; Icahn and Yahoo; Brocade
- Notable headlines: Larry Dignan: Apple's Mac shipments surge; Lowballs on outlook; Jobs health worries Adrian Kingsley-Hughes: Apple reports record Q3 08 Does Apple need to announce a post Steve Jobs plan? Dennis Howlett: Apple chaos theory Jason O'Grady: Apple Q3 2008...
- Tags: Apple iPhone, Sony Corp., Facebook, Larry Dignan, Yahoo! Inc., Brocade Communications Systems Inc., Apple Inc., Mice, Utility Computing, 3G, Open Source, Hardware, Peripherals, Cellular Phones, Consumer Electronics, Personal Technology
- Blog posts 2008-07-22
- Photos: Tracking Last HOPE hackers
- The New York conference, where attendees are tracked via RFID, attracts hacker celebrities including the guys behind the phone phreaker movement and the TV-B-Gone remote control. by CNET News.com
- Tags: Photograph, Hacker, RFID, Hacking, Wireless, Security, Biometrics, CNET News.com
- Image galleries 2008-07-21
- Kaspersky's Malaysian site hacked by Turkish hacker
- Kaspersky's Malaysian site hacked by Turkish hackerHackers Gone Wild?Hey - you beat me to the story - but I've been working on a piece on these guys as well. There is a very nationalistic thread through all the hacks they've done, whether it's the NeTDevilz, or the AyYildiz Team....
- Tags: SECURITY, Malaysian site, Kaspersky, Turkish Hacker, Turkish
- Discussion threads 2008-07-21
- << Previous
- page 1 of 1
- Next >>
White Papers and Webcasts