Sponsored White Papers, Webcasts, and Downloads
Additional Resources
- 20,000 sites hit with drive-by attack code
- 20,000 sites hit with drive-by attack codeSo what are some of the sites?Somewhere there should be a list full or partial by popularity of the sites that were hit, shouldn't there? It doesn't do a whole lot of good to just read "20,000 sites hit..." without knowing what they are!...
- Tags: SECURITY, attack
- Discussion threads 2009-06-01
- 20,000 sites hit with drive-by attack code
- Hackers have broken into more than 20,000 legitimate Web sites to plant malicious code to be used in drive-by malware attacks. According to a warning from Websense Security Labs, the sites have been discovered to be injected with malicious JavaScript, obfuscated code that leads to an active...
- Tags: Malware, Attack, Exploit Site, Spyware, Adware & Malware, Cyberthreats, Security, Viruses And Worms, Ryan Naraine
- Blog posts 2009-06-01
- Mac OS X vulnerable to 6-month old Java flaw
- Attention Mac OS X users:Â Turn Java off immediately or you could be at high risk of malicious code execution attacks. Tired of waiting for a patch from Apple for a Java flaw that was fixed upstream six months ago, Mac developer Landon Fuller (of Month of...
- Tags: Malicious Code, Apple Macintosh, Java Applet, Flaw, Vulnerability, Apple Inc., Applet, Landon Fuller, CVE-2008-5353, Apple Mac OS X, Apple Mac OS, Java, Programming Languages, Operating Systems, Security, Software, Software Development, Software/Web Development, Ryan Naraine
- Blog posts 2009-05-20
- Twitter: Can it make security a priority?
- Twitter has been schooled by a 17-year-old hacker over a generic worm that has plagued the social messaging site.  The big question: Can Twitter take security seriously as it wrestles with uptime issues. Dancho Danchev has a nice dissection of Twitter's worm issues. Twitter was hit with at...
- Tags: Twitter, Dancho Danchev, Cyberthreats, Spyware, Adware & Malware, Security, Viruses And Worms, Larry Dignan
- Blog posts 2009-04-14
- Twitter hit by multiple variants of XSS worm
- During the weekend and early Monday, at least four separate variants of the original StalkDaily.com XSS worm hit the popular micro-blogging site Twitter, automatically hijacking accounts and advertising the author's web site by posting tweets on behalf of the account holders, by exploiting cross site scripting flaws at the site....
- Tags: Flaw, XSS, Worm, Twitter, www.StalkDaily.com, Mikeyy XSS, Cyberthreats, Viruses And Worms, Security, Dancho Danchev
- Blog posts 2009-04-14
- Paul McCartney's official site serving malware
- All you (don't) need is malware on Paul McCartney's official web site. According to Mary Landesman at ScanSafe, the official web site of Paul McCartney (paulmccartney.com) has been compromised, and is serving live exploits to its visitors. Landesman points out that the compromise might have occurred through...
- Tags: Web, Malware, SQL, Web Site, FTP, Paul McCartney, Spyware, Adware & Malware, Cyberthreats, Web Site Development, Channel Management, Viruses And Worms, Security, Databases, Internet, Marketing, Enterprise Software, Software, Data Management, Dancho Danchev
- Blog posts 2009-04-08
- Google sponsored links spreading (scareware) rogue AV
- Google sponsored links spreading scareware rogue AVWhen will we put TEETH into laws on this.You know, its so danged simple to end this entirely but no one seems to have the balls to do it.Find a site hosting this crap block the ENTIRE hosting service from the internet until it...
- Tags: Cyberthreats, Google Inc., Google Sponsored Link, hosting company
- Discussion threads 2008-12-16
- Hackers exploiting (unpatched) IE 7 flaw to launch drive-by attacks
- Hackers exploiting unpatched IE 7 flaw to launch drive-by attacksCmon Loverock, Comment On This One!That's right, you selectively avoid stories like this. If it's anti-Linux, you pounce right on it.IE7 is a joke.So this doesn't affect XP SP3 or Vista?[i]The Web attacks, first reported by Bob McMillan, takes aim...
- Tags: Web browsers, Microsoft Windows Vista (Longhorn), Microsoft Windows XP Service Pack 2, SECURITY, Microsoft Internet Explorer 7, Microsoft Internet Explorer, Microsoft Windows Vista, Microsoft Windows, exploit, Microsoft Windows XP
- Discussion threads 2008-12-09
- Android kill switch: Is Google evil?
- Android kill switch: Is Google evil?Open Source???Doesn't sound much like open sourceRE: Android kill switch: Is Google evil?Yes! They have been evil for quite some time. Be sure to read the EULA and contract for the G1 phone carefully. Don't be surprised if you find a clause...
- Tags: cloud computing, Google Inc.
- Discussion threads 2008-10-16
- Secunia: popular security suites failing to block exploits
- In a recently conducted comparative review, Danish security company Secunia, tested the detection rate of 12 different Internet Security Suites against 300 exploits (144 malicious files and 156 malicious web pages) affecting popular end user applications, to find that even the top performer in the test is in fact performing...
- Tags: Web, Malware, Exploit, Secunia, Spyware, Adware & Malware, Cyberthreats, Security, Viruses And Worms, Dancho Danchev
- Blog posts 2008-10-14
- CNET's Clientside developer blog serving Adobe Flash exploits
- Yesterday, Websense Labs issued an alert regarding a compromised CNET blog, namely the Clientside developer blog which has been embedded with a malicious javascript code attempting to exploit the visitors through a well known vulnerability in Adobe Flash's player. Websense's alert : "Websense Security Labs ThreatSeeker Network has discovered...
- Tags: adobe systems inc., blog, CBS Interactive Inc., dancho danchev, javascript, malware, scripting languages, security, software/web development, viruses and worms, web development, websense inc.
- Blog posts 2008-08-07
- Symantec says Microsoft Access ActiveX attacks to increase
- Symantec has reported that the Neosploit toolkit has been updated to include attack vectors for the recent Microsoft Access ActiveX vulnerability. Neosploit is a toolkit for sale on the market (price estimates fall between $1500-$3000) that seeks to automate and extend the capability of browser exploits. Symantec...
- Tags: Web, Symantec Corp., Microsoft Access, Vulnerability, Trusted Site, ActiveX Control, Microsoft Internet Explorer, Microsoft Corp., Web Site, Site, Zone, Intranet, Attack, Neosploit, Internet, ActiveX/COM/COM+/DCOM, Web Browsers, Security, Software Development, Software/Web Development, Nathan McFeters
- Blog posts 2008-07-14
- Sony PlayStation's site SQL injected, redirecting to rogue security software
- The latest high trafficked web site to fall victim into the continuing waves of massive SQL injection attacks courtesy of copycats and the ASProx botnet, is Sony's PlayStation U.S site according to a recent post at SophosLabs's blog : "Researchers at IT security firm Sophos have warned lovers of...
- Tags: Sony Corp., Domain, SQL, Sony Playstation, SQL Injection, Hacker, Programming Languages, Game Players, Databases, Security, Software Development, Software/Web Development, Consumer Electronics, Personal Technology, Enterprise Software, Software, Data Management, Dancho Danchev
- Blog posts 2008-07-02
- 200,000 sites spreading web malware, China's hosting the most
- 200,000 sites spreading web malware, China's hosting the mostJust a guessI would suspect that most of the china sites are owned by American spammers,malware owners.I say we just cut China's segment off...Until the Chinese government seems to give a damn about poision food, poison web sites and rampant piracy, I...
- Tags: Tools & Techniques, Channel management, Web site development, Spam, Spyware, adware & malware, Cyberthreats, Looking Back, web malware, software, Web
- Discussion threads 2008-06-25
- Adobe Flash zero-day exploit in the wild
- [ See important update to this story here ] Malware hunters have spotted a previously unknown -- and unpatched -- Adobe Flash vulnerability being exploited in the wild. The zero-day flaw has been added to the Chinese version of the MPack exploit kit and...
- Tags: Adobe Systems Inc., Vulnerability, Zero-day Bug, Security, Spyware, Adware & Malware, Cyberthreats, Viruses And Worms, Ryan Naraine
- Blog posts 2008-05-27
- Fast-Fluxing SQL injection attacks executed from the Asprox botnet
- The botnet masters behind the Asprox botnet have recently started SQL injecting fast-fluxed malicious domains in order to enjoy a decent tactical advantage in an attempt to increase the survivability of the malicious campaign. I first assessed the Asprox botnet in January, and again in April when it started scaling...
- Tags: Microsoft .NET, Domain, SQL, SQL Injection, Asprox, Com, Programming Languages, Phishing, Databases, Security, Software Development, Software/Web Development, Spam And Phishing, Enterprise Software, Software, Data Management, Dancho Danchev
- Blog posts 2008-05-19
- If hackers don't get you, maybe Google will
- Two weeks ago my personal blog StorageMojo was hacked. Turns out that Google can be a bigger problem than the hackers. Here's how it works and tips on protecting yourself. "Don't be evil" is a pretty low bar There’s been a lot of blog hacking going...
- Tags: Google Inc., Site, Hosting Company, Hacker, StorageMojo, Blogging, Security, Internet, Robin Harris
- Blog posts 2008-05-18
- Websense: UN, UK sites compromised by JavaScript injection
- Websense on Tuesday said that the UN and UK government sites are being attacked in a mass JavaScript injection attack. According to Websense: Websense Security Labs has been tracking a recent development of the malicious JavaScript injection that compromised thousands of domains at the start of...
- Tags: JavaScript, Injection, Websense Inc., Attack, Scripting Languages, Security, Software/Web Development, Web Development, Larry Dignan
- Blog posts 2008-04-22
- The next big thing? Crimeware-as-a-service
- Finjan says Crimeware-as-a-Service CaaS is becoming an increasing problem and the ability of law enforcement to track malicious hackers will become increasingly hampered. On Monday, Finjan's Malicious Code Research Center MCRC released its first quarter Web security trends report registration required and highlighted CaaS. finjan's release is...
- Tags: Finjan Software Inc., CaaS, Security, Productivity, Larry Dignan
- Blog posts 2008-04-07
- << Previous
- page 1 of 1
- Next >>
Popular Sanity Saver Videos
White Papers and Webcasts