Feb
23
2009
Comments Off on New Version of Malicious Computer Program Is Released – New York Times | tags: computers, google, microsoft, news, Phone, program, security, technology, virus | posted in technical news
Feb
23
2009
CWmike writes “Sourcefire security researcher Lurene Grenier has published a home-brewed patch for the critical Adobe Reader vulnerability that hackers are exploiting in the wild using malicious PDF files, beating Adobe Systems Inc. to the punch by more than two weeks. Grenier posted the patch on Sunday with the caveats that it applies only to the Windows version of Adobe Reader 9.0 and comes with no guarantees. Also, PhishLabs has created a batch file that resets a Windows registry key to de-fang the hack by disabling JavaScript in Adobe Reader 9.0, giving administrators a way to automate the process.”

Read more of this story at Slashdot.


Comments Off on Homemade PDF Patch Beats Adobe By Two Weeks | tags: google, security | posted in technical news
Feb
23
2009
Stephen Brandon writes “It used to be that to set up a database-backed web site required at least a server guy, a database administrator, a programmer, and a designer. Joomla! and other modern CMS systems have opened the door to allow non-administrators to be able to set up complete e-commerce or informational sites, using great free software and easy-to-find commercial hosting. What then of security? A new book by Tom Canavan, Joomla Web Security, aims to bridge the knowledge gap, introducing Joomla! admins to a set of security tools, and skills sometimes found lacking in the Joomla! community.” Read on for the rest of Stephen’s review.

Read more of this story at Slashdot.


Comments Off on Joomla! Web Security | tags: database, google, program, security, web | posted in technical news
Feb
23
2009
Security experts warn of holes in the popular microblogging service.
Comments Off on Three Ways Twitter Security Fails | tags: security, twitter | posted in technical news
Feb
22
2009
Comments Off on Mozilla, Skype join iPhone jailbreak fight – Register | tags: Apple, google, iphone, mobile, news, Phone, security, tv | posted in technical news
Feb
22
2009
Comments Off on Friday Apple Links: Dancing with the Woz edition – Ars Technica | tags: Apple, cap, google, iphone, Mac, news, Phone, security, tv | posted in technical news
Feb
22
2009
Comments Off on Only 7 percent of active Firefox browsers running on Macs? – CNET News | tags: cap, google, Mac, microsoft, network, news, security, web | posted in technical news
Feb
22
2009
FormOfActionBanana writes “The security firm Fortify Software has undertaken an automated code review of the NIST SHA-3 round 1 contestants (previously Slashdotted) reference implementations. After a followup audit, the team is now reporting summary results. According to the blog entry, ‘This just emphasizes what we already knew about C, even the most careful, security conscious developer messes up memory management.’ Of particular interest, Professor Ron Rivest’s (the “R” in RSA) MD6 team has already corrected a buffer overflow pointed out by the Fortify review. Bruce Schneier’s Skein, also previously Slashdotted, came through defect-free.”

Read more of this story at Slashdot.


Comments Off on Security Review Summary of NIST SHA-3 Round 1 | tags: developer, google, security | posted in technical news
Feb
22
2009
Comments Off on Friday Apple Links: Dancing with the Woz edition – Ars Technica | tags: Apple, google, iphone, Mac, news, Phone, security, tv | posted in technical news
Feb
22
2009
DesScorp writes “The AP reports that the Obama administration has picked up where the Bush administration left off on the missing White House email issue by trying to have a lawsuit dismissed that would have kept investigating whether or not email was still missing. Two advocacy groups suing the Executive Office of the President expressed disappointment with the Obama administration’s actions. Tom Blanton, director of the National Security Archive, noted that President Barack Obama on his first full day in office called for greater transparency in government. The Justice Department ‘apparently never got the message’ from Obama, Blanton said.”

Read more of this story at Slashdot.


Comments Off on Obama Admin Fights Missing White House Email Lawsuit | tags: email, google, news, obama, security | posted in technical news