Seguridad proactiva para IT

Centro de seguridad

Ultimos artículos

Handling an infected computer as an infected human being

2010-03-11

The RSA Conferences are among of the most important annual security conferences. This year's US conference was held in San Francisco 1 - 5 March. One of the speakers was Microsoft's Scott Charney, Corporate Vice President Trustworthy Computing. His speech covered several interesting topics, of which we will discuss one: the ability, usefulness and implications of treating infected computers in a similar manner as infected human beings.

más >>

Vulnerability in Internet Explorer could allow remote code execution

2010-03-10

Microsoft has issued a security advisory about a new vulnerability in Internet Explorer. According to Microsoft this vulnerability could allow remote code execution, and it is being actively exploited in targeted attacks.

más >>

No critical updates for Microsoft systems in March 2010

2010-03-10

In its security bulletin summary for March 2010 Microsoft has published no updates for critical vulnerabilities in its operating systems / applications, however two important updates were published.

más >>

Code injection

2010-03-01

Code injection is a protection mechanism used by malware in order to avoid detection. The injector stores the malware as an encrypted resource, which it decrypts and injects into a running process. The injector may also contain various checks for virtual machines and system tools in order to hinder analysis.

más >>

Ultimas entradas del blog [EN]

Shockwave Flash (SWF) Exploit

2010-03-04
Impact: Moderate Application: Adobe Flash Player 9.0.115.0 and earlier Vulnerability identifier: APSB08-11 CVE Number: CVE-2007-0071 Vulnerability details Adobe Flash Player is vulnerable to buffer ov...
más >>

Internet Explorer (6/7/8) Remote Code Execution - Remote User Add Exploit

2010-03-04
Objective A malicious web site can be crafted using an exploit code that will allow IE (Internet Explorer) to be compromised and allow code to be executed on your computer. The more severe vulnerabili...
más >>

Google Buzz and Reader CSRF Vulnerability

2010-02-26
Google recently launched a Twitter-like application called Google Buzz. We have established that the application is quite vulnerable to persistent CSRF attacks when data is pulled from external data f...
más >>