In what appears to be a typical Patch Day, Microsoft's Advanced Notification warns that they will release eight security bulletins tomorrow. The bulletins will include security updates for Microsoft Windows, Internet Explorer (IE), and Office.
April 7, 2008 Doctor Web, Ltd. a leading Russian developer of IT security solutions releases a new product — Dr.Web for IBM Lotus Domino. Dr.Web for IBM Lotus Domino protects Lotus Domino system against viruses, malware and spam. It is
Last month, SonicWall rolled out its next-generation UTM (unified threat management) firewall appliance geared for the enterprise. In our exclusive test of the Network Security Appliance E7500, results show that SonicWall has, indeed, crashed through the speed barrier.
Hackers are using a new multiple-attack package composed of seven ActiveX exploits, many of them never seen in the wild before, said a security company on Friday.
Normally, when there's a puzzling legal dispute involving Apple, the computer company seems to be on the defendant side of the ledger. (Think lawsuits over iPhone price cuts or scratched-up iPod nanos .) But this time, it's Apple doing the
Asustek Computer has filed suit against IBM over alleged infringement of two patents, just a few months after IBM filed a similar action against the Taiwanese company earlier this year.
While one Pittsburgh couple sues Google over its Street View pictures of their residence, another neighboring home found itself the focus of a Google camera car that drove up its driveway.No word yet on whether Janet and George McKee plan
A jury in San Diego ordered Microsoft to pay Alcatel-Lucent $367.4 million for infringing on two patents, adding a new chapter to a long-running dispute between the companies.
LinuxSecurity.com: Lack of input sanitizing and output escaping in the CGI mapserver's template handling and error reporting routines leads to cross-site scripting vulnerabilities.
LinuxSecurity.com: New openssh packages are available for Slackware 8.1, 9.0, 9.1, 10.0, 10.1, 10.2, 11.0, 12.0, and -current to fix a security issue. More details about this issue may be found in the Common Vulnerabilities and Exposures (CVE) database: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1483
LinuxSecurity.com: Nearly three years after the initial post describing the idea , I am happy to report that OpenPacket.org 1.0 is ready for public use, free of charge. The mission of OpenPacket.org is to provide quality network traffic traces to
A vulnerability and a weakness have been reported in cwRsync, which can be exploited by malicious, local users to bypass certain security restrictions or to disclose sensitive information.
t0pP8uZz & xprog have reported a vulnerability in PHP Photo Gallery (Advanced Web Photo Gallery), which can be exploited by malicious people to conduct SQL injection attacks. Input passed to the "photo_id" parameter in index.php is not properly sanitised before
SUSE has issued an update for apache and apache2. This fixes some vulnerabilities, which can be exploited by malicious people to conduct cross-site scripting attacks and malicious users to cause a DoS (Denial of Service).
Gentoo has issued an update for unzip. This fixes a vulnerability, which potentially can be exploited by malicious people to compromise a user's system.