Tuesday, April 30, 2013

Google Alert - Vulnerabilities

=== News - 3 new results for [Vulnerabilities] ===

Complexity of the Windows 8 makes it vulnerable to attack: Kaspersky
CSO
Kirby said this approach has increased the vulnerability of the OS, as the
multiple OS approach provides hackers with more places to find
vulnerabilities to exploit. "Because it contains three platforms, it leaves
the gateway open for a much broader ...
<http://www.csoonline.com/article/732484/complexity-of-the-windows-8-makes-it-vulnerable-to-attack-kaspersky>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.csoonline.com/article/732484/complexity-of-the-windows-8-makes-it-vulnerable-to-attack-kaspersky&hl=en&geo=us>

US Navy warships vulnerable to cyber attack
TechEye
A US Defence Department spokesperson told Reuters that the Pentagon's chief
weapons test agency addressed "information assurance vulnerabilities" for
the Littoral Combat Ship in an assessment provided to the Navy. But details
of that assessment are ...
<http://news.techeye.net/security/us-navy-warships-vulnerable-to-cyber-attack>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://news.techeye.net/security/us-navy-warships-vulnerable-to-cyber-attack&hl=en&geo=us>

D-Link firmware flaws could allow IP video stream spying
PCWorld
... according to security researchers. Core Security, a company based in
Boston that specializes in vulnerability detection and research, published
on Monday details of five vulnerabilities in D-Link's firmware, which is
wrapped into at least 14 of its ...
<http://www.pcworld.com/article/2036813/dlink-firmware-flaws-could-allow-ip-video-stream-spying.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcworld.com/article/2036813/dlink-firmware-flaws-could-allow-ip-video-stream-spying.html&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Saturday, April 27, 2013

Google Alert - Vulnerabilities

=== News - 2 new results for [Vulnerabilities] ===

Pentagon in PR fight over F-35 fighter jets' cyber vulnerabilities
RT
The United States Department of Defense is conducting damage control after
the head of the Pentagon's multi-billion dollar F-35 fighter jet program
said he has doubts those planes could withstand a sophisticated
cyberattack. The F-35 program manager, ...
<http://rt.com/usa/fight-f-35-vulnerability-cyber-464/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://rt.com/usa/fight-f-35-vulnerability-cyber-464/&hl=en&geo=us>

Complex Technology Creates Vulnerabilities: CBOE CEO
CNBC.com
Complex Technology Created Vulnerabilities: CBOE CEO. Text Size. Published:
Friday, 26 Apr 2013 | 11:50 AM ET. Paul Toscano By: Paul Toscano. Producer,
CNBC.com. CBOE CEO on Software Glitch. Friday, 26 Apr 2013 | 10:35 AM ET.
"Yesterday we had ...
<http://www.cnbc.com/id/100679157>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.cnbc.com/id/100679157&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Friday, April 26, 2013

Google Alert - Vulnerabilities

=== News - 4 new results for [Vulnerabilities] ===

FSOC: Vulnerabilities From Short-Term Funding Markets Pose System Risks
Wall Street Journal
Of particular concern in the panel's annual report, which regulators
approved Thursday, was the risk posed by vulnerabilities in the tri-party
repo and other short-term funding markets. While the reliance of some firms
on intraday credit has declined ...
<http://online.wsj.com/article/BT-CO-20130425-717219.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/BT-CO-20130425-717219.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

Patching for Industrial Cybersecurity Is a Broken Model
Design News
Vulnerabilities existing in SCADA/ICS applications are high, with as many
as 1,805 yet to be discovered vulnerabilities existing on some control
system computers. The frequency of patching to address future SCADA/ICS
vulnerabilities exceeds the ...
<http://www.designnews.com/author.asp?section_id=1386&doc_id=262540&f_src=designnews_gnews>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.designnews.com/author.asp%3Fsection_id%3D1386%26doc_id%3D262540%26f_src%3Ddesignnews_gnews&hl=en&geo=us>

Fed Zeroes In on Vulnerability to Rate Rise
Wall Street Journal
Fed officials said they haven't seen any major vulnerabilities appear yet.
Regulators have issued a steady drumbeat of warnings that banks need to be
prepared for rate increases and for the impacts that a rate spike would
have on their funding costs ...
<http://online.wsj.com/article/SB10001424127887324743704578445212668614762.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/SB10001424127887324743704578445212668614762.html&hl=en&geo=us>

Why lost , stolen data has touched one billion of us
USA TODAY
These "white hat hackers" break into their own company's systems to find
and fix vulnerabilities before they can be exploited. They also employ
aggressive tactics to monitor and foil the efforts of malicious hackers.
Devices like "honey pots" and ...
<http://www.usatoday.com/story/tech/2013/04/25/data-loss-coporate-intrusions-cyber-espionage/2112549/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.usatoday.com/story/tech/2013/04/25/data-loss-coporate-intrusions-cyber-espionage/2112549/&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Thursday, April 25, 2013

Google Alert - Vulnerabilities

=== News - 7 new results for [Vulnerabilities] ===

Zero-Day Vulnerabilities on the Rise, Trend Micro Report Warns
HSToday
"Of course, Java is cross-platform and that is somewhat attractive to
criminals, but what is really attractive is its vulnerabilities and its
ubiquity," Ferguson said in a statement. "This definitely won't be the last
zero-day vulnerability in Java and ...
<http://www.hstoday.us/briefings/industry-news/single-article/zero-day-vulnerabilities-on-the-rise-trend-micro-report-warns/09392464fb12c4eda45913623d56a121.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.hstoday.us/briefings/industry-news/single-article/zero-day-vulnerabilities-on-the-rise-trend-micro-report-warns/09392464fb12c4eda45913623d56a121.html&hl=en&geo=us>

Java Flaw Targeted By Crimeware Toolkit: Patch Now
InformationWeek
One of the patched vulnerabilities (CVE-2013-2423) could be used to disable
the Java security manager and run arbitrary code outside of the Java
sandbox, according to Jeroen Frijters, the lead developer of the IKVM.NET
project -- which maintains a Java ...
<http://www.informationweek.com/security/application-security/java-flaw-targeted-by-crimeware-toolkit/240153530>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.informationweek.com/security/application-security/java-flaw-targeted-by-crimeware-toolkit/240153530&hl=en&geo=us>

Forex Flash: Beware of SEK vulnerabilities - Societe Generale - NASDAQ.com
NASDAQ
loading. FXstreet.com (Barcelona) - Olivier Korbe, FX Strategist at Societe
Generale warns investors of SEK vulnerabilities, noting that the EUR/SEK
correlation to risky assets broke up last summer, so that relative rates
matter the most since. He adds ...
<http://www.nasdaq.com/article/forex-flash-beware-of-sek-vulnerabilities-societe-generale-cm239995>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.nasdaq.com/article/forex-flash-beware-of-sek-vulnerabilities-societe-generale-cm239995&hl=en&geo=us>

Twitter hoax rocks Wall Street, shows vulnerabilities
Tucson Citizen
Fresh off last week's deadly Boston Marathon attacks, the Texas fertilizer
facility explosion and fear inspired by ricin-laced letters mailed to the
president and congressional leaders, the hoax underscored a great
vulnerability in our 24/7 faster-is ...
<http://tucsoncitizen.com/usa-today-news/2013/04/24/twitter-hoax-rocks-wall-street-shows-vulnerabilities/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://tucsoncitizen.com/usa-today-news/2013/04/24/twitter-hoax-rocks-wall-street-shows-vulnerabilities/&hl=en&geo=us>

Navy's newest warship has cyber-vulnerabilities
Salon
Cybersecurity tests on the USS Freedom — the Navy's newest warship —
found vulnerabilities in the vessel's computer systems. The warship has
nonetheless been deployed to Singapore for eight months, reported Reuters,
after the severity of the ...
<http://www.salon.com/2013/04/24/navys_newest_warship_has_cyber_vulnerabilities/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.salon.com/2013/04/24/navys_newest_warship_has_cyber_vulnerabilities/&hl=en&geo=us>

Skybox Security Risk Control Awarded Best Security Management by SC ...
Fort Mills Times
According to SC Magazine Awards Europe, the products within the Best
Security Management category provide high-level controls for risk
assessment and risk analysis, identify threats, rate enterprise
vulnerabilities to threats and implement controls.
<http://www.fortmilltimes.com/2013/04/24/2643785/skybox-security-risk-control-awarded.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.fortmilltimes.com/2013/04/24/2643785/skybox-security-risk-control-awarded.html&hl=en&geo=us>

Secunia Q1 2013 Report Vulnerable PC Software Installations
Dark Reading
Vulnerabilities are discovered in software programs on a regular basis, and
the vendor will usually release a patch for users to apply in the form of a
security update. If users do not perform these updates, their PC will be
vulnerable to attacks ...
<http://www.darkreading.com/applications/secunia-q1-2013-report-vulnerable-pc-sof/240153513>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.darkreading.com/applications/secunia-q1-2013-report-vulnerable-pc-sof/240153513&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Wednesday, April 24, 2013

Google Alert - Vulnerabilities

=== News - 9 new results for [Vulnerabilities] ===

Cyber vulnerabilities found in Navy's newest warship: official
Reuters
WASHINGTON (Reuters) - The computer network on the U.S. Navy's newest class
of coastal warships showed vulnerabilities in Navy cybersecurity tests, but
the issues were not severe enough to prevent an eight-month deployment to
Singapore, a Navy ...
<http://www.reuters.com/article/2013/04/24/net-us-usa-cybersecurity-ship-idUSBRE93N02X20130424>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.reuters.com/article/2013/04/24/net-us-usa-cybersecurity-ship-idUSBRE93N02X20130424&hl=en&geo=us>

Serious flaw present in latest Java Runtime Environment for desktops and ...
PCWorld
... Runtime Environment for desktops, servers. Java vulnerability hunters
from Polish security research firm Security Explorations claim to have
found a new vulnerability that affects the latest desktop and server
versions of the Java Runtime ...
<http://www.pcworld.com/article/2036202/serious-flaw-present-in-latest-java-runtime-environment-for-desktops-and-servers-researchers-say.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcworld.com/article/2036202/serious-flaw-present-in-latest-java-runtime-environment-for-desktops-and-servers-researchers-say.html&hl=en&geo=us>

Trend Micro Q1 2013 Security Roundup Report Highlights Concerns over
Zero ...
Wall Street Journal
CUPERTINO, Calif., April 23, 2013 /PRNewswire/ -- According to Trend
Micro's (TYO: 4704; TSE: 4704) Q1 2013 Security Roundup Report, the
company's researchers raised the alarm about zero-day vulnerabilities in
addition to concerns about the recent ...
<http://online.wsj.com/article/PR-CO-20130423-908755.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130423-908755.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

HP launches vulnerability inspection tool
SC Magazine UK
HP has launched the new version of its WebInspect technology to help
identify vulnerabilities in web applications. Accordng to the company, the
application security solution replicates real-world attacks through a
guided testing process. It said that ...
<http://www.scmagazineuk.com/hp-launches-vulnerability-inspection-tool/article/290055/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.scmagazineuk.com/hp-launches-vulnerability-inspection-tool/article/290055/&hl=en&geo=us>

OISG Group and Qualys Partner to Deliver Cloud IT Security and
Compliance ...
Wall Street Journal
As cloud solutions, there is no infrastructure or software to deploy or
manage; all an organisation needs is a web browser to scan its network to
identify and fix vulnerabilities or any issues with compliance. Clients can
benefit from the performance ...
<http://online.wsj.com/article/PR-CO-20130423-909579.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130423-909579.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

Zero-day security attacks reach Judgement Day
Techday NZ
As a consequence Micro says the breaches show vulnerabilities are emerging
faster than they can be patched and are quickly being incorporated into
professional attack kits such as the "Black Hole Exploit Kit." "Of
course Java is cross-platform and that ...
<http://techday.com/the-channel/news/zero-day-security-attacks-reach-judgement-day/161687/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://techday.com/the-channel/news/zero-day-security-attacks-reach-judgement-day/161687/&hl=en&geo=us>

King's College Hospital NHS Foundation Trust Relieves Security and IT ...
Wall Street Journal
King's College Hospital selected Promisec due to its agentless approach to
monitoring corporate endpoints, automating the identification of potential
vulnerabilities and remediating any issues rapidly. It also helped the
hospital's IT team ensure ...
<http://online.wsj.com/article/PR-CO-20130423-909518.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130423-909518.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

Infosec 2013: HP launches security test solution WebInspect 10.0
ITProPortal
Designed to identify security vulnerabilities in web services and apps,
WebInspect 10.0 enables organisations to put their solutions under rigorous
technical examination and ensure their final product is stable and secure.
HP claims WebInspect 10.0 can ...
<http://www.itproportal.com/2013/04/23/infosec-2013-hp-launches-security-test-solution-webinspect-100/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.itproportal.com/2013/04/23/infosec-2013-hp-launches-security-test-solution-webinspect-100/&hl=en&geo=us>

Prioritizing Your Database Security Patches
Dark Reading
Solving this issue in part means properly prioritizing what vulnerabilities
need to be fixed – a process that starts with the relevance of a
particular patch to the organization and its severity. For example, notes
Imperva CTO Amichai Shulman, a ...
<http://www.darkreading.com/vulnerability/prioritizing-your-database-security-patc/240153473>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.darkreading.com/vulnerability/prioritizing-your-database-security-patc/240153473&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Tuesday, April 23, 2013

Google Alert - Vulnerabilities

=== News - 6 new results for [Vulnerabilities] ===

HP Helps Organizations Identify Vulnerabilities in Web Applications
Wall Street Journal
Web applications remain a substantial source of security vulnerabilities.
From 2000 to 2012, four of the six most reported vulnerabilities were
exploitable via the web.(1) Thorough application security testing is proven
to prevent attacks before they ...
<http://online.wsj.com/article/PR-CO-20130423-900094.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130423-900094.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

Oracle Bug Hunter Spots Java 7 Server Flaw
InformationWeek
Last week, Oracle released Java 7 update 21, which patched 42 new
vulnerabilities. Come Monday, however, a security researcher warned that
he'd discovered a reflection API vulnerability in the newly shipped Server
Java Runtime Environment (JRE).
<http://www.informationweek.com/security/vulnerabilities/oracle-bug-hunter-spots-java-7-server-fl/240153337>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.informationweek.com/security/vulnerabilities/oracle-bug-hunter-spots-java-7-server-fl/240153337&hl=en&geo=us>

Paul: Boston shows 'vulnerabilities' in current immigration system
The Hill
Sen. Rand Paul (R-Ky.) has urged Senate Majority Leader Harry Reid (D-Nev.)
to address national security vulnerabilities exposed by the Boston Marathon
before moving forward with comprehensive immigration reform legislation.
The two suspects in the ...
<http://thehill.com/homenews/senate/295281-paul-boston-shows-weakness-in-immigration-system>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://thehill.com/homenews/senate/295281-paul-boston-shows-weakness-in-immigration-system&hl=en&geo=us>

CTA and IOC sign MOU to address vulnerabilities and improve food security
ICT Update
The signing is a follow-up to a regional Briefing organized by CTA, and
held in Mauritius in April 2012, which addressed the topic of
vulnerabilities of small island economies and resilience in key areas of
agricultural production, trade and ...
<http://brussels.cta.int/index.php?option=com_k2&id=7653:cta-and-ioc-sign-mou-to-address-vulnerabilities-and-improve-food-security&view=item&Itemid=54>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://brussels.cta.int/index.php%3Foption%3Dcom_k2%26id%3D7653:cta-and-ioc-sign-mou-to-address-vulnerabilities-and-improve-food-security%26view%3Ditem%26Itemid%3D54&hl=en&geo=us>

New Research Shows Remote Users Expose Companies to Cybercrime
Wall Street Journal
Vulnerabilities in mobile Web browsers pose a major threat to mobile device
security and our latest study shows that they have led to an increasing
number of successful attacks in 2012," said David Duncan, Chief Marketing
Officer at Webroot. "Mobile ...
<http://online.wsj.com/article/PR-CO-20130423-902780.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130423-902780.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

Naval Reactors Program lacks 'fully effective' cybersecurity program
FierceGovernmentIT
In an April 12 report (.pdf), the Energy Department office of inspector
finds much to laud--noting that recent vulnerability scans turned up just
335 high- and medium-risk vulnerabilities, as opposed to a July 2011 scan
that turned up about 9,000 such ...
<http://www.fiercegovernmentit.com/story/naval-reactors-program-lacks-fully-effective-cybersecurity-program/2013-04-22>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.fiercegovernmentit.com/story/naval-reactors-program-lacks-fully-effective-cybersecurity-program/2013-04-22&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Saturday, April 20, 2013

Google Alert - Vulnerabilities

=== News - 4 new results for [Vulnerabilities] ===

iPhone has most vulnerabilities, so why is Android is the most attacked?
GCN.com
There was a 32 percent increase in the number of documented vulnerabilities
for mobile operating systems in 2012 and, not surprisingly, a 58 percent
increase in mobile malware, according the most recent annual Internet
Security Threat Report from ...
<http://gcn.com/articles/2013/04/19/iphone-vulnerabilities-android-most-attacked.aspx>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://gcn.com/articles/2013/04/19/iphone-vulnerabilities-android-most-attacked.aspx&hl=en&geo=us>

Many SOHO routers vulnerable
Infosecurity Magazine
Last year, independent security researcher Phil Purviance demonstrated a
vulnerability in a WRT54GL router that would allow a hacker to design an
internet worm that targeted them and turned the routers into a powerful
botnet that is able to monitor ...
<http://www.infosecurity-magazine.com/view/31923/many-soho-routers-vulnerable>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.infosecurity-magazine.com/view/31923/many-soho-routers-vulnerable&hl=en&geo=us>

Oracle announces delays in the release schedule for JDK 8
TheServerSide.com
Basically, Reinhold's statement is that the Oracle team shifted focus away
from features to fix some security vulnerabilities and to get the features
back on track they're going to let the schedule drag on just a little bit
so they can get lambda ...
<http://www.theserverside.com/news/thread.tss?thread_id=74267>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.theserverside.com/news/thread.tss%3Fthread_id%3D74267&hl=en&geo=us>

Nimble Spammers Exploit Boston Bombings, Texas Disaster
CIO
Earlier this week, Oracle issued a "critical" update to Java -- one of many
in recent weeks -- to address security vulnerabilities in the programming
language. However, that's unlikely to deter digital desperadoes from
continuing their activities ...
<http://www.cio.com/article/732060/Nimble_Spammers_Exploit_Boston_Bombings_Texas_Disaster>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.cio.com/article/732060/Nimble_Spammers_Exploit_Boston_Bombings_Texas_Disaster&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Friday, April 19, 2013

Google Alert - Vulnerabilities

=== News - 6 new results for [Vulnerabilities] ===

Oracle Updates Java, Patches 42 Vulnerabilities
Datamation
This week, Oracle released a massive update to Java. It patches 42 security
vulnerabilities and now requires developers to get code-signing
certificates for their Java apps. According to Brian Krebs of Krebs on
Security, "Oracle Corp. today released an ...
<http://www.datamation.com/news/oracle-updates-java-patches-42-vulnerabilities.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.datamation.com/news/oracle-updates-java-patches-42-vulnerabilities.html&hl=en&geo=us>

Companies Risking Their Assets With Outdated Software
Wall Street Journal
The numbers are striking, especially with attacks on corporations and
institutions via software vulnerabilities headlining the news in recent
months. The Red October malware for instance, which stole sensitive
information from governmental and research ...
<http://online.wsj.com/article/PR-CO-20130418-909800.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130418-909800.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

Building Trust in the Global Supply Chain
Brookings Institution
Long supply chains and inadequate product evaluation before deployment
create a situation of widespread vulnerability in Information and
Communications Technology (ICT) supply chains. As trade grows more
globalized, the supply chain has become more ...
<http://www.brookings.edu/events/2013/04/18-global-supply-chain>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.brookings.edu/events/2013/04/18-global-supply-chain&hl=en&geo=us>

Oracle closes 128 holes across its product range
The H
Oracle's Database Server, both the 10g and 11g versions, is affected by
four vulnerabilities in total; aside from the hole in Workload Manager with
a score of 10, the other three vulnerabilities have a CVSS2 score of 5. All
of these vulnerabilities are ...
<http://www.h-online.com/open/news/item/Oracle-closes-128-holes-across-its-product-range-1844692.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.h-online.com/open/news/item/Oracle-closes-128-holes-across-its-product-range-1844692.html&hl=en&geo=us>

Warning claxons sound for Windows XP
TG Daily
New vulnerabilities are always being found, and new vulnerabilities that
are found in more current products could affect Windows XP and Office 2003,
the duo said. They warned that any unpatched device could be vulnerable to
attack, even a private ...
<http://www.tgdaily.com/hardware-brief/71044-warning-claxons-sound-for-windows-xp>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.tgdaily.com/hardware-brief/71044-warning-claxons-sound-for-windows-xp&hl=en&geo=us>

Cyberattacks increasingly targeting small businesses, report says
Financial Post
The Android mobile operating system led the pack with 103 vulnerabilities
in 2012, compared with only one for the Apple iOS platform and one on
Windows Mobile. Mr. Thakur said the disparity is mainly due Android's huge
market share and open nature of ...
<http://business.financialpost.com/2013/04/16/cyberattacks-symantec-report/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://business.financialpost.com/2013/04/16/cyberattacks-symantec-report/&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Thursday, April 18, 2013

Google Alert - Vulnerabilities

=== News - 9 new results for [Vulnerabilities] ===

Apple's iOS had more security vulnerabilities than Android in 2012
Inquirer
Symantec's report revealed that there are 387 documented vulnerabilities on
Apple's iOS software, compared to a mere 13 on Android. However, despite
Apple's higher iOS vulnerability score, Android remained the leading mobile
operating system in the ...
<http://www.theinquirer.net/inquirer/news/2262231/apple-ios-had-more-security-vulnerabilities-than-android-in-2012>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.theinquirer.net/inquirer/news/2262231/apple-ios-had-more-security-vulnerabilities-than-android-in-2012&hl=en&geo=us>

Oracle Issues Critical Java Update, Plugging 42 Vulnerabilities - CRN.com
CRN
Oracle issued a massive update to its highly targeted Java software, fixing
42 Java vulnerabilities, including 39 serious flaws that can be remotely
exploited by attackers. The Java fixes were part of more than 100 security
updates issued by Oracle ...
<http://www.crn.com/news/security/240153062/oracle-issues-critical-java-update-plugging-42-vulnerabilities.htm>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.crn.com/news/security/240153062/oracle-issues-critical-java-update-plugging-42-vulnerabilities.htm&hl=en&geo=us>

ACLU Asks FTC to Probe 'Dangerous' Android Bugs
PC Magazine
"A significant number of consumers are using smartphones running a version
of the Android operating system with known, exploitable security
vulnerabilities for which fixes have been published by Google, but have not
been distributed to consumers' ...
<http://www.pcmag.com/article2/0,2817,2417864,00.asp>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcmag.com/article2/0,2817,2417864,00.asp&hl=en&geo=us>

AlienVault Virtual Appliance Detects Threats, Assesses Vulnerabilities
eWeek
Two key pieces of the product are the vulnerability assessment and network
behavioral monitoring. The vulnerability assessment engine is driven by
threat intelligence provided by the company, and offers the ability to
detect the latest vulnerabilities ...
<http://www.eweek.com/security/alienvault-virtual-appliance-detects-threats-assesses-vulnerabilities/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.eweek.com/security/alienvault-virtual-appliance-detects-threats-assesses-vulnerabilities/&hl=en&geo=us>

Vulnerabilities and zero-day threats up in 2012, claims Symantec
Computing
"In the past three years, much of the growth in zero-day vulnerabilities
used in attacks can be attributed to two groups; the authors of Stuxnet and
the Elderwood Gang. In 2010, Stuxnet was responsible for four of the 14
discovered zero-day ...
<http://www.computing.co.uk/ctg/news/2262103/vulnerabilities-and-zeroday-threats-up-in-2012-claims-symantec>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.computing.co.uk/ctg/news/2262103/vulnerabilities-and-zeroday-threats-up-in-2012-claims-symantec&hl=en&geo=us>

Security vulnerabilities found in Android apps
TG Daily
Su and Xu, with UC Davis graduate student Fangqi Sun and visiting scholar
Linfeng Liu, Xi'an Jiatong University, China, found that many of the apps
they surveyed had potential vulnerabilities. They looked closely at a
handful of major applications that ...
<http://www.tgdaily.com/security-features/71017-security-vulnerabilities-found-in-android-apps>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.tgdaily.com/security-features/71017-security-vulnerabilities-found-in-android-apps&hl=en&geo=us>

Oracle plugs a host of critical Java vulnerabilities - Help Net Security
Help Net Security
Oracle's Java SE Critical Patch Update for April 2013 contains 19 CVEs with
CVSS base score of 10 (the highest you can go) indicating that exploiting
the vulnerability is not particularly challenging and could give complete
control of compromised systems.
<http://www.net-security.org/secworld.php?id=14767>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.net-security.org/secworld.php%3Fid%3D14767&hl=en&geo=us>

Oracle releases patch to fix Java vulnerabilities
E&T magazine
The patch fixes 42 vulnerabilities within Java, including "the vast
majority" of those that have been rated as the most critical, said Oracle
Executive Vice President Hasan Rizvi. A series of big security flaws in the
Java plug-in for browsers have ...
<http://eandt.theiet.org/news/2013/apr/oracle-java.cfm>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://eandt.theiet.org/news/2013/apr/oracle-java.cfm&hl=en&geo=us>

Oracle Fixes 42 Java Flaws - TechWeekEurope UK
TechWeekEurope UK
"Out of the 42 vulnerabilities, only 2 can affect server deployments of
Java. Server exploitation can only occur as a result of these bugs when
malicious data is supplied into specific APIs on the server (e.g., through
a web service), and one of these ...
<http://www.techweekeurope.co.uk/news/oracle-patches-java-other-vulnerabilities-113362>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.techweekeurope.co.uk/news/oracle-patches-java-other-vulnerabilities-113362&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Wednesday, April 17, 2013

Google Alert - Vulnerabilities

=== News - 9 new results for [Vulnerabilities] ===

Oracle Preps Massive Java Bug Fix
InformationWeek
"This critical patch update contains 42 new security vulnerability fixes,"
said Oracle's prerelease announcement. Furthermore, a whopping "39 of these
vulnerabilities may be remotely exploitable without authentication, i.e.,
may be exploited over a ...
<http://www.informationweek.com/security/application-security/oracle-preps-massive-java-bug-fix/240152987>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.informationweek.com/security/application-security/oracle-preps-massive-java-bug-fix/240152987&hl=en&geo=us>

"With Mobile, It's Not the Vulnerability that Will Get You"
TechnologyTell (blog)
light-virus-1 Above is a quote from Symantec's latest Internet Security
Threat Report, which basically means that the number of vulnerabilities in
an operating system are not the main problem for a mobile device. It's how
often those vulnerabilities ...
<http://www.technologytell.com/gadgets/118806/with-mobile-its-not-the-vulnerability-that-will-get-you/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.technologytell.com/gadgets/118806/with-mobile-its-not-the-vulnerability-that-will-get-you/&hl=en&geo=us>

Wireless Camera Flaws Allow Remote Exploitation
InformationWeek
According to a related vulnerability report released by the Department of
Homeland Security on March 15, the Foscam IP cameras -- prior to firmware
version 11.37.2.49 -- contain a directory traversal vulnerability in their
Web interface that "allows ...
<http://www.informationweek.com/security/vulnerabilities/wireless-camera-flaws-allow-remote-explo/240153001>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.informationweek.com/security/vulnerabilities/wireless-camera-flaws-allow-remote-explo/240153001&hl=en&geo=us>

Oracle preps 128 security patches; Java gets 42
CNET
Oracle will release today 128 fixes for security vulnerabilities that
affect "hundreds" of its products. The software giant and Java maker said
in a pre-release announcement today that four of the patches include fixes
for Oracle's flagship database ...
<http://news.cnet.com/8301-1001_3-57579845-92/oracle-preps-128-security-patches/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://news.cnet.com/8301-1001_3-57579845-92/oracle-preps-128-security-patches/&hl=en&geo=us>

Home network routers may contain vulnerabilities
Experts Exchange (blog)
Home network routers may contain vulnerabilities and some can even invite
intruders into your home. Some home network router vendors are slow to
respond, or they do not respond at all to researchers that report router
vulnerabilities. It is the vendors ...
<http://blog.experts-exchange.com/ee-tech-news/routers/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://blog.experts-exchange.com/ee-tech-news/routers/&hl=en&geo=us>

Coordinated Disclosure, Bug Bounties Help Speed Patches
Dark Reading
For more than a decade, researchers and software makers have debated the
proper method of disclosing vulnerabilities so that end users might be best
protected against the malicious exploitation of the security holes. A
recent report suggests that he ...
<http://www.darkreading.com/vulnerability-management/167901026/security/news/240153029/coordinated-disclosure-bug-bounties-help-speed-patches>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.darkreading.com/vulnerability-management/167901026/security/news/240153029/coordinated-disclosure-bug-bounties-help-speed-patches&hl=en&geo=us>

Web Hosting Provider Breached Via Adobe ColdFusion Vulnerabilities
Dark Reading
"As a result of the vulnerability, this group gained access to a web
server, parts of our source code, and ultimately, our database. We have
been working around the clock since discovering this vulnerability. Our
investigation reveals that this group ...
<http://www.darkreading.com/cloud-security/167901092/security/news/240153026/web-hosting-provider-breached-via-adobe-coldfusion-vulnerabilities>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.darkreading.com/cloud-security/167901092/security/news/240153026/web-hosting-provider-breached-via-adobe-coldfusion-vulnerabilities&hl=en&geo=us>

Boston bombing shows vulnerabilities in public spaces, police say
Los Angeles Times
Boston bombing shows vulnerabilities in public spaces, police say. print.
Comments. 1. By Joel Rubin, Kim Murphy and Andrew Blankstein. April 16,
2013, 4:48 p.m.. After bombs ripped through the crowd gathered along the
final. stretch of the Boston ...
<http://www.latimes.com/local/lanow/la-me-ln-boston-bombing-shows-attack-vulnerabilities-police-say-20130416,0,1678904.story>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.latimes.com/local/lanow/la-me-ln-boston-bombing-shows-attack-vulnerabilities-police-say-20130416,0,1678904.story&hl=en&geo=us>

Veracode Studies Evolution of Software Languages and Their Security in
Latest ...
Wall Street Journal
In addition to outlining the history of languages and how each is
traditionally used, the infographic provides information on what type of
vulnerabilities are most common in programs developed in each language and
which flaws are most typically fixed ...
<http://online.wsj.com/article/PR-CO-20130416-909307.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130416-909307.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Tuesday, April 16, 2013

Google Alert - Vulnerabilities

=== News - 5 new results for [Vulnerabilities] ===

Vulnerabilities up nearly 20%, reveals new HP research group
PC Advisor
As part of the HP Enterprise Security Products (ESP) business unit, HPSR
will lead HP's security research agenda, leveraging existing HP research
groups, including HP DVLabs, a research organization focused on
vulnerability discovery and analysis, ...
<http://www.pcadvisor.co.uk/news/security/3442200/vulnerabilities-up-nearly-20-reveals-new-hp-research-group/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcadvisor.co.uk/news/security/3442200/vulnerabilities-up-nearly-20-reveals-new-hp-research-group/&hl=en&geo=us>

"To highlight unsuspected vulnerabilities" - ex Chief Whip Andrew
Mitchell's ...
The Independent (blog)
Their website offers "a 360 degree external assessment to highlight
unsuspected liabilities and vulnerabilities which Chairmen and Chief
Executives prefer to hear about from a sympathetic ally than through a
hostile press or a ruthless competitor…" ...
<http://blogs.independent.co.uk/2013/04/16/to-highlight-unsuspected-vulnerabilities-ex-chief-whip-andrew-mitchells-new-job/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://blogs.independent.co.uk/2013/04/16/to-highlight-unsuspected-vulnerabilities-ex-chief-whip-andrew-mitchells-new-job/&hl=en&geo=us>

The Most Comprehensive Map of the Internet Yet May Give Clues for Sealing
Up ...
Smithsonian (blog)
If they succeed, the two researchers think their Atlas will play an
integral part in finding vulnerabilities—including the location of hubs
of activity, servers and cables—and preventing them from ever becoming a
problem. Banks, governments ...
<http://blogs.smithsonianmag.com/smartnews/2013/04/the-most-comprehensive-map-of-the-internet-yet-may-give-clues-for-sealing-up-vulnerabilities/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://blogs.smithsonianmag.com/smartnews/2013/04/the-most-comprehensive-map-of-the-internet-yet-may-give-clues-for-sealing-up-vulnerabilities/&hl=en&geo=us>

Symantec Internet Security Threat Report Reveals Increase in
Cyberespionage ...
Wall Street Journal
Surprisingly, these increases cannot necessarily be attributed to the 30
percent increase in mobile vulnerabilities. While Apple's iOS had the most
documented vulnerabilities, it only had one threat discovered during the
same period. Android, by ...
<http://online.wsj.com/article/PR-CO-20130416-900023.html?mod=googlenews_wsj>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://online.wsj.com/article/PR-CO-20130416-900023.html%3Fmod%3Dgooglenews_wsj&hl=en&geo=us>

First Report on Risks and Vulnerabilities in the European Union’s (EU ...
News-Insurances (press release)
The Joint Committee of the European Supervisory Authorities (Joint
Committee) has published today its first Report on Risks and
Vulnerabilities in the European Union’s (EU) Financial System. The
publication identifies the key cross-sectoral risks ...
<http://www.newsinsurances.co.uk/first-report-on-risks-and-vulnerabilities-in-the-european-unions-eu-financial-system/0169492912>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.newsinsurances.co.uk/first-report-on-risks-and-vulnerabilities-in-the-european-unions-eu-financial-system/0169492912&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Monday, April 15, 2013

Google Alert - Vulnerabilities

=== News - 1 new result for [Vulnerabilities] ===

Charlie Crist vulnerabilities are fueling speculation over Nelson running
for ...
MiamiHerald.com (blog)
Charlie Crist vulnerabilities are fueling speculation over Nelson running
for governo. From @AdamSmithTimes. Major Democratic financial backers,
including trial lawyers and teachers, are gushing about Charlie Crist and
his prospects for 2014. Crist has ...
<http://miamiherald.typepad.com/nakedpolitics/2013/04/charlie-crist-vulnerabilities-are-fueling-dem-speculation-over-nelson-running-for-governo.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://miamiherald.typepad.com/nakedpolitics/2013/04/charlie-crist-vulnerabilities-are-fueling-dem-speculation-over-nelson-running-for-governo.html&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Saturday, April 13, 2013

Google Alert - Vulnerabilities

=== News - 6 new results for [Vulnerabilities] ===

VIDEO: The Following's Kevin Bacon Teases "Vulnerabilities" in Joe
Carroll's Plan
Seattle Post Intelligencer
"You start to see that he does have vulnerabilities, and that maybe this
master plan is not as well thought out as he thought it was," Bacon tells
TVGuide.com. "The second that that happens, [Ryan] has the instinct to know
that's what's going on with ...
<http://www.seattlepi.com/entertainment/tv/tvguide/article/VIDEO-The-Following-s-Kevin-Bacon-Teases-4431365.php>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.seattlepi.com/entertainment/tv/tvguide/article/VIDEO-The-Following-s-Kevin-Bacon-Teases-4431365.php&hl=en&geo=us>

Researchers find vulnerabilities in online poker applications
CSO
Luigi Auriemma and Donato Ferrante of ReVuln, which is a consultancy that
does vulnerability research, focused their analysis on poker clients
downloaded by players in order to game. The software clients interact with
so-called "skins," or online poker ...
<http://www.csoonline.com/article/731669/researchers-find-vulnerabilities-in-online-poker-applications>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.csoonline.com/article/731669/researchers-find-vulnerabilities-in-online-poker-applications&hl=en&geo=us>

Hackers Tap Into Wireless Security Cameras
TechNewsDaily
The answer, apparently, is hackers. Foscam wireless security cameras are
apparently not much more secure than their private webcam counterparts, and
the security devices contain vulnerabilities that allow anyone to look in
on supposedly protected ...
<http://www.technewsdaily.com/17740-vulnerabilities-plague-wireless-webcams.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.technewsdaily.com/17740-vulnerabilities-plague-wireless-webcams.html&hl=en&geo=us>

Domain Names Like .Food May Leave Bad Taste
InformationWeek
Easily overlooked vulnerabilities could put your data and business at risk.
Also in the new, all-digital 10 Web Threats special issue of Dark Reading:
How hackers compromised an iOS developers' website to exploit Java plug-in
vulnerabilities and attack ...
<http://www.informationweek.com/security/vulnerabilities/domain-names-like-food-may-leave-bad-tas/240152711>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.informationweek.com/security/vulnerabilities/domain-names-like-food-may-leave-bad-tas/240152711&hl=en&geo=us>

ICS-CERT reports two hacks on building management systems
Infosecurity Magazine
State-sponsored malware such as Stuxnet and Flame raised awareness of
ICS/SCADA vulnerabilities, and the potential for serious infrastructure
damage via them. New research presented today at Blackhat Europe discusses
the findings of a honeynet study ...
<http://www.infosecurity-magazine.com/view/31793/icscert-reports-two-hacks-on-building-management-systems/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.infosecurity-magazine.com/view/31793/icscert-reports-two-hacks-on-building-management-systems/&hl=en&geo=us>

Hackers Could Hijack Planes, Security Expert Warns
Infopackets
A security researcher is warning that vulnerabilities in the aviation
industry's communications systems could allow a hacker to take control of
an airplane mid-flight. German security consultant Hugo Teso recently
presented his research on the aviation ...
<http://www.infopackets.com/news/security/2013/20130412_hackers_could_hijack_planes_security_expert_warns.htm>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.infopackets.com/news/security/2013/20130412_hackers_could_hijack_planes_security_expert_warns.htm&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Friday, April 12, 2013

Google Alert - Vulnerabilities

=== News - 7 new results for [Vulnerabilities] ===

Vulnerabilities in aircraft systems allow remote airplane hijacking ...
Computerworld
IDG News Service - The lack of security in communication technologies used
in the aviation industry makes it possible to remotely exploit
vulnerabilities in critical on-board systems and attack aircraft in flight,
according to research presented ...
<http://www.computerworld.com/s/article/9238320/Vulnerabilities_in_aircraft_systems_allow_remote_airplane_hijacking_researcher_says>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.computerworld.com/s/article/9238320/Vulnerabilities_in_aircraft_systems_allow_remote_airplane_hijacking_researcher_says&hl=en&geo=us>

Researchers find vulnerabilities in online poker applications
PCWorld
A review of poker applications shows that many suffer security flaws,
putting players at risk of attack, according to a Malta-based security
company. Luigi Auriemma and Donato Ferrante of ReVuln, which is a
consultancy that does vulnerability research, ...
<http://www.pcworld.com/article/2034086/researchers-find-vulnerabilities-in-online-poker-applications.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcworld.com/article/2034086/researchers-find-vulnerabilities-in-online-poker-applications.html&hl=en&geo=us>

Airplane Takeover Demonstrated Via Android App
InformationWeek
The vulnerabilities he exploited in his presentation relate to ACARS
(Aircraft Communications Addressing and Reporting System), which is used
for exchanging text messages between aircraft and ground stations via radio
(VHF) or satellite, he said in a ...
<http://www.informationweek.com/security/vulnerabilities/airplane-takeover-demonstrated-via-andro/240152760>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.informationweek.com/security/vulnerabilities/airplane-takeover-demonstrated-via-andro/240152760&hl=en&geo=us>

Microsoft amends security update after reports of system errors
PCWorld
The update, number 2823324, was distributed on Tuesday as part of MS13-036,
a batch of patches that fix three Windows vulnerabilities in a kernel-mode
driver. "We've determined that the update, when paired with certain
third-party software, can cause ...
<http://www.pcworld.com/article/2034089/microsoft-amends-security-update-after-reports-of-system-errors.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcworld.com/article/2034089/microsoft-amends-security-update-after-reports-of-system-errors.html&hl=en&geo=us>

Linksys Smart Wi-Fi Safe from Home Router Flaws; Classic Configuration ...
Threatpost (blog)
Cisco clarified today that its Linksys EA2700 home routers running the new
Smart Wi-Fi firmware released last June are immune to vulnerabilities
disclosed this week by a researcher. EA2700 routers, however, that are
still running on the classic EA2700 ...
<http://threatpost.com/en_us/blogs/linksys-smart-wi-fi-safe-home-router-flaws-classic-configuration-vulnerable-041113>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://threatpost.com/en_us/blogs/linksys-smart-wi-fi-safe-home-router-flaws-classic-configuration-vulnerable-041113&hl=en&geo=us>

DNS Bug Disclosure: ICANN Releases New Guidelines
CircleID
"define the role ICANN will perform in circumstances where vulnerabilities
are reported and ICANN determines that the security, stability or
resiliency of the DNS is exploited or threatened. The guidelines also
explain how a party, described as a ...
<http://www.circleid.com/posts/20130411_dns_bug_disclosure_icann_releases_new_guidelines/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.circleid.com/posts/20130411_dns_bug_disclosure_icann_releases_new_guidelines/&hl=en&geo=us>

Report: Apple, Android Apps Riddled With Coding Flaws
CRN
Poorly implemented encryption and a bevy of Web application vulnerabilities
in Google Android and Apple iOS apps open them up to determined attackers,
according to an analysis of mobile application security conducted by
Veracode. The Burlington, Mass.
<http://www.crn.com/news/security/240152775/report-apple-android-apps-riddled-with-coding-flaws.htm>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.crn.com/news/security/240152775/report-apple-android-apps-riddled-with-coding-flaws.htm&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Thursday, April 11, 2013

Google Alert - Vulnerabilities

=== News - 6 new results for [Vulnerabilities] ===

Vulnerabilities in aircraft systems allow remote airplane hijacking ...
PCWorld
The lack of security in communication technologies used in the aviation
industry makes it possible to remotely exploit vulnerabilities in critical
on-board systems and attack aircraft in flight, according to research
presented Wednesday at the Hack in ...
<http://www.pcworld.com/article/2033807/vulnerabilities-in-aircraft-systems-allow-remote-airplane-hijacking-researcher-says.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.pcworld.com/article/2033807/vulnerabilities-in-aircraft-systems-allow-remote-airplane-hijacking-researcher-says.html&hl=en&geo=us>

Microsoft Releases 'Boring' Patch Tuesday Update
Datamation
Brian Prince with eWeek explained, "Microsoft patched 14 security
vulnerabilities today in its Patch Tuesday update, including critical bugs
affecting Windows and Internet Explorer. To address the vulnerabilities,
Microsoft released a total of nine ...
<http://www.datamation.com/news/microsoft-releases-boring-patch-tuesday-update.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.datamation.com/news/microsoft-releases-boring-patch-tuesday-update.html&hl=en&geo=us>

Only 35% of companies automatically install updates: Survey
Computer Business Review
Updates are designed to enhance software performance and stability and
periodical updates can eliminate vulnerabilities in corporate workstations.
Kaspersky Lab said cybercriminals use exploits and unpatched
vulnerabilities in outdated software to ...
<http://security.cbronline.com/news/only-35-of-companies-automatically-install-updates-survey-100413>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://security.cbronline.com/news/only-35-of-companies-automatically-install-updates-survey-100413&hl=en&geo=us>

Adobe patches Flash, Shockwave and ColdFusion
ZDNet
The vulnerabilities affect Adobe Flash Player version 11.6.602.180 and
earlier for Windows and Mac, Adobe Flash Player version 11.2.202.275 and
earlier for Linux, Adobe Flash Player version 11.1.115.48 and earlier for
Android 4.x, and Adobe Flash ...
<http://www.zdnet.com/adobe-patches-flash-shockwave-and-coldfusion-7000013792/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.zdnet.com/adobe-patches-flash-shockwave-and-coldfusion-7000013792/&hl=en&geo=us>

FOI Request Reveals BBC Lost 785 Laptops, Mobiles And Tablets
TechWeekEurope UK
"To tackle this problem, it's critical that businesses ensure that all
devices are protected and secure, by identifying and fixing application
vulnerabilities, to prevent malicious hackers from exploiting them."
Earlier this week, Veracode released its ...
<http://www.techweekeurope.co.uk/news/bbc-foi-requests-security-byod-112706>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.techweekeurope.co.uk/news/bbc-foi-requests-security-byod-112706&hl=en&geo=us>

Microsoft Fixes Critical IE Bugs in April Patch Tuesday
PC Magazine
All in all, Microsoft addressed 13 security vulnerabilities this month. The
good news is that most of the impact is on the legacy code base and not on
the latest versions of Microsoft products, said Paul Henry, a security
analyst with Lumension. "If ...
<http://securitywatch.pcmag.com/none/310194-microsoft-fixes-critical-ie-bugs-in-april-patch-tuesday>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://securitywatch.pcmag.com/none/310194-microsoft-fixes-critical-ie-bugs-in-april-patch-tuesday&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

Wednesday, April 10, 2013

Google Alert - Vulnerabilities

=== News - 9 new results for [Vulnerabilities] ===

Microsoft patches 13 vulnerabilities
Help Net Security
April has turned out to be a rather slow month for Patch Tuesday. There are
nine bulletins addressing a total of 13 vulnerabilities, but only two of
the bulletins are rated "critical," a category that means an attacker
can get control over the targeted ...
<http://www.net-security.org/secworld.php?id=14732>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.net-security.org/secworld.php%3Fid%3D14732&hl=en&geo=us>

Pwn2Own IE Vulnerabilities Missing from Microsoft Patch Tuesday Updates
Threatpost (blog)
UPDATE - In an unexpected turn, Microsoft's monthly Patch Tuesday security
updates released today did not include patches for Internet Explorer
vulnerabilities used during the Pwn2Own contest one month ago. The popular
hacker contest attracted ...
<http://threatpost.com/en_us/blogs/pwn2own-ie-vulnerabilities-missing-microsoft-patch-tuesday-updates-040913>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://threatpost.com/en_us/blogs/pwn2own-ie-vulnerabilities-missing-microsoft-patch-tuesday-updates-040913&hl=en&geo=us>

Thatcher-Clinton Comparisons Show Hillary's Vulnerabilities
MyNorthwest.com
The death of Margaret Thatcher led numerous media commentators to draw
dubious comparisons between Britain's "Iron Lady" and prospective president
Hillary Clinton. But Thatcher spent her entire life espousing the same core
principles—including ...
<http://mynorthwest.com/321/2248267/ThatcherClinton-Comparisons-Show-Hillarys-Vulnerabilities>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://mynorthwest.com/321/2248267/ThatcherClinton-Comparisons-Show-Hillarys-Vulnerabilities&hl=en&geo=us>

Control system hack at manufacturer raises red flag
CSO
Intruders successfully exploited a credential storage vulnerability in the
manufacturer's Tridium energy management software made by Honeywell and
identified all the company's Internet facing devices, the agency reported
in the latest edition of its ...
<http://www.csoonline.com/article/731495/control-system-hack-at-manufacturer-raises-red-flag>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.csoonline.com/article/731495/control-system-hack-at-manufacturer-raises-red-flag&hl=en&geo=us>

Cyber Security Experts Set Research Priorities at NIST Workshop to
Secure ...
Sacramento Bee
The industry-led Cyber Security Research Alliance (CSRA) and NIST hosted
the two-day event focused on identifying and addressing threats and
vulnerabilities for Cyber-Physical Systems (CPS), which includes industrial
controls, data communications, and ...
<http://www.sacbee.com/2013/04/09/5327621/cyber-security-experts-set-research.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.sacbee.com/2013/04/09/5327621/cyber-security-experts-set-research.html&hl=en&geo=us>

SQL injection flaws easy to find and exploit, Veracode report finds
IDG News Service
The software industry's inability to reduce the number of security flaws in
its code is fuelling an age of the 'everyday hacker', criminals who can
exploit vulnerabilities with a minimum of technical skills, Security
testing firm Vercode's latest State ...
<http://news.idg.no/cw/art.cfm?id=555A92E5-BE94-E42C-B2DE526A22CB5F68>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://news.idg.no/cw/art.cfm%3Fid%3D555A92E5-BE94-E42C-B2DE526A22CB5F68&hl=en&geo=us>

65% Cos Using Client Mgmt Tools Put Their Data At Risk
Biztech2.com
Exploits are malicious objects that use vulnerabilities in operating
systems and applications to infect computers. These exploits are often used
to launch attacks on companies since even corporate security solutions
often struggle to detect and destroy ...
<http://biztech2.in.com/news/security/65-cos-using-client-mgmt-tools-put-their-data-at-risk/156672/0>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://biztech2.in.com/news/security/65-cos-using-client-mgmt-tools-put-their-data-at-risk/156672/0&hl=en&geo=us>

Microsoft squashes 9 bugs with Patch Tuesday fixes
Register
The updates plug two "critical" vulnerabilities in Internet Explorer and
Windows that allow for remote code execution, and seven "important" vulns
that allow for privilege escalation, denial of service attacks, and data
leakage. One of the critical ...
<http://www.theregister.co.uk/2013/04/09/microsoft_patch_tuesday_april/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.theregister.co.uk/2013/04/09/microsoft_patch_tuesday_april/&hl=en&geo=us>

Adobe Ships Fixes for Flash, ColdFusion and Shockwave in April Patch Release
Threatpost (blog)
The vulnerabilities addressed are considered important ones in terms of
severity, meaning that they could be exploited to compromise data security,
sensitive information, or user resources. Its second class priority rating
suggests that, despite there ...
<http://threatpost.com/en_us/blogs/adobe-ships-fixes-flash-coldfusion-and-shockwave-april-patch-release-040913>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://threatpost.com/en_us/blogs/adobe-ships-fixes-flash-coldfusion-and-shockwave-april-patch-release-040913&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail