Sponsored White Papers, Webcasts, and Downloads
ZDNet Resources
- Don't dawdle on Microsoft latest batch of patches
- If you're like most folks you are taking your time installing Microsoft's latest round of security patches. However, you may want to get your rear end in gear. Specifically apply MS08-001, which was released on Jan. 8. That patch fixed a Transmission Control Protocol/Internet Protocol (TCP/IP) processing...
- Tags: Patch Management, Immunity, Microsoft Corp., Worm Attack, Ryan, Stewart, Cyberthreats, Patches, Security, Viruses And Worms, Larry Dignan
- Blog posts 2008-01-17
- Worm attack forces Reuters IM offline
- Worm attack forces Reuters IM offlineLet me get this straightFrom Symantec:[i]Note: A recipient must click on the link, and download and execute the file. The file is a copy of the worm.[/i]You get an instant message with a link in it, you have to click on that link to open...
- Tags: Instant messaging, Cyberthreats, Viruses and worms, Web browsers, SECURITY, Stupidity, PeeCee user, worm attack, Reuters Ltd., IM, worm, Microsoft Internet Explorer
- Discussion threads 2005-04-14
- New Focus: Triple worm attack
- New Focus: Triple worm attackNo worries.I am not worried at all, I use Linspire!When will we Learn?We need to move on to a different operating system. We need to use different browsers.As long as 93% of PC users use Windows and close to 90% user Internet Explorer, there is fertile...
- Tags: PRODUCTIVITY, Operating systems, Cyberthreats, UNIX, OPEN SOURCE, Linux, Microsoft Windows, computer, PC, Linux User, virus, exploit, security, worm attack
- Discussion threads 2005-02-03
Additional Resources
- Gaping holes in RealPlayer patched
- Digital media delivery firm RealNetworks has shipped a high-prority patch to cover four gaping holes in its flagship RealPlayer software, warning that the vulnerabilities could put users at risk of code execution attacks. The patch comes a few hours after Secunia released an advisory warning for one...
- Tags: Vulnerability, RealNetworks Inc., RealNetworks RealPlayer, Digital Music, Digital Media, Security, Personal Technology, Consumer Electronics, Ryan Naraine
- Blog posts 2008-07-25
- Microsoft joins 'patch DNS now' chant; Apple patch missing
- On the heels of the release of weaponized exploit code for the DNS cache poisoning vulnerability, Microsoft has joined the chorus of security pros pleading with DNS server providers to immediately apply patches to protect users from malicious attacks. The Redmond, Wash. security...
- Tags: Apple Macintosh, DNS, Vulnerability, Apple Inc., Exploit Code, Microsoft Corp., Attack, Dan Kaminsky, Domain Names, Apple Mac OS X, Networking, Security, Internet, Operating Systems, Software, Apple Mac OS, Ryan Naraine
- Blog posts 2008-07-25
- How OpenDNS, PowerDNS and MaraDNS remained unaffected by the DNS cache poisoning vulnerability
- The short answer is being paranoid about tackling a known vulnerability. It's 2001, and Daniel J. Bernstein DJB, author of the then popular djbdns security-aware DNS implementation, is applying basic math principles to raise awareness on what's to turn into the "sky is falling" critical Internet vulnerability in 2008, in...
- Tags: DNS, Vulnerability, Anomaly, Attack, OpenDNS, MaraDNS, NSS, Domain Names, Networking, Internet, Dancho Danchev
- Blog posts 2008-07-25
- Offshore outsourcers likely to beef up security following Bangalore blasts
- A series of bombs have exploded in Bangalore and companies that have technology operations in India are likely to need increased security precautions following what appears to be a terrorist attack. According to various reports from Reuters and Rediff.com, nine bomb blasts have rattled Bangalore, which hosts...
- Tags: India, Bangalore, Rediff.com India Ltd., Sacchin Uppal, Outsourcing, Business Security, Security, It Operations, Business Operations, Outsourcing & Subcontracting, Larry Dignan
- Blog posts 2008-07-25
- Kaminsky suggests long-term fix will still have to be determined, but patch now, or pay soon
- Kaminsky suggests long-term fix will still have to be determined, but patch now, or pay soonTTLSomething I wish I'd asked during the webcast and which I can't quite get my head around:It was said that setting a long TTL doesn't help because of the way delegation works - has to...
- Tags: Domain names, DNS server, TTL, server, Kaminsky
- Discussion threads 2008-07-24
- Kaminsky suggests long-term fix will still have to be determined, but patch now, or pay soon
- I listened to the Black Hat webcast today to grab as much info as I could on this subject. The biggest thing that I heard from the whole talk is that the patch fixes things to a reasonable point, but that long-term, there will have to be more work...
- Tags: CERT, DNS Server, Server, Kaminsky, Dan, Patches, Domain Names, Security, Internet, Nathan McFeters
- Blog posts 2008-07-24
- News to know: DNS flaw; Amazon; Microsoft shakeup; Facebook
- Notable headlines: Ryan Naraine: Researchers borrow from Google PageRank for network defense service Attack code published for DNS flaw Nate McFeters: |)ruid and HD Moore release part 2 of DNS exploit 'Spam King' escapes from federal prison iPhone vulnerable to phishing,...
- Tags: Apple iPhone, Facebook, DNS, Amazon.com Inc., Microsoft Corp., Microsoft Xbox, Flaw, Game Players, Domain Names, Networking, Security, Consumer Electronics, Personal Technology, Internet, Larry Dignan
- Blog posts 2008-07-24
- |)ruid and HD Moore release part 2 of DNS exploit
- |)ruid and HD Moore release part 2 of DNS exploitSo, Linux's BIND the first to be exploited...So, Linux's BIND the first to be exploited...Nice work!CoolNate, nice post and analysis!Wasn't the replacing the ns.victim.com cache entry part of the Halvar Flake speculation? I thought first part of the exploit was to...
- Tags: Domain names, NETWORKING, Operating systems, Alecco, DNS, ruid, exploit, HD Moore, Linux
- Discussion threads 2008-07-24
- |)ruid and HD Moore release part 2 of DNS exploit
- [Updated 07/24/2008: Gallery images of diffs of code revisions has been included and will be updated as things change, see here.] Earlier today, noted researchers |)ruid and HD Moore released exploit code for the Metasploit tool for attacking the DNS flaw that was originally reported by Dan...
- Tags: DNS, Domain, Server, Entry, Exploit, NS, NS Record, Domain Names, Networking, Internet, Nathan McFeters
- Blog posts 2008-07-23
- Attack code published for DNS flaw
- Attack code published for DNS flawIrresponsible and evil"In an IM exchange, Moore told me his exploit takes about a minute or two to poison a DNS cache but said he is working to improve it in version 2.0."As far as i am concerened he is just an evil person to...
- Tags: Domain names, Halvar, exploit, DNS
- Discussion threads 2008-07-23
- Attack code published for DNS flaw
- The urgency to patch Dan Kaminsky's DNS cache poisoning vulnerability just went up a few notches. Exploit code for the flaw, which allows the insertion of malicious DNS records into the cache of the target nameserver, has been added to Metasploit, a freely distributed attack/pen-testing tool....
- Tags: Ryan Naraine
- Blog posts 2008-07-23
- Georgia President's web site under DDoS attack from Russian hackers
- Georgia President's web site under DDoS attack from Russian hackersOh, its about the *another* Georgia.Is about the ex-commie Georgia and not the Ted Turner Birthplace.Anyways, a ddos attack can be done even for a single person, so there are not a real point to escalate this conflict in a full...
- Tags: Web site development, distributed denial of service, Russian Hackers, Web site, Web
- Discussion threads 2008-07-23
- Researchers borrow from Google PageRank for network defense service
- Using a link analysis algorithm similar to Google PageRank, researchers at the SANS Institute and SRI International have created a new Internet network defense service that completely revamps the way network blacklists are formulated and distributed. The service, called Highly Predictive Blacklisting (.pdf), will be unveiled next...
- Tags: Google PageRank, Attacker, Network, DShield, Highly Predictive Blacklist, Internet, Networking, Security, Ryan Naraine
- Blog posts 2008-07-23
- What people hate most about health insurance
- What people hate most about health insurancetry medicaid if you want a real headacheIf you think your paid insurance is bad, try living on SS or SSI, yet being expected to make co-pays on everything they can find to ding you on, it may sound like no big deal if...
- Tags: Vertical industries, Benefits, HEALTHCARE, Insurance, health care, health insurance
- Discussion threads 2008-07-23
- Another student hacks another police website
- Oh the fun. Once again, another police website has been hacked by a student, showing that even the police aren't safe from all crimes. This is another link in the long chain of attacks over the years from egotistical teenagers trying to get a kick out of life without sticking...
- Tags: Web Site, Attack, Web Site Development, Web Technology, Internet, Zack Whittaker
- Blog posts 2008-07-23
- News to know: Yahoo; VMware; Apple; DNS vulnerability
- Notable headlines: Ryan Naraine: Vulnerability disclosure gone awry: Understanding the DNS debacle RIM ships fix for BlackBerry code execution bug Dancho Danchev: Georgia President's web site under DDoS attack from Russian hackers 75% of online banking sites found vulnerable to security design...
- Tags: Apple iPhone, Google Inc., Larry Dignan, DNS, Yahoo! Inc., Vulnerability, Dana Blankenhorn, Health Care, Apple Inc., VMware Inc., App Store, Banking, Vertical Industries, Domain Names, Benefits, Healthcare, Security, Financial Services, Enterprise Software, Software, Internet, Human Resources
- Blog posts 2008-07-23
- 75% of online banking sites found vulnerable to security design flaws
- In a paper entitled "Analyzing Web sites for user-visible security design flaws" to be published at the Symposium on Usable Privacy and Security meeting at Carnegie Mellon University July 25, Atul Prakash and two of his doctoral students examined 214 financial institutions in 2006, finding that over 75% of all...
- Tags: Bank, Online Banking, Flaw, Security, Financial Services, Dancho Danchev
- Blog posts 2008-07-23
- << Previous
- page 1 of 1
- Next >>
White Papers and Webcasts