Thursday, July 11, 2013

Google Alert - Vulnerabilities

=== News - 10 new results for [Vulnerabilities] ===

Microsoft, Adobe Patch Critical Vulnerabilities in Security Updates
eWeek
As part of Patch Tuesday, Microsoft issued patches for 34 vulnerabilities
across its product lines. Six of the seven bulletins this month are rated
"Critical," while the remaining bulletin is considered "Important." The
critical bulletins cover issues ...
<http://www.eweek.com/security/microsoft-adobe-patch-critical-vulnerabilities-in-security-updates/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.eweek.com/security/microsoft-adobe-patch-critical-vulnerabilities-in-security-updates/&hl=en&geo=us>

Patch Tuesday patches 34 vulnerabilities in Microsoft products
iTWire
As expected, Microsoft has released seven security bulletins covering
issues with Windows and other software, notably Internet Explorer. There's
also a policy change regarding vulnerabilities in software sold through the
company's various online stores.
<http://www.itwire.com/business-it-news/security/60662-patch-tuesday-patches-34-vulnerabilities-in-microsoft-products>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.itwire.com/business-it-news/security/60662-patch-tuesday-patches-34-vulnerabilities-in-microsoft-products&hl=en&geo=us>

Hack 99% Of Android Devices: Big Vulnerability
InformationWeek SMB (blog)
"This vulnerability makes it possible to change an application's code
without affecting the cryptographic signature of the application --
essentially allowing a malicious author to trick Android into believing the
app is unchanged even if it has been ...
<http://www.informationweek.com/security/vulnerabilities/hack-99-of-android-devices-big-vulnerabi/240158013>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.informationweek.com/security/vulnerabilities/hack-99-of-android-devices-big-vulnerabi/240158013&hl=en&geo=us>

Microsoft Institutes Strict New Policy on App Vulnerabilities
Visual Studio Magazine
That was the effect of the company's just-released regulation that
developers with app vulnerabilities have a maximum of 180 days to fix the
problem, or have the program pulled from any of Microsoft's app stores,
including the Windows Store, Windows ...
<http://visualstudiomagazine.com/articles/2013/07/10/strict-new-policy-on-app-vulnerabilities.aspx>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://visualstudiomagazine.com/articles/2013/07/10/strict-new-policy-on-app-vulnerabilities.aspx&hl=en&geo=us>

EAS Vulnerability: Bodies of the Dead Could Rise Again
Infosecurity Magazine (US)
Now that details of the vulnerability have been made public, it is
imperative that all DASDEC users do so. "Until a new image is obtained and
installed," warns Michael Mimoso in Kaspersky Lab's ThreatPost, "users are
urged to disable the compromised ...
<http://www.infosecurity-us.com/view/33372/eas-vulnerability-bodies-of-the-dead-could-rise-again/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.infosecurity-us.com/view/33372/eas-vulnerability-bodies-of-the-dead-could-rise-again/&hl=en&geo=us>

Microsoft Orders App Developers to Fix Security Issues within 6 Months
Infosecurity Magazine (US)
The latest Global Information Security Workforce Study (GISWS) shows that
application vulnerabilities continue to be the biggest concern for security
professionals, with 69% of participants indicating it is the number one
security threat. Twitter ...
<http://www.infosecurity-us.com/view/33389/microsoft-orders-app-developers-to-fix-security-issues-within-6-months/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.infosecurity-us.com/view/33389/microsoft-orders-app-developers-to-fix-security-issues-within-6-months/&hl=en&geo=us>

Google researcher's outing of Windows vulnerability may have led to cyber
forays
Network World
The vulnerability was aired in May by Tavis Ormandy, who is employed by
Google but claimed to be acting independently when he revealed the flaw in
a security blog. The vulnerability in Windows 7 and 8 allows local users to
obtain escalated privileges, ...
<http://www.networkworld.com/news/2013/071013-google-researcher39s-outing-of-windows-271695.html>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.networkworld.com/news/2013/071013-google-researcher39s-outing-of-windows-271695.html&hl=en&geo=us>

Microsoft, Adobe Release Critical Security Patches
RedOrbit
"This security update resolves a privately reported vulnerability in
Microsoft Windows, Microsoft Office, Microsoft Lync, and Microsoft Visual
Studio. The vulnerability could allow remote code execution if a user views
shared content that embeds ...
<http://www.redorbit.com/news/technology/1112894376/microsoft-adobe-release-patches-071013/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.redorbit.com/news/technology/1112894376/microsoft-adobe-release-patches-071013/&hl=en&geo=us>

Crowdsourced flaw-finding cheaper than in-house bug hunters
Register
A study into the once-controversial practice of vulnerability rewards
programs (VPRs) – paying researchers bug bounties for reporting security
flaws – has found that for browser builders, the practice is not only
more effective at spotting problems ...
<http://www.theregister.co.uk/2013/07/10/study_finds_crowdsourcing_flawfinding_is_better_economics_than_hiring/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.theregister.co.uk/2013/07/10/study_finds_crowdsourcing_flawfinding_is_better_economics_than_hiring/&hl=en&geo=us>

Adobe Fixes Flash, ColdFusion and Shockwave
Infosecurity Magazine
The three Flash vulnerabilities are CVE-2013-3344, CVE-2013-3345 and
CVE-2013-3347. The first is a heap buffer overflow vulnerability that could
lead to code execution and was discovered by the Google security team. The
second is a memory corruption ...
<http://www.infosecurity-magazine.com/view/33371/adobe-fixes-flash-coldfusion-and-shockwave/>
See all stories on this topic:
<http://news.google.com/news/story?ncl=http://www.infosecurity-magazine.com/view/33371/adobe-fixes-flash-coldfusion-and-shockwave/&hl=en&geo=us>

This once a day Google Alert is brought to you by Google.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Delete this Google Alert:
http://www.google.com/alerts/remove?hl=en&gl=us&source=alertsmail&s=AB2Xq4h73uDuUaTj8-CUHcryQFnZut4U2bzcgRg

Create another Google Alert:
http://www.google.com/alerts?hl=en&gl=us&source=alertsmail

Sign in to manage your alerts:
http://www.google.com/alerts/manage?hl=en&gl=us&source=alertsmail

0 Comments:

Post a Comment

<< Home