Headlines for Browsers
‘Extremely severe’ flaw in Opera web browser
An "extremely severe" security vulnerability in the Opera browser could put web surfers at risk of remote code execution attack
Serious XSS flaw haunts Microsoft SharePoint
The vulnerability, which can be exploited via the browser, could allow a malicious hacker to execute arbitrary JavaScript code within the vulnerable application.
How to remove the ICPP Copyright Violation Alert ransomware
Although the original domain used to facilitate the $400 transaction is down, a huge number of people remain infected with the "copyright violation alert". Here's a universal license code for removing it.
‘Google even knows what you’re thinking’
Privacy advocate Moxie Marlinspike used the spotlight of the SOURCE conference here to call attention to Google's data harvesting practices, warning that the search engine giant can mine information to figure out even what Web surfers are thinking about.
Attack of the Opt-In Botnets
What's more devastating than a DDoS attack launched by a botnet? In some cases, that's the DDoS attack launched by the "opt-in botnet" aggregated through a crowdsourcing campaign.
Report: ZeuS crimeware kit, malicious PDFs drive growth of cybercrime
New report indicates that the combination of the ZeuS crimeware kit, and the tremendous increase of malicious PDFs seen in 2009, play a crucial role in the growth model of the cybercrime ecosystem.
Microsoft to fix security hiccups in IE 8 XSS filter
On the heels of a Black Hat EU presentation that exposed security problems with the cross-site scripting (XSS) filter in Internet Explorer 8, Microsoft plans to ship an update to the filter to fix what is hopefully the last remaining attack scenario.
Attackers hit Google single sign-on password system
The New York Times is reporting that Google's password system was compromised during a targeted attack last December.
Security gone awry: IE 8 XSS filter exposes sites to XSS attacks
The cross-site scripting filter that ships with Microsoft's Internet Explorer 8 browser can be abused by attackers to launch cross-site scripting attacks on websites and web pages that would otherwise be immune to this threat.
Researchers hack into Palm WebOS with text messages
Security researchers at the Intrepidus Group found that the Palm WebOS SMS client did not properly validate input/output validation on any SMS messages sent to the handset.

Twitter
RSS