BuyLow.com Computers And Internet - Internet Security, Computers, Mobile Devices, Networks


BuyLow.com | Resources | Contact Us


 

Report On Web Security: Danger!

The IBM X-Force 2009 Mid-Year Trend and Risk report finds growing security concerns related to surfing the web.

“The trends highlighted by the report seem to indicate that the Internet has finally taken on the characteristics of the Wild West where no one is to be trusted,” said X-Force Director Kris Lamb. “There is no such thing as safe browsing today and it is no longer the case that only the red light district sites are responsible for malware. We’ve reached a tipping point where every Web site should be viewed as suspicious and every user is at risk. The threat convergence of the Web ecosystem is creating a perfect storm of criminal activity.”

“Two of the major themes for the first half of 2009 are the increase in sites hosting malware and the doubling of obfuscated Web attacks,” Lamb said. “The trends seem to reveal a fundamental security weakness in the Web ecosystem where interoperability between browsers, plugins, content and server applications dramatically increase the complexity and risk. Criminals are taking advantage of the fact that there is no such thing as a safe browsing environment and are leveraging insecure Web applications to target legitimate Web site users.”

Comments are closed.

RSS BugTraq

  • XSS vulnerability in Campsite
    Posted by advisory on Jul 30Vulnerability ID: HTB22494 Reference: http://www.htbridge.ch/advisory/xss_vulnerability_in_campsite.html Product: Campsite Vendor: Sourcefabric o.p.s ( http://www.sourcefabric.org/ ) Vulnerable Version: 3.3.6 and Probably Prior Versions Vendor Notification: 16 July 2010 Vulnerability Type: XSS (Cross Site Scripting) Status: Fixed […]
  • XSS vulnerability in Campsite
    Posted by advisory on Jul 30Vulnerability ID: HTB22495 Reference: http://www.htbridge.ch/advisory/xss_vulnerability_in_campsite_1.html Product: Campsite Vendor: Sourcefabric o.p.s ( http://www.sourcefabric.org/ ) Vulnerable Version: 3.3.6 and Probably Prior Versions Vendor Notification: 16 July 2010 Vulnerability Type: XSS (Cross Site Scripting) Status: Not […]
  • ESA-2010-012: EMC Disk Library (EDL) Denial Of Service Vulnerability
    Posted by Security_Alert on Jul 30ESA-2010-012: EMC Disk Library (EDL) Denial Of Service Vulnerability CVE Identifier: CVE-2010-2633 EMC Identifier: ESA-2010-012 Severity Rating: CVSS v2 Base Score: 7.1 (AV:N/AC:M/Au:N/C:N/I:N/A:C) Affected Software: EMC SW: EMC Disk Library (EDL) earlier than 3.2.7 EMC SW: EMC Disk Library (EDL) 3.3.x EMC SW: EMC Disk Libra […]
  • Insomnia : ISVA-100730.1 - CMS Multiple SQL injection Vulnerabilities
    Posted by Insomnia Security on Jul 30 […]
  • Day of bugs in WordPress 2
    Posted by MustLive on Jul 30Hello Bugtraq! I want to inform readers of the list about new project - Day of bugs in WordPress 2 - which I'll conduct at 30.07.2010, which I already announced today at my site. After conducting of Month of Search Engines Bugs (http://websecurity.com.ua/category/moseb/) in June 2007 and Month of Bugs in Captchas (http://webs […]