Proactive IT security

Security center

Latest articles - Spreading mechanisms

Handling an infected computer as an infected human being

2010-03-11

The RSA Conferences are among of the most important annual security conferences. This year's US conference was held in San Francisco 1 - 5 March. One of the speakers was Microsoft's Scott Charney, Corporate Vice President Trustworthy Computing. His speech covered several interesting topics, of which we will discuss one: the ability, usefulness and implications of treating infected computers in a similar manner as infected human beings.

more >>

Summing up 2009 - predictions for the year to come

2009-12-17

December is the month to look back on the year that is coming to an end, and we will attempt to sum up the situation seen from a security company's point of view. The most significant observation to make from this year's malware activity, is that different social networks became a major target for authors of malicious programs.

more >>

Holidays - preferred season for children and ...criminals

2009-12-03

Major events, happenings and in general all kind of things that create much notice, also leave in their wake a stream of malicious software.

more >>

Plug-ins to applications - a ripened target for malware

2009-11-20

In several security articles we have discussed the fact that new media and communication devices are successful vehicles for malware propagation. This time we will examine a type of application, which has not been focused upon - (presumably) neither by the malware authors yet, nor by commentators.

more >>

Latest blog entries

Shockwave Flash (SWF) Exploit

2010-03-04
Impact: Moderate Application: Adobe Flash Player 9.0.115.0 and earlier Vulnerability identifier: APSB08-11 CVE Number: CVE-2007-0071 Vulnerability details Adobe Flash Player is vulnerable to buffer ov...
more >>

Internet Explorer (6/7/8) Remote Code Execution - Remote User Add Exploit

2010-03-04
Objective A malicious web site can be crafted using an exploit code that will allow IE (Internet Explorer) to be compromised and allow code to be executed on your computer. The more severe vulnerabili...
more >>

Google Buzz and Reader CSRF Vulnerability

2010-02-26
Google recently launched a Twitter-like application called Google Buzz. We have established that the application is quite vulnerable to persistent CSRF attacks when data is pulled from external data f...
more >>