Friday, July 27, 2012

Google Alert - Vulnerabilities

=== News - 9 new results for [Vulnerabilities] ===

Vulnerability Intelligence Versus Vulnerability Management
Forbes
Ten years ago I was one of those ivory-tower analysts that would issue
warnings to enterprise clients to patch their servers whenever a new
critical vulnerability in Microsoft was announced. Bear in mind that this
was before Microsoft consolidated all of their ...
<http://www.forbes.com/sites/richardstiennon/2012/07/26/vulnerability-intelligence-versus-vulnerability-management/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.forbes.com/sites/richardstiennon/2012/07/26/vulnerability-intelligence-versus-vulnerability-management/&hl=en&geo=us>

Vulnerabilities in Payment Terminals Demonstrated at Black Hat
PCWorld
The vulnerabilities were demonstrated Wednesday at the Black Hat USA 2012
security conference by MWR's head of research, a German security researcher
who only identifies himself as "Nils," and Rafael Dominguez Vega, a Spanish
security researcher ...
<http://www.pcworld.com/businesscenter/article/259882/vulnerabilities_in_payment_terminals_demonstrated_at_black_hat.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcworld.com/businesscenter/article/259882/vulnerabilities_in_payment_terminals_demonstrated_at_black_hat.html&hl=en&geo=us>

Microsoft Publishes Workaround for Oracle Outside In Vulnerability
Threatpost (blog)
Microsoft gave its users steps earlier this week to sidestep a
vulnerability in one of Oracle's Outside In libraries. The company
published some mitigations for the bug, but said it isn't aware of any
active attacks against it yet. The Oracle technology is licensed by ...
<http://threatpost.com/en_us/blogs/microsoft-publishes-workaround-oracle-outside-vulnerability-072612>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://threatpost.com/en_us/blogs/microsoft-publishes-workaround-oracle-outside-vulnerability-072612&hl=en&geo=us>

Software features and inherent risks: NIST's guide to rating software ...
Phys.Org
"No system is 100 percent secure: every system has vulnerabilities,"
according to the report. While attention often focuses on software flaws,
for example system crashes, software features also introduce
vulnerabilities because intentional or accidental ...
<http://phys.org/news/2012-07-software-features-inherent-nist-vulnerabilities.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://phys.org/news/2012-07-software-features-inherent-nist-vulnerabilities.html&hl=en&geo=us>

Black Hat: Oracle database vulnerabilities exposed again
ComputerworldUK
Visitors to the Black Hat security conference in Las Vegas have seen renown
expert David Litchfield score again against Oracle's database by
demonstrating an exploit that would allow him to take control as an
administrator. Litchfield, chief security architect ...
<http://www.computerworlduk.com/news/security/3372534/black-hat-oracle-database-vulnerabilities-exposed-again/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.computerworlduk.com/news/security/3372534/black-hat-oracle-database-vulnerabilities-exposed-again/&hl=en&geo=us>

NIST proposes new software vulnerability measurement system
FierceGovernmentIT
As a result, it proposes in an interagency report (.pdf) released earlier
this month a new vulnerability measurement system that would assess
software feature misuse vulnerabilities. The new system, which NIST calls
the Common Misuse Scoring System, ...
<http://www.fiercegovernmentit.com/story/nist-proposes-new-software-vulnerability-measurement-system/2012-07-26>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.fiercegovernmentit.com/story/nist-proposes-new-software-vulnerability-measurement-system/2012-07-26&hl=en&geo=us>

New tool spots hacking vulnerabilities in smart meters
GCN.com
LAS VEGAS — Researchers probing the security of smart-grid technology
presented their results at the Black Hat Briefings, and released a tool to
help spot vulnerabilities in new smart meters. "People are going to be
messing with the meters," said Don C.
<http://gcn.com/articles/2012/07/26/4th-black-hat-smart-meter-vulnerabilities.aspx>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://gcn.com/articles/2012/07/26/4th-black-hat-smart-meter-vulnerabilities.aspx&hl=en&geo=us>

Black Hat: Most Java malware exploits "type confusion" vulnerability
SC Magazine
Java malware targets certain types of vulnerabilities, and "type confusion"
is the most common class being exploited, Jeong Wook (Matt) Oh, a Microsoft
researcher, told attendees Thursday at the Black Hat conference in Las
Vegas. Type confusion refers to ...
<http://www.scmagazine.com/black-hat-most-java-malware-exploits-type-confusion-vulnerability/article/252145/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.scmagazine.com/black-hat-most-java-malware-exploits-type-confusion-vulnerability/article/252145/&hl=en&geo=us>

Qualys Adds IPv6 Support to FreeScan Service
MarketWatch (press release)
Using FreeScan, organizations can now scan IPv6 devices to detect possible
vulnerabilities and take the steps necessary to remediate them. IPv6 is the
new communications protocol developed to succeed IPv4 due to IP address
space limitations.
<http://www.marketwatch.com/story/qualys-adds-ipv6-support-to-freescan-service-2012-07-26>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.marketwatch.com/story/qualys-adds-ipv6-support-to-freescan-service-2012-07-26&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

0 Comments:

Post a Comment

<< Home