Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2886572 times)

0 Members and 3 Guests are viewing this topic.

YoKenny

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1005 on: December 31, 2010, 12:50:36 AM »
Internet Explorer security flaw that allows hackers to take control of computers
http://www.dailymail.co.uk/sciencetech/article-1341402/Microsoft-warns-Internet-Explorer-bug.html

Key comment
Quote
'We're currently unaware of any attacks trying to use the claimed vulnerability or of customer impact.'
Fear mongers are rampant :'(

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89033
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1006 on: December 31, 2010, 01:00:48 AM »
Hardly fear mongering, is the flay possible/feasible, etc. it doesn't matter if they are unaware of any attacks. Being unaware is hardly a glowing testimony that it isn't a problem. If/and when it does come to their knowledge it will be a bit late in the day.

You can hardly call it fear mongering when it is Microsoft doing the fear mongering as you call it.

Quote from: extract from DailyMail article
Microsoft have warned about a flaw on the Internet Explorer browser, that could allow hackers to take control of unprotected computers.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

swarnava

  • Guest

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1008 on: December 31, 2010, 12:21:43 PM »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1009 on: December 31, 2010, 04:34:39 PM »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

CharleyO

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1010 on: January 01, 2011, 09:40:59 AM »
***

The State Of IT Security In 2011

"Here are 10 key security trends that we see in the upcoming 2011."

http://www.crn.com/slide-shows/security/228800318/it-security-predictions-for-2011.htm


***

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

malcontent

  • Guest
Spoofed eCard from the Whitehouse stole government data
« Reply #1012 on: January 04, 2011, 09:25:18 AM »
http://krebsonsecurity.com/2011/01/white-house-ecard-dupes-dot-gov-geeks/
Quote
A malware-laced e-mail that spoofed seasons greetings from The White House siphoned gigabytes of sensitive documents from dozens of victims over the holidays, including a number of government employees and contractors who work on cybersecurity matters.

The attack appears to be the latest salvo from ZeuS malware gangs whose activities over the past year have blurred the boundaries between online financial crime and espionage, by stealing both financial data and documents from victim machines.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1013 on: January 05, 2011, 09:30:09 AM »
Microsoft Security Advisory (2490606)
Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution
http://www.microsoft.com/technet/security/advisory/2490606.mspx
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

YoKenny

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1014 on: January 05, 2011, 01:55:40 PM »
Microsoft Security Advisory (2490606)
Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution
http://www.microsoft.com/technet/security/advisory/2490606.mspx
Key comments
Quote
We are not aware of attacks that try to use the reported vulnerability or of customer impact at this time.
Non-Affected Software
Windows 7 for 32-bit Systems
Windows 7 for x64-based Systems
Windows Server 2008 R2 for x64-based Systems
Windows Server 2008 R2 for Itanium-based Systems

Offline mkis

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1618
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1015 on: January 06, 2011, 01:25:07 AM »

http://www.csoonline.com/article/650614/is-storm-waldec-botnet-part-of-new-year-spam-campaign-

Quote
Is Storm/Waldec botnet part of New Year spam campaign?
Researchers with Shadowserver Foundation think they are seeing some new tricks from an old botnet. And it could mean a comeback in 2011

Avast7 Free, MBAM (on demand), MVPS Hosts

Intel DG41TY, Windows 7 Ultimate, IE9, Google Chrome, 4 GB ram, Secunia PSI, ccleaner, Foxit Reader, Faststone Image viewer, MWSnap.

Offline mkis

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1618
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1016 on: January 06, 2011, 01:35:00 AM »

http://nakedsecurity.sophos.com/2011/01/04/fake-microsoft-update-spreads-worm/

Quote
Fake Microsoft security update spreads Autorun worm

In the current example, they've spammed out an email containing a worm, which even quotes the real name of a senior member of Microsoft's security team - Steve Lipner - to try to fool you into believing it is genuine.
Avast7 Free, MBAM (on demand), MVPS Hosts

Intel DG41TY, Windows 7 Ultimate, IE9, Google Chrome, 4 GB ram, Secunia PSI, ccleaner, Foxit Reader, Faststone Image viewer, MWSnap.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

yongsua

  • Guest

Hermite15

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #1019 on: January 07, 2011, 09:47:01 AM »
lol it didn't take long:
Researcher breaks security sandbox in Adobe Flash
http://www.theregister.co.uk/2011/01/07/adobe_flash_bypass/

edit: BUT:
Quote
An attacker would first need to gain access to the user's system to place a malicious SWF file in a directory on the local machine before being able to trick the user into launching an application that can run the SWF file natively. In the majority of use scenarios, the malicious SWF file could not simply be launched by double-clicking on it; the user would have to manually open the file from within the application itself.
The company's security team has rated the bug “moderate.

... so no need to worry really.
« Last Edit: January 07, 2011, 09:59:39 AM by Logos »