Reader sandbox protects against zero-day Flash flaw 

Reader sandbox protects against zero-day Flash flaw

Adobe warns against critical flaw, but says Reader X users should be safe
Zero-day IE flaw not in Microsoft Patch Tuesday 

Zero-day IE flaw not in Microsoft Patch Tuesday

Vulnerability stays unpatched.
Two known flaws highlight Microsoft patch batch 

Two known flaws highlight Microsoft patch batch

Microsoft on Tuesday released 12 patches to correct 22 vulnerabilities, including two zero-day bugs, as part of its February security update.
Windows Phone 7 data flaw blamed on Yahoo 

Windows Phone 7 data flaw blamed on Yahoo

IMAP server incorrectly responds to FETCH requests.
Android data flaw risks users' data 

Android data flaw risks users' data

Google failed to act to fix flaw.
Flaw found that affects every Windows machine 

Flaw found that affects every Windows machine

No server-side workaround yet.
BlackBerry fixes critical Enterprise Server flaw 

BlackBerry fixes critical Enterprise Server flaw

Patches and workarounds.
Google coughs up "elite" cash for Chrome flaw 

Google coughs up "elite" cash for Chrome flaw

Money for a serious hole.
Microsoft warns IE flaw is being exploited 

Microsoft warns IE flaw is being exploited

A flaw affecting all versions of IE is being exploited in the wild, Microsoft warns.
Microsoft confirms graphics engine flaw 

Microsoft confirms graphics engine flaw

Out-of-band patch unlikely.
From Stuxnet to Snoop: The infosec year in lists 

From Stuxnet to Snoop: The infosec year in lists

SC Magazine US runs down the notable IT security news items for 2010.
Zero-day Windows flaw goes public 

Zero-day Windows flaw goes public

Affecting all versions back to XP.
HTC phone can be used as bugging device 

HTC phone can be used as bugging device

Palm Pre and Android flaws also discovered.
Adobe reveals new flaw affecting Flash and Reader  

Adobe reveals new flaw affecting Flash and Reader

Fixes coming next month.
Unlock flaw leaves iPhones exposed 

Unlock flaw leaves iPhones exposed

Emergency call glitch makes handsets vulnerable.
Adobe zero-day flaw code published 

Adobe zero-day flaw code published

Shockwave Player affected.
Apple patches security flaw in Snow Leopard 

Apple patches security flaw in Snow Leopard

Fixes bug allowing remote access.
Microsoft confirms ASP.NET flaw, issues workaround 

Microsoft confirms ASP.NET flaw, issues workaround

Attacker could decrypt and tamper with sensitive data.
Adobe updates Flash Player to address critical flaw 

Adobe updates Flash Player to address critical flaw

Patch ready earlier than forecast.
Apple patches zero-day QuickTime flaw with 7.6.8 release 

Apple patches zero-day QuickTime flaw with 7.6.8 release

Flaw bypassed two in-built security features for Windows.
Blogger identifies privacy flaw in Facebook Places 

Blogger identifies privacy flaw in Facebook Places

Criticises 'opt-out' feature.
Apple updates iPhone, iPad for "jailbreak" flaw 

Apple updates iPhone, iPad for "jailbreak" flaw

Flaw could lead to arbitrary code execution.
Adobe confirms critical flaw in Reader and Acrobat  

Adobe confirms critical flaw in Reader and Acrobat

Affects current and earlier versions.
Microsoft repairs shortcut flaw leading to SCADA malware 

Microsoft repairs shortcut flaw leading to SCADA malware

Flaw affects Windows 7, Vista, XP, Server 2008 and Server 2008 R2.
Black Hat 2010: IE6 and IE7 also suffer from auto-fill flaw 

Black Hat 2010: IE6 and IE7 also suffer from auto-fill flaw

Similar to Safari flaw.
Safari update fixes auto-fill flaw 

Safari update fixes auto-fill flaw

Pre-empts Black Hat demonstration.
Microsoft urges patching of Support Centre flaw 

Microsoft urges patching of Support Centre flaw

Over 25,000 computers have already been attacked.
Microsoft to fix Windows Help Centre flaw, four others 

Microsoft to fix Windows Help Centre flaw, four others

Microsoft on Tuesday expects to close two zero-day vulnerabilities.
Microsoft investigating Windows 2000 and XP flaw 

Microsoft investigating Windows 2000 and XP flaw

Secunia sounds warning over boundary error vulnerability.
New zero day flaw hits Windows XP and 2003 

New zero day flaw hits Windows XP and 2003

Disclosure has put public at risk says Microsoft.
Critical Adobe Flash and Reader flaw being exploited 

Critical Adobe Flash and Reader flaw being exploited

Present in latest versions.
Microsoft warns of unpatched Windows driver flaw  

Microsoft warns of unpatched Windows driver flaw

Several versions affected.
Twitter bug lets users force new followers 

Twitter bug lets users force new followers

Company racing to fix flaw and roll back changes.
Critical zero-day flaw found in Apple's Safari browser 

Critical zero-day flaw found in Apple's Safari browser

Affects current version.
Microsoft pulls faulty server patch 

Microsoft pulls faulty server patch

Windows Server fix pulled after failing to patch flaws.
Zero day Java flaw opens up all users to attack 

Zero day Java flaw opens up all users to attack

Oracle's view is that it's no big deal.
Researchers find zero day flaw in Windows Virtual PC 

Researchers find zero day flaw in Windows Virtual PC

Flaw lets hackers bypass security systems.
Serious flaw discovered in Apache 

Serious flaw discovered in Apache

IT admins warned to upgrade immediately.
Adobe patches critical Download Manager flaw 

Adobe patches critical Download Manager flaw

Could allow remote installation of unauthorised software.
Google patches XSS hole in Buzz 

Google patches XSS hole in Buzz

Common flaw strikes again.
Adobe patches Flash Player, plans out-of-band Reader fix 

Adobe patches Flash Player, plans out-of-band Reader fix

Flaw could lead to DoS attack.
Mozilla recants assertion that Firefox add-on has trojan 

Mozilla recants assertion that Firefox add-on has trojan

Sothink downloader malware-free.
Microsoft responds to Black Hat talk with IE bug advisory 

Microsoft responds to Black Hat talk with IE bug advisory

View state flaw revealed.
Adobe issues update to critical vulnerability in Shockwave player  

Adobe issues update to critical vulnerability in Shockwave player

Flaw could allow malicious code to be run.
Microsoft knew about IE flaw for months 

Microsoft knew about IE flaw for months

Told in September.
Microsoft confirms low-risk zero-day in Windows kernel 

Microsoft confirms low-risk zero-day in Windows kernel

Less risky than notorious IE flaw.
Mozilla and Opera benefit from IE flaw 

Mozilla and Opera benefit from IE flaw

Rival browser developers claim spike in downloads.
Microsoft to issue early patch for Internet Explorer flaw 

Microsoft to issue early patch for Internet Explorer flaw

Out-of-band patch follows Google hack.
France joins Germany in call to dump IE 

France joins Germany in call to dump IE

Microsoft under heavy pressure.
Adobe distances itself from Google hack 

Adobe distances itself from Google hack

Not an attack vector, firm says.
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read