- BlackBerry Storm vs. the iPhone
- Digg's Kevin Rose: "We have to do better"
- Blogger warns: "Nortel doesn't make it out alive"
- Financial quagmire bringing out the scammers
- Verizon plays with the wrong e-mail addresses
Newsletters | Podcasts | Chats | Opinions | RSS Feeds | This Week In Print | IT Careers | Community | Reports | Downloads | Slideshows | New Data Center
Partner Sites:Application Performance Solutions | App Performance | Networking Solution | SafeGuard Enterprise Solution Center | SOA | Test your Web Filter | Value of WDS
Jason Meserve provides up-to-the-minute news on vendor security alerts and fixes.
Researchers warn of IE6 zero-day bug
Security researchers are warning users about an unpatched cross-site scripting bug in Internet Explorer 6 (IE6) that could
be used by hackers to capture keystrokes and steal other information. The vulnerability appears to be a variation of a vulnerability
first discussed by researchers Manuel Caballero and Fukami at Microsoft's on-site BlueHat security conference early last month,
Yichong Lin, an analyst at McAfee, said in an entry to the company's blog. Computerworld, 06/26/2008.
F-Secure: Internet Explorer 6 Cross-Domain Scripting Vulnerability
Microsoft repairs PCs crippled by XP SP3 update
Nearly three weeks after security vendor Symantec released a free tool to clean up PCs crippled by the Windows XP Service
Pack 3 (SP3) update, Microsoft issued a fix that should reestablish lost Internet and wireless connections. Computerworld,
06/29/2008.
Microsoft advisory
**********
Two new updates from rPath:
kernel (multiple flaws, denial of service)
**********
Three new fixes from Ubuntu:
Samba (buffer overflow, code execution)
**********
Two new patches from Debian:
dbus (local privilege escalation)
libtk-img (buffer overflow, code execution)
**********
Today's malware news:
Fast Flux and New Domains for Storm
Storm has changed its tactics constantly in the past year and a half, and this "love theme" is nothing new. We’ll see how
long this theme lasts. Security to the Core blog, 06/28/2008.
**********
From the interesting reading department:
Hackers hijack critical Internet organization sites
Turkish hackers yesterday defaced the official sites of the international organizations that oversee the Internet's critical
routing infrastructure and regulate domain names, researchers said today. Computerworld, 06/27/2008.
Summertime security: No letup for IT
What ever happened to the lazy days of summer? For IT and security managers in businesses, hospitals and universities across
the country, summer is just another season to get things done. Here's a roundup of IT security projects we're hearing about.
Network World, 06/27/2008.
Malware, spam, botnets growing faster than ever before
The spam and malware tsunami continues to cast a mounting shadow over the Internet this week. Computerworld, 06/26/2008.
Jason Meserve is multimedia editor at Network World.
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.
Download the white paper.
Applications: taking back control
Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.
Learn more today.
Comment