SUSE has issued an update for MozillaFirefox. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, disclose potentially sensitive information, conduct cross-site scripting and phishing attacks, and potentially compromise a user's system.
mrzayas.es has discovered a vulnerability in Nuke ET, which can be exploited by malicious users to conduct script insertion attacks. Input passed to the "mensaje" parameter when sending private messages is not properly sanitised before being stored. This can be
Novell has acknowledged some vulnerabilities in Novell Kerberos KDC, which can be exploited by malicious people to disclose potentially sensitive information, cause a DoS (Denial of Service), or potentially compromise a vulnerable system.
Some vulnerabilities have been reported in various CA products, which can be exploited by malicious users to cause a DoS (Denial of Service) or to compromise a vulnerable system. The vulnerabilities are caused due to boundary errors within multiple procedures
The search optimization poisoning attacks against dozens of websites continues its onslaught, with infected search results showing up in Google.Google Dinged Over SEO PoisoningTo get those results into Google, attackers make search queries on websites; these sites exchange search results
China is progressing well towards the Olympics with fewer than 130 days remaining, and organizers have given assurances that Internet and media access will meet Olympic standards, an International Olympic Committee official said Thursday.
It's fortunate that Vista-specific malware is still in its infancy because a new test of anti-malware products running on the platform has found that many don't work as well as they should.
Commercial businesses, colleges and universities, government offices, and medical facilities of varying sizes share the common label of being hit by identity thieves.167 breaches revealing over 8.3 million records happened or became public in the first three months of 2008,
Customers, taxpayers and citizens expect governments, companies and organisations to keep their information safe, when that trust breaks down it can have a serious impact.
The United States Army has gone into the spam business - sending a phishing email to servicemen in an attempt to gauge how susceptible they are to attacks.
LinuxSecurity.com: Tresys have announced the release of the latest version of Reference Policy. A notable highlight in this release is the addition of core infrastructure for X window (XACE/XSELinux). There's also new support for wireshark, policy refinements for several already