Proaktive IT-Sicherheit

Sicherheitscenter

Neuste Beiträge - Verbreitungsmechanismen

Handling an infected computer as an infected human being

2010-03-11

The RSA Conferences are among of the most important annual security conferences. This year's US conference was held in San Francisco 1 - 5 March. One of the speakers was Microsoft's Scott Charney, Corporate Vice President Trustworthy Computing. His speech covered several interesting topics, of which we will discuss one: the ability, usefulness and implications of treating infected computers in a similar manner as infected human beings.

mehr >>

Summing up 2009 - predictions for the year to come

2009-12-17

December is the month to look back on the year that is coming to an end, and we will attempt to sum up the situation seen from a security company's point of view. The most significant observation to make from this year's malware activity, is that different social networks became a major target for authors of malicious programs.

mehr >>

Die Weihnachtsfeiertage – ein Fest für Kinder ... und Kriminelle

2009-12-03

Große Ereignisse und Veranstaltungen und ganz allgemein alle Anlässe, die viel Aufmerksamkeit verursachen, ziehen oftmals eine wahre Flut von bösartiger Software nach sich.

mehr >>

Plug-ins für Anwendungen – ein neues Ziel für Malware

2009-11-20

Wir haben bereits in zahlreichen Sicherheitsartikeln die Tatsache besprochen, dass neue Medien und Kommunikationsgeräte erfolgreich als Instrumente für die Verbreitung von Malware eingesetzt werden. Dieses Mal untersuchen wir einen Anwendungstyp, der bisher noch keine Beachtung fand, und zwar (vermutlich) weder von Malware-Autoren noch von Kommentatoren.

mehr >>

Neuste Blog-Einträge [EN]

Shockwave Flash (SWF) Exploit

2010-03-04
Impact: Moderate Application: Adobe Flash Player 9.0.115.0 and earlier Vulnerability identifier: APSB08-11 CVE Number: CVE-2007-0071 Vulnerability details Adobe Flash Player is vulnerable to buffer ov...
mehr >>

Internet Explorer (6/7/8) Remote Code Execution - Remote User Add Exploit

2010-03-04
Objective A malicious web site can be crafted using an exploit code that will allow IE (Internet Explorer) to be compromised and allow code to be executed on your computer. The more severe vulnerabili...
mehr >>

Google Buzz and Reader CSRF Vulnerability

2010-02-26
Google recently launched a Twitter-like application called Google Buzz. We have established that the application is quite vulnerable to persistent CSRF attacks when data is pulled from external data f...
mehr >>