Welcome | Log In
Exploits & Vulnerabilities
Tuesday - December 30, 2008
An international group of independent security researchers announced Tuesday that they have found a significant weakness in the Internet digital certificate infrastructure used by many Internet businesses. The flaw could conceivably allow cybercriminals to create fake certificates that would then be accepted and trusted by many widely used Internet browsers. The purported weakness could enable a hacker to impersonate secure Web sites and e-mail servers to launch virtually undetectable phishing attacks, according to the researchers from California, the Netherlands and Switzerland. [More...]
Friday - December 19, 2008
Looks like Santa visits cybercrooks too. Their present this year was a big, fat security hole in many widely used versions of Microsoft's Internet Explorer. The critical vulnerability allowed remote code execution if an Explorer user visited a specially crafted, malicious Web page. That translated into the potential for big-time credit card fraud and identity theft. [More...]
Thursday - December 18, 2008
Enterprise application whitelisting company Bit9 launched an attention-getting press release last week, a document which merely bubbled for a few days until the recent Internet Explorer flaw took center stage and Mozilla pushed out a few Firefox updates. Eventually, the heat under the issue boiled over, prompting Mozilla to tackle the Bit9 report on its Mozilla Security Blog. [More...]
Thursday - December 18, 2008
Microsoft released a fix Wednesday that should protect Internet Explorer users from a zero-day exploit that emerged last week and rapidly evolved into a major attack vector for cybercriminals and hackers. The vulnerability, rated "critical," affects Internet Explorer 5.01, Internet Explorer 6, Internet Explorer 6 SP 1 and Internet Explorer 7. [More...]
Monday - December 15, 2008
As malware writers and Internet attackers become more sophisticated, 2009 looks to be a year of more focused attacks by profit-driven criminals bent on stealing data from businesses, employees and consumers. Networking firm Cisco released its annual Threat Report Monday, citing a nearly 12 percent increase in the number of disclosed vulnerabilities over 2007. [More...]
Friday - December 12, 2008
Microsoft and the Internet security community are trying to get a handle on a vulnerability that exposes Internet Explorer to the threat of zero day attacks. When the problem was first discovered -- only a few days after December's Patch Tuesday -- there was confusion about how the exploit worked, as well as which versions of IE were impacted. [More...]
Tuesday - December 9, 2008
With each passing year, hackers come up with new ideas, or variations of past ideas, to combine technology and social engineering to deceive users and attack networks for their financial benefit. The mid-2000s saw the proliferation of botnet attacks used for spam, targeted attacks and worse, while 2007 and 2008 have seen the rise of SQL injection attacks and other Web site exploits. [More...]
Monday - December 8, 2008
The report is called "Securing Cyberspace for the 44th Presidency," and one paragraph in its opening section succinctly sets forth the Internet-related challenges awaiting President-elect Barack Obama. "Cybersecurity is now a major security problem for the United States," the Center for Strategic and International Studies commission report begins. [More...]
Sunday - November 30, 2008
Today we have the advantage of staying connected wherever we are, which gives us the convenience of completing our holiday shopping from home or our working space at any time of day. This convenience, however, comes with a price, which can sometimes present itself literally. [More...]
Friday - November 14, 2008
Now you can get your fix of "Bulletproof Monk" and "American Gladiators" -- all without leaving the comfort of YouTube. Yes, the king of user-generated, short-form video is now embracing the other kind: studio-generated, feature-length films. Yes, this is the same YouTube that said long-form video was anathema to its business model. But I guess when the big MGM lion comes roaring, you make an exception. [More...]
Friday - November 7, 2008
Someone is trying to extort money from a company that handles drug prescription benefits for 50 million Americans in what could be one of the more damaging cases of data loss on record. The incident may raise red flags for industry hopes of putting more health care information online in an effort to control costs. [More...]

See More Articles in Exploits & Vulnerabilities Section >>
Shortcuts
ECT News Network Information
Locate Products and Services
Corporate
Reader Services
ECT News Network