Security Alerts And Vulnerabilities
Location : Got Root >
Feeds update periodically throughout the day.
Business News - Technology News - Security Alerts And Vulnerabilities - World News - Legal News - Other News - Software Releases
- eGroupWare Input Validation Flaws Permit Command Execution and Cross-Site Scripting Attacks
- Apple Safari WebKit Flaws Let Remote Users Execute Arbitrary Code
- Apple Safari Bug in PubSub May Let Remote Feeds Bypass the Cookie Blocking Mechanism
- Apple Safari Bugs Let Remote Users Cause Arbitrary Code to Be Executed
- Skype URI Validation Flaw Lets Remote Users Injection Commands
- Vuln: Microsoft Internet Explorer 'iepeers.dll' Remote Code Execution Vulnerability
- Vuln: MoinMoin Multiple Unspecified Security Vulnerabilities
- Vuln: Linux Kernel Subsystem Connector Missing Capability Check Security Bypass Vulnerabilities
- Vuln: Linux Kernel PI Futex Invalid Pointer Dereference Local Denial of Service Vulnerability
- Bugtraq: VUPEN Security Research - Apple Safari ColorSync Profile Integer Overflow Vulnerability
- Bugtraq: [XSS] I found a xss in phpmyadmin 3.3.0 when we create new database in interface!
- Bugtraq: [SECURITY] [DSA 2014-1] New moin packages fix several vulnerabilities
- Bugtraq: [USN-911-1] MoinMoin vulnerabilities
- More rss feeds from SecurityFocus
- LedgerSMB Multiple Vulnerabilities
- Kaspersky Lab Multiple Products Local Privilege Escalation Vulnerability
- Piwik Cookie Unserialize Vulnerability
- Invision Power Board SQL PHP File Inclusion and SQL Injection
- U.S. Defense Information Systems Agency (DISA) Unix Security Readiness Review (SRR) Vulnerability
- Netifera - Modular Open Source Platform for Security Tools
- WarVOX - Tools for Exploring, Classifying, and Auditing Telephone Systems
- Webshag - Web Server Audit Tool
- Browser Fuzzer
- FSpy - Linux Filesystem Activity Monitoring
- TA10-068A: Microsoft Updates for Multiple Vulnerabilities
- SB10-067: Vulnerability Summary for the Week of March 1, 2010
- SB10-060: Vulnerability Summary for the Week of February 22, 2010
- TA10-055A: Malicious Activity Associated with "Aurora" Internet Explorer Exploit
- SB10-053: Vulnerability Summary for the Week of February 15, 2010
- SB10-046: Vulnerability Summary for the Week of February 8, 2010
- TA10-040A: Microsoft Updates for Multiple Vulnerabilities
- SB10-040: Vulnerability Summary for the Week of February 1, 2010
- TA10-021A: Microsoft Internet Explorer Vulnerabilities
- SB10-018: Vulnerability Summary for the Week of January 11, 2010
- Infocon: green
- Reminder: Daylight Saving Time starts tonight in several countries. See http://www.timeanddate.com/time/dst2010.html for more details., (Sun, Mar 14th)
- Evil Sports Sites, (Sat, Mar 13th)
- Firebug 1.5.3 is out. See http://blog.getfirebug.com/2010/03/12/firebug-1-5-3/ , (Sat, Mar 13th)
- A new version of Safari is out. Looks like for Mac and Windows. Plenty of security fixes (mostly for Windows Safari users http://support.apple.com/kb/HT4070 ), (Thu, Mar 11th)
- Firefox 3.6 is being pushed out to users. http://www.mozilla.com/en-US/firefox/3.6/releasenotes/, (Fri, Mar 12th)
- Interesting SKYPE SPIM., (Thu, Mar 11th)
- New version of foxit pdf reader available. http://www.foxitsoftware.com/downloads/index.php, (Thu, Mar 11th)
- Cert write up on Skype IMBot Logic and Functionality., (Thu, Mar 11th)
- One a day keeps the hackers away. Read our discussion of the top 25 coding errors in the appsec streetfighter blog http://appsecstreetfighter.com ., (Thu, Mar 11th)
- DeDeCMS
- Open Educational System "CONF_INCLUDE_PATH" Parameter Multiple Remote File Include Vulnerabilities
- Website Baker "framework/class.wb.php" Security Bypass
- PBoard "upload/index.php" Remote File Upload
- WikyBlog Multiple Remote Input Validation Vulnerabilities
- Uiga Fan Club Login Multiple SQL Injection Vulnerabilities
- Pre Classified Listings "signup.asp" SQL Injection
- Softbiz Classifieds PLUS Script Multiple SQL Injection Vulnerabilities
- Softbiz Jobs "moredetails.php" SQL Injection
- MarketGate Package for Eshbel Priority ERP "Referer" Parameter Cross-Site Scripting
- Data Related to Kneber Botnet breach recovered by Netwitness
- Building security into business processes
- Spy Eye tool kit goes after Zeus botnet
- Black Hat: Researcher claims hack of chip used to secure computers, smartcards
- China steals Google's data
- PortSwigger.net - web application security
- eLearnSecurity : Breaking into system is no more enough
- NIST releases Security Content Automation Protocol for FISMA
- A zero-day flaw in the TLS and SSL protocols, which are commonly used to encrypt web pages, has been made public.
- Use Data Masking to Secure Sensitive Data in Non-Production Environments
- Data Related to Kneber Botnet breach recovered by Netwitness
- Building security into business processes
- Spy Eye tool kit goes after Zeus botnet
- Black Hat: Researcher claims hack of chip used to secure computers, smartcards
- China steals Google's data
- PortSwigger.net - web application security
- eLearnSecurity : Breaking into system is no more enough
- NIST releases Security Content Automation Protocol for FISMA
- A zero-day flaw in the TLS and SSL protocols, which are commonly used to encrypt web pages, has been made public.
- Use Data Masking to Secure Sensitive Data in Non-Production Environments
Contributors to this page: Michael Shinn
.
Page last modified on Tuesday 28 of February, 2006 17:14:29 EST by Michael Shinn
.
The content on this page is licensed under the terms of the Got Root License.
