Articles tagged with: Security

Written By :
on : Thursday, 27 Oct, 2011

Google Chrome 15 fixes 27 security flaws

Google's bug bounties is certainly working. Security researchers have identified over 27 flaws in Google Chrome - one researcher Sergey Glazunov found a number of flaws earning him a respectable $12.174 for five high impact flaws in what Google calls 'cross-origin-policy violations'. Good work Sergey! Other high impact flaws fixed in Chrome 15 include: CVE-2011-2845: URL bar spoof in history handling CVE-2011-3882: Use-after-free in media buffer handling CVE-2011-3883: Use-after-free in counter handling. CVE-2011-3884: Timing issues in DOM traversal. CVE-2011-3885: Stale style bugs leading to use-after-free. CVE-2011-3886: Out of bounds writes in v8. CVE-2011-3888: Use-after-free with plug-in and editing. CVE-2011-3889: Heap overflow in Web Audio. CVE-2011-3890: Use-after-free in
Filed under: News -
Written By :
on : Monday, 24 Oct, 2011

Exploiting Software 02/11 Exploit format Strings with Python

Cracking Java Applications Using AOP Exploits (part 2) By Daniel Drozdzewski AOP has been used in the domain of Software Security before. Its use was mainly for validation, auditing and authorization purposes, which in turn improve software security as a whole. Those crosscutting concerns are being woven into the existing software after the fully functional code has been delivered. Making the process two staged, allows separating the responsibilities. In the second part of the series, Daniel will present the reader with a bit more advanced use of AOP, which will allow us to reverse engineer obfuscated Java applications. On top of that
Filed under: Magazine -
Written By :
on : Monday, 17 Oct, 2011

Hakin9 Extra – Botnet 05/2011

A study of a Botnet creation process and the impact of a DDoS attack against a web server by Stavros N. Shaeles and Ioannis D. Psaroudakis Over the following paragraphs we are going to describe in steps, the procedure of setting up
Written By :
on : Friday, 14 Oct, 2011

Apple fix 96 vulnerabilities in iOS 5 release

Apple has this week (12th October) released it's latest mobile operating system called iOS 5. The new iOS 5 patches 96 vulnerabilities, including 69 security fixes for WebKit. The more notable security fixes included are; memory corruption issues
Written By :
on : Friday, 14 Oct, 2011

Facebook and Twitter social media API security

Julian Evans wondered for some time whether it might be possible to develop a security app for Facebook, that provides protection at levels similar to Internet security suites. Julian's research has concluded that providing a scanning, tracking
Written By :
on : Friday, 14 Oct, 2011

How identity fraudsters steal your overdraft facility

Fraudsters are smart, so much so that they know how to outwit the banks security, clearing system and best of all innocent account holders. So how do fraudsters use identity theft to steal your overdraft facility? Read
Written By :
on : Thursday, 13 Oct, 2011

The Kingdom Cloud Computing Summit

The Kingdom Cloud Computing Summit provides a networking platform for key public sector IT decision makers and leading cloud computing solution providers. Under the theme of ‘The Kingdom’s Roadmap to Virtualisation,’ attendees have the opportunity to discuss the
Written By :
on : Friday, 7 Oct, 2011

Facebook launches anti-malware URL scanning service

Facebook is introducing URL (link scanning) protection for its users as from today (Oct 3rd, 2011). When a user clicks on any link in Facebook, Websense using its ThreatSeeker Cloud Malware Identification Platform, will analzye each URL
Written By :
on : Friday, 7 Oct, 2011

nVidia GeForce GPU cracks six character password in four seconds

An nVidia GeForce GT220 graphics card, which costs about 30 GBP, is capable of cracking strong passwords in a matter of hours. Security experts were able to crack a  6 character password in 4 seconds, a 7
Written By :
on : Thursday, 6 Oct, 2011

Microsoft fix 23 vulnerabilities for “Patch Tuesday”

Microsoft have released their "Patch Tuesday" update for October 11th which includes a critical flaw that could give attackers the ability to remotely spread a virus through compromised Internet Explorer and Windows users. The security update will
Written By :
on : Thursday, 6 Oct, 2011

Application Security Forum – Western Switzerland conference, October 2011

The city of Yverdon-les-Bains will host by end of October the 2011 edition of the Application Security Forum - Western Switzerland conference. For this second edition, an exceptional lineup consisting of: 19 speakers and trainers, both locally and internationally recognized,