Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2905216 times)

0 Members and 10 Guests are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2430 on: February 27, 2013, 03:05:07 PM »
Open door: Oracle's JRE, something has to change: http://www.f-secure.com/weblog/archives/00002511.html (link article author = sean)

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2431 on: February 27, 2013, 03:21:14 PM »
Open door: Oracle's JRE, something has to change...

Couldn't agree more..!! They continue to dig their own (Java) grave...
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2433 on: March 02, 2013, 03:48:49 PM »
For those concerned and our forum's qualified removers,

Added free removal tool for old school MiniDuke malcode: http://download.bitdefender.com/removal_tools/
Download link: http://download.bitdefender.com/removal_tools/MiniDuke_Removal_Unified.exe

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37549
  • Not a avast user
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2434 on: March 02, 2013, 11:36:08 PM »
EVERNOTE hacked
Security Notice: Service-wide Password Reset

http://evernote.com/corp/news/password_reset.php

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2435 on: March 03, 2013, 05:55:05 PM »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2436 on: March 05, 2013, 01:53:19 PM »
Pan Adam Gowdiak comes up with 5 new holes in Oracle's Java, software starts to look like the proverbial Swiss Cheese now, see: http://www.security-explorations.com/en/SE-2012-01-status.html
Quote
Oracle provides tracking numbers for Issues 56-60, claims they are still not confirmed.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2437 on: March 05, 2013, 02:28:14 PM »
Multi-browser heap spray attack now added to metasploit: https://www.corelan.be/index.php/2013/02/19/deps-precise-heap-spray-on-firefox-and-ie10/
(link article author = Peter Van Eeckhoutte, security researcher)

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2438 on: March 05, 2013, 11:28:49 PM »
Already dangerous to keep this in production - PHP version 5.2.17
Read: http://forums.cpanel.net/f185/already-dangerous-keeping-php-5-2-17-production-267442.html
link thread poster = kevin levin
Webmasters should always update and upgrade....

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2439 on: March 06, 2013, 06:15:21 PM »
Targeted attack dismantled just in time: http://blog.seculert.com/2013/03/the-chinese-time-bomb.html (blog article poster = seculart)

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2440 on: March 08, 2013, 12:46:27 PM »
Microsoft Security Bulletin Advance Notification for March 2013
http://technet.microsoft.com/en-us/security/bulletin/ms13-mar
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2441 on: March 10, 2013, 08:09:02 PM »
Kelihos Botnet Stronger as Ever after vain attempt to bring it down, analysis: http://www.lavasoft.com/mylavasoft/malware-descriptions/blog/kelihos-botnet-gains-strength-again-0 (link article author = alexander adamov) See this on one of the encrypted IPs: http://urlquery.net/report.php?id=1028057
with ET CURRENT_EVENTS Suspicious double HTTP Header possible botnet CnC  see: http://doc.emergingthreats.net/bin/view/Main/2012707
and ET INFO EXE Download With Content Type Specified As Empty -> http://comments.gmane.org/gmane.comp.security.ids.snort.emerging-sigs/15732 (link posting author - Will Metcalf) another example: http://urlquery.net/report.php?id=1305759 See how this IP could not be verified: http://dnsbl.inps.de/query.cgi?lang=en&action=check&ip=62.84.252.23&quick=0 and here this would not resolve: 404report.projecthoneypot.org/ip_62.84.252.23
but listed as a zombie here: http://support.clean-mx.de/clean-mx/publog.php?as=AS35362
 62.84.252.23 | SD     Bad Event     67      2013-01-03       2013-01-18  Spam Server Dictionary Attacker. So an endless task to get these sinkholed. And then another division of zombies comes into play...rather interesting info here: http://pastebin.com/NfA4pvpg linked to http://www.fireeye.com/blog/files/cagremub.ru_ips and consider info here: https://github.com/CybOXProject/Tools/blob/master/scripts/snort_to_cybox/example/botnet-cnc.rules (Github info)

polonus
« Last Edit: March 10, 2013, 08:21:36 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33921
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2442 on: March 12, 2013, 10:02:23 AM »

Threat: localStorage bug allows sites to fill up hard disk
Browser makers should be aware of HTML-5 hardware bomb: -http://feross.org/fill-disk/  (link article author = Feross Aboukhadijeh )
Firefox not vulnerable...Chrome might crash totally before the HD is full...

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76035
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Online bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48597
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #2444 on: March 12, 2013, 02:46:46 PM »
Microsoft changes default Flash behavior in Windows 8 and RT


"Summary: In a surprise reversal, Microsoft has changed the default behavior of Flash content on websites
viewed using Internet Explorer in Windows 8 or Windows RT. Previously, sites had to be on a whitelist before Flash would work.
The new behavior effectively turns the Compatibility View list into an exclusive blacklist of badly behaved sites."
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet