Proaktive IT-Sicherheit

Sicherheitscenter

Neuste Beiträge

The Internet Crime Complaint Center's report for 2009

2010-03-16

The Internet Crime Complaint Center's (IC3) report for 2009 has just been published, and is interesting reading. Not the least when comparing the actual submitted complaints to what is focused upon in the media.

mehr >>

Handling an infected computer as an infected human being

2010-03-11

The RSA Conferences are among of the most important annual security conferences. This year's US conference was held in San Francisco 1 - 5 March. One of the speakers was Microsoft's Scott Charney, Corporate Vice President Trustworthy Computing. His speech covered several interesting topics, of which we will discuss one: the ability, usefulness and implications of treating infected computers in a similar manner as infected human beings.

mehr >>

Vulnerability in Internet Explorer could allow remote code execution

2010-03-10

Microsoft has issued a security advisory about a new vulnerability in Internet Explorer. According to Microsoft this vulnerability could allow remote code execution, and it is being actively exploited in targeted attacks.

mehr >>

No critical updates for Microsoft systems in March 2010

2010-03-10

In its security bulletin summary for March 2010 Microsoft has published no updates for critical vulnerabilities in its operating systems / applications, however two important updates were published.

mehr >>

Neuste Blog-Einträge [EN]

Shockwave Flash (SWF) Exploit

2010-03-04
Impact: Moderate Application: Adobe Flash Player 9.0.115.0 and earlier Vulnerability identifier: APSB08-11 CVE Number: CVE-2007-0071 Vulnerability details Adobe Flash Player is vulnerable to buffer ov...
mehr >>

Internet Explorer (6/7/8) Remote Code Execution - Remote User Add Exploit

2010-03-04
Objective A malicious web site can be crafted using an exploit code that will allow IE (Internet Explorer) to be compromised and allow code to be executed on your computer. The more severe vulnerabili...
mehr >>

Google Buzz and Reader CSRF Vulnerability

2010-02-26
Google recently launched a Twitter-like application called Google Buzz. We have established that the application is quite vulnerable to persistent CSRF attacks when data is pulled from external data f...
mehr >>