Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2885566 times)

0 Members and 10 Guests are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #585 on: July 27, 2010, 09:12:35 PM »
Hi malware fighters,

Stay alert of hidden iFrame injection attacks...
    * In the past, it was common for attackers to inject their malicious Iframes at the bottom / end of the webpage. Attackers are now injecting malicious Iframes anywhere in the webpage.
    * Many websites which were found to be infected in past months by malicious hidden Iframes appear to still be infected with them. Meaning most web site owners or hosting providers are not policing the content that they are serving on the web.

Our data shows many previously infected websites are still infected with hidden malicious Iframes today. Due to different obfuscation techniques detection by a majority of the Antivirus vendors remains poor, avast has very good detection with the shields, and webbrowser users can get protected with the use of extensions like NoScript abd RequestPolicy in thr Mozilla browser types (like Firefox and Flock etc.), see for the latest of these attacks http://twitter.com/dasient_new_mal

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Hermite15

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #588 on: July 27, 2010, 10:54:03 PM »
WPA2 security hole discovered
http://www.infosecurity-us.com/blog/2010/7/23/wpa2-exposed-with-hole-196-vulnerability/189.aspx
asyn


well the thing is that all LAN communication is also encrypted in Win7, which already excludes the stealing of data, even if WPA2 was broken. edit after further reading: >>> Remains a possible access to the router, and the stealing of the connection...live examples and reports needed here ;D

edit: found other articles:
http://www.pcmag.com/article2/0,2817,2366994,00.asp
http://gizmodo.com/5596919/gulp-security-researcher-discovers-wpa2-vulnerability

okay: the attack is  "may be" only possible from an insider, someone on your LAN, not from the outside ;) ... waiting for a demo ;D

and now:

The vulnerability will be presented at BlackHat Arsenal by AirTight Networks senior wireless security researcher Md Sohail Ahmad........................................................

................................
Ahmad claims that this behavior is to spec (page 196 of the IEEE 802.11 standard, hence "Hole 196") and that there's nothing to fix in the implementation. The only way to protect your network is to monitor all wireless traffic for it. AirTight networks, incidentally, sells Wireless Intrusion Prevention Systems.
 ;D
« Last Edit: July 27, 2010, 11:17:57 PM by Logos »

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #589 on: July 27, 2010, 11:14:46 PM »
live examples and reports needed here ;D

AirTight will present a public Webinar on August 4 at 11am Pacific.
http://www.airtightnetworks.com/home/airtight-media/webinars/wpa2-hole196-vulnerability.html
asyn
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #590 on: July 27, 2010, 11:29:43 PM »
Hi Logos,

Just fire up Fiddler 2.0 in a browser and see what is being sent chunked, whenever that what is encrypted, with one click we will make it is unchunked and de-compressed and readable. If a machine can render something then someone somehow can show what is to be rendered for human eyes to be deciphered...just logical,Logos, just logical and you just need the rendering tool, sniffer whatever,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Hermite15

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #591 on: July 27, 2010, 11:40:38 PM »
Hi Logos,

Just fire up Fiddler 2.0 in a browser and see what is being sent chunked, whenever that what is encrypted, with one click we will make it is unchunked and de-compressed and readable. If a machine can render something then someone somehow can show what is to be rendered for human eyes to be deciphered...just logical,Logos, just logical and you just need the rendering tool, sniffer whatever,

polonus

hmm...Polonus...seems a bit more complicated then that ::) ... as Fiddler2 will only allow you to decrypt your own traffic, the one that your browser already decrypts ;D
 back to topic...we already know from the article links I posted I that the potential flaw in WPA2 only affects the LAN if an insider is originating the procedure. And Asyn: read again the end of my last post :D

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #592 on: July 27, 2010, 11:46:23 PM »
Hi Logos,

It appears from these revelations that all comes pre-backdoored by design then, the uninformed to find out about this,
only after it has been revealed,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Hermite15

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #593 on: July 27, 2010, 11:55:36 PM »
Hi Logos,

It appears from these revelations that all comes pre-backdoored by design then, the uninformed to find out about this,
only after it has been revealed,

polonus

the company who "reveals" the flaw, and is supposed to demonstrate it, is also a company selling wi-fi monitoring software, and they already advise to use that, saying that the protocol can't be patched anyway and the only way out is to acquire >>> full time monitoring software.

luzagodo

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #594 on: July 28, 2010, 05:15:12 AM »
Good read,thanks.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33897
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #595 on: July 28, 2010, 09:24:11 PM »
Hi malware fighters,

Firefox warning abused by rogue av: http://www.f-secure.com/weblog/archives/00001997.html

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

YoKenny

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #596 on: July 28, 2010, 10:19:39 PM »
Hi malware fighters,

Firefox warning abused by rogue av: http://www.f-secure.com/weblog/archives/00001997.html

polonus
I don't use Firefox ;D
« Last Edit: July 28, 2010, 10:21:59 PM by YoKenny »

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48551
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #597 on: July 29, 2010, 05:21:24 AM »
Hi malware fighters,

Firefox warning abused by rogue av: http://www.f-secure.com/weblog/archives/00001997.html

polonus
I don't use Firefox ;D
Then I guess this message wasn't meant for you.  :o
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v22H2 64bit, 16 Gig Ram, 1TB SSD, Avast Free 23.5.6066, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Hermite15

  • Guest

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #599 on: July 29, 2010, 04:05:03 PM »
Details of 100 million Facebook users published online

I posted a related link here:
http://forum.avast.com/index.php?topic=28748.msg526326#msg526326
asyn
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0