// archives

security

This category contains 15 posts

Safari “carpet bombing” exploit released in the wild

In what appears to be an attempt to provoke Apple to reconsider its currently passive position on the severity of the dubbed as “carpet bomb” flaw, a working Proof of Concept exploit code has been released at Liu Die Yu’s security blog :
Nitesh Dhanjani discovered that Safari for Windows puts downloads automatically to Desktop and [...]

RIM takes on Indian Government head on

Research In Motion (RIM) is reportedly close to resolving a several months-long network security dispute with India’s Union Home Ministry. The issue first became public in early March, when the ministry threatened to ban BlackBerry service entirely, unless it was given unconditional access to any and all of the information passing across RIM’s network at [...]

The open source alternative

It’s good to see the BBC covering open source software

Understanding How CAPTCHA Is Broken

Websense Security Labs explains the spammer Anti-CAPTCHA operations and mass-mailing strategies. Apparently spammers are using combination of different tactics — proper email accounts, visual social engineering, and fast-flux — representing a strategy, explains their resident CAPTCHA expert. It is evident that spammers are working towards defeating anti-spam filters with their tactics.

For the spammers, the entire [...]

Robot Spiders, Dragonflies, Snakes to Aid Soldiers in War Zones

As if warfare weren’t already creepy enough, BAE Systems, a British defense company, has released a promotional video of robotic spiders, dragonflies and snakes it is developing to aid soldiers in combat zones. The robotic creatures are being funded by a $38 million contract with the U.S. Army that is part of a massive, and [...]

New way to hack Oracle database

Security researcher David Litchfield has released technical details of a new type of attack that could give a hacker access to an Oracle database.

YES WE CAN - get XSSed

You know XSS has hit the mainstream when it reaches this level of visibility.

RSA finds new malware enhanced phishing technique

RSA said Monday that it discovered a new phishing technique that uses elements of a malware attack to swipe personal information.
The discovery illustrates a series of attacks from the Rock Phish group, which is a gang reportedly based in Russia that has been targeting financial institutions since 2004.

PayPal: “No intention” of blocking Safari

There were strong rumors in the net and blogsphere about PayPal blocking Safari browser from its site.
PayPal public relations have clarified their position as below:
PayPal is developing features to block customers from logging into PayPal when using obsolete browsers on outdated or unsupported operating systems. An example of such a browser/OS combination might be, for [...]

Police use Facebook for crime reporting

Police use Facebook for crime reporting

RSS Feeds

Categories