Sponsored White Papers, Webcasts, and Downloads
ZDNet Resources
- New worm exploiting MS08-067 flaw spotted in the wild
- Microsoft's Security Response Center and McAfee are warning on increased network scanning activity during the last couple of days courtesy of the very latest W32/Conficker.worm exploiting the already patched MS08-067 vulnerability. What's particularly interesting in the latest wave of copycat worms is that W32/Conficker.worm is patching the infected host in...
- Tags: Flaw, Malware, Worm, Tool, Cyberthreats, Spyware, Adware & Malware, Viruses And Worms, Productivity, Security, Dancho Danchev
- Blog posts 2008-11-26
- Google Chrome vulnerable to data theft flaw
- Google has seeded a new version of its Chrome browser to developers with fixes for a pair of security issues that could expose users to data theft. The issue, rated as a "moderate" risk could allow hackers to use HTML files to steal arbitrary files from a...
- Tags: Google Inc., HTML, Flaw, Google Chrome, File, Security, Ryan Naraine
- Blog posts 2008-11-13
- Google fatal flaw revealed
- Google needs to embrace other open source vendors, their products and code. It needs to share the load, and some of the credit, to get where it wants to go. by Dana Blankenhorn
- Tags: Google Inc., Flaw, Open Source, Security, Dana Blankenhorn
- Blog posts 2008-11-13
- Why did Microsoft wait 7 years to fix SMBRelay attack flaw?
- One of the code execution vulnerabilities fixed in this month's Microsoft Patch Tuesday release dates back to 2001 when it was first disclosed by Cult of the Dead Cow hacker Sir Dystic pictured left. If that wasn't cause for worry, get this: An exploit for the bug...
- Tags: Flaw, Issue, Microsoft Corp., Security Administration, Patches, Security, Ryan Naraine
- Blog posts 2008-11-12
- MS Patch Tuesday: Critical Windows, Office flaws fixed
- Microsoft's scheduled batch of patches for November crossed the wires today with fixes for at least four documented vulnerabilities affecting millions of Windows and Office users. As previously reported, the company released two security bulletins -- one rated critical, one rated important -- with fixes for flaws...
- Tags: Web, Attacker, Microsoft Office, Flaw, Vulnerability, Microsoft Windows, Microsoft Corp., Security, Ryan Naraine
- Blog posts 2008-11-11
- Rigged PDFs exploiting just-patched Adobe Reader flaw
- Just three days after Adobe shipped a patch with fixes for a critical Adobe Reader vulnerability, hackers are using booby-trapped PDF files to fire exploits against Windows users. [ SEE: Heads up: Patch your Adobe Reader now ] The in-the-wild attacks, first spotted by...
- Tags: Adobe Systems Inc., Adobe PDF, Flaw, Adobe Acrobat Reader, Microsoft Windows, Security, Operating Systems, Software, Ryan Naraine
- Blog posts 2008-11-07
- Adobe nukes 'critical' Pagemaker flaws
- Adobe has released a patch to fix a pair of critical vulnerabilities in its PageMaker 7 software, warning that a hacker could exploit these flaws to "take control of the affected system." A third vulnerability, confirmed by Adobe, remains unpatched, the company acknowledged in an advisory. ...
- Tags: Adobe Systems Inc., PageMaker, Flaw, Vulnerability, Security, Ryan Naraine
- Blog posts 2008-10-30
- News to know: Windows 7; OpenOffice flaws; Cybercrime; Apple
- Here are today's notable headlines. You can get News To Know via email alert and RSS daily: Ed Bott: You've got Windows 7 questions, I've got answers Sam Diaz: Real vows fight for RealDVD, adjusts outlook Ryan Naraine: Code execution flaws...
- Tags: Apple iPhone, Larry Dignan, Hewlett-Packard Co., Microsoft Windows 7, Flaw, LinkedIn, Apple Inc., Microsoft Corp., Matthew Miller, Microsoft Windows, OpenOffice, Linux, Federal Government, Operating Systems, Software, Office Suites, Government
- Blog posts 2008-10-30
- Code execution flaws haunt OpenOffice
- Code execution flaws haunt OpenOfficeCode execution flaws haunt OpenOfficeLOL!! Let the bug hunt begin. This will be one of many bugs found in OpenOffice. Remember when v3.0 was released and all the fanboys were telling us to replace our current solutions with this new version because it works...
- Tags: OPEN SOURCE, SECURITY, OpenOffice 3.0, OpenOffice, Code execution flaw, Code Execution, flaw, OO.org v3.0
- Discussion threads 2008-10-29
- Code execution flaws haunt OpenOffice
- OpenOffice.org has shipped a new version of the open-source desktop productivity suite to patch a pair of highly-critical vulnerabilities that could expose users to arbitrary code execution attacks. The flaws, which affect all versions prior to OpenOffice.org 2.4.2, could be exploited via manipulated WMF and EMF files...
- Tags: Flaw, OpenOffice.org, OpenOffice 3.0, OpenOffice, Open Source, Security, Office Suites, Software, Ryan Naraine
- Blog posts 2008-10-29
- HotJobs site flaw leads to Yahoo account theft
- See update below for statement from Yahoo. Malicious hackers are exploiting a cross-site scripting flaw on Yahoo's HotJobs site to phish for Yahoo credentials, according to a warning from Netcraft. In the ongoing attack, Netcraft discovered that the vulnerability allows the attacker...
- Tags: Attacker, Flaw, Yahoo! Inc., XSS, Authentication, HotJobs, Netcraft, Security, Ryan Naraine
- Blog posts 2008-10-27
- Google readying fix for Chrome file download flaw
- Google readying fix for Chrome file download flawGoodGoogle is doing the right thing by addressing this flaw quickly. It's important if they want to Chromes reputation as a secure browser to stick. But I doubt that this is any serious threat. Chromes market share is next to nothing so I...
- Tags: SECURITY, flaw, Chrome, Google Inc., beta
- Discussion threads 2008-10-20
- Google readying fix for Chrome file download flaw
- Just hours after the release of the Google Chrome browser last month, researcher Aviv Raff discovered that he could combine two vulnerabilities -- a flaw in Apple Safari WebKit and a Java bug -- to trick users into launching executables direct from the new browser. (Here's a demo showing how...
- Tags: Google Inc., Flaw, Google Chrome, Security, Ryan Naraine
- Blog posts 2008-10-20
- Is Microsoft's fatal flaw the computer?
- Is Microsoft's fatal flaw the computer?Not realy, their flaw isThey honestly believe they know vastly more than everyone else, refuse to listen, and miss major oportunities.Not a fatal flaw, but MS recognizes the need to change.MS became dominant, the big dog with selling it's and only it's OS on PCs...
- Tags: PRODUCTIVITY, Microsoft Windows, Operating systems, Microsoft Corp., fatal flaw, flaw, computer, operating system
- Discussion threads 2008-10-09
- Is Microsoft's fatal flaw the computer?
- I was browsing on webmagazine Salon when I came across an interesting review written by Scott Rosenberg of the book "Planet Google: One Company's Audacious Plan to Organize Everything We Know" by Randall Stross. (The title of the article is, "Google's Vulcan death grip." Boy am I a sucker.) ...
- Tags: Google Inc., Flaw, Microsoft Corp., Computer, Productivity, Andrew Nusca
- Blog posts 2008-10-09
- Adobe posts workaround for clickjacking flaw, NoScript releases ClearClick
- Adobe posts workaround for clickjacking flaw, NoScript releases ClearClickRequires Firefox pluginAre you afraid of offending Microsoft or just being unhelpful hurried?To use the only available cure right now requires adding the plugin you mention -- NoScript 1.8.2.1 -- to your Firefox browser. There is no fix for Internet Explorer, Opera,...
- Tags: Web browsers, SECURITY, NoScript, ClearClick, flaw, Adobe Systems Inc., Web browser, Opera Software, Microsoft Corp.
- Discussion threads 2008-10-08
- Adobe posts workaround for clickjacking flaw, NoScript releases ClearClick
- Following the recent release of a PoC demonstrating clickjacking in action, Adobe has released a security advisory offering solutions for customers and IT administrators on dealing with the flaw until they releases a Flash player patch before the end of October. "We have just posted a Security Advisory for...
- Tags: Adobe Systems Inc., Flaw, Macromedia Flash Player, Web Browser, Web Browsers, Security, Internet, Dancho Danchev
- Blog posts 2008-10-07
- Dropping the iPhone NDA is good for security
- Last week Apple lifted their NDA on iPhone developers, freeing them to discuss amongst themselves how to properly build applications. This decision is a "good thing" for not just applications but also application security on the iPhone. The iPhone NDA was antithetical to how developers work....
- Tags: Apple iPhone, Developer, Flaw, Programming, Development Tools, Security, Software Development, Software/Web Development, Adam O\'Donnell
- Blog posts 2008-10-05
- Google downplays Chrome's carpet-bombing flaw
- In a recent Q&A with Google's Brian Rakowski, Philipp Lenssen asked him a question in regard to Chrome's carpet-bombing flaw. Not surprising, considering that Apple refused to admit Safari's carpet-bombing flaw at the first place, Google is too, downplaying it : "Lenssen: There are ways to make Chrome automatically...
- Tags: Google Inc., Malware, Google Chrome, File, Flaw, Spyware, Adware & Malware, Cyberthreats, Security, Viruses And Worms, Dancho Danchev
- Blog posts 2008-09-16
- Exploit published for Windows Media Encoder flaw
- Exploit published for Windows Media Encoder flawSigh, tight integration of all apps.Great for usability, bad for today's world. Why do people have to surf the web using a media encoder anyway tied to the whole?It also bolsters the argument for Windows to dump ActiveX, create .net emulation of the...
- Tags: Operating systems, ActiveX/COM/COM+/DCOM, Microsoft Windows, Windows Media Encoder, Windows Media, flaw
- Discussion threads 2008-09-15
White Papers and Webcasts