BuyLow.com Computers And Internet - Internet Security, Computers, Mobile Devices, Networks


BuyLow.com | Resources | Contact Us


 

Identifying Hoaxes and Urban Legends

Chain letters are familiar to anyone with an email account, whether they are sent by strangers or well-intentioned friends or family members. Try to verify the information before following any instructions or passing the message along.
Why are chain letters a problem?
The most serious problem is from chain letters that mask viruses or other [...]

Read More About - Identifying Hoaxes and Urban Legends »

ComputerTraining.com Hit With Consumer Protection Lawsuit

HARRISBURG – A Maryland-based computer training school that suddenly closed in mid-December, after taking nearly $2 million dollars in tuition payments from Pennsylvania students, is the subject of a lawsuit filed by the Attorney General’s Bureau of Consumer Protection.
Attorney General Tom Corbett said the suit was filed against ComputerTraining.com, Inc., (ComputerTraining) which offered computer training [...]

Read More About - ComputerTraining.com Hit With Consumer Protection Lawsuit »

Fraudulent Web Sites

We are aware of public reports indicating that attackers are using legitimate web pages to run malicious code on victims’ machines.
Reports, including a posting by Sophos, indicate that these messages
* Include keywords and names related to a current event (such as, the 9/11/2001 terrorist attack)
* Prompt users [...]

Read More About - Fraudulent Web Sites »

Avoiding Social Engineering and Phishing Attacks

What is a social engineering attack?
To launch a social engineering attack, an attacker uses human interaction (social skills) to obtain or compromise information about an organization or its computer systems. An attacker may seem unassuming and respectable, possibly claiming to be a new employee, repair person, or researcher and even offering credentials to support that [...]

Read More About - Avoiding Social Engineering and Phishing Attacks »

Update for Microsoft Outlook Phishing Scams

A massive phishing scam similar to the recent bank fraud scams is being sent in emails that look like the following:
From: “Microsoft Customer Support”
Subject: Update for Microsoft Outlook
Critical Update
Update for Microsoft Outlook / Outlook Express (KB910721)
Brief Description
Microsoft has released an update for Microsoft Outlook / Outlook Express. This update is critical and provides [...]

Read More About - Update for Microsoft Outlook Phishing Scams »

Phishing Scams: Chase, Bank of America, Sun Trust

Alert — There is a massive new bank fraud phishing scam being conducted via email. The website address that appears in the body of the email looks valid; however, if you view the source, you will see a bogus domain name. Clicking on the link will take you to an unauthorized website. [...]

Read More About - Phishing Scams: Chase, Bank of America, Sun Trust »

Economic Stimulus Email and Website Scams

US-CERT is aware of reports of economic stimulus scams circulating. These scams are being conducted through both email and malicious websites.
Some of the email scam messages request personal information, which can then be used for identity theft. Other email scam messages offer to deposit the stimulus funds directly into users’ bank accounts. If users provide [...]

Read More About - Economic Stimulus Email and Website Scams »

IRS Stimulus Package Phishing Scam

US-CERT is aware of public reports indicating that phishing scams are circulating via fraudulent U.S. Internal Revenue Service emails offering users stimulus package payments. These emails include text that attempts to convince users to follow a link to a website or to complete an attached document. The website and document request the user to provide [...]

Read More About - IRS Stimulus Package Phishing Scam »

RSS BugTraq

  • Vulnerabilities in CMS WebManager-Pro
    Posted by MustLive on Sep 02Hello Bugtraq! I want to warn you about SQL Injection and Redirector (URL Redirector Abuse) vulnerabilities in CMS WebManager-Pro (SecurityVulns ID:11108). It's Ukrainian commercial CMS. SQL Injection: http://site/c.php?id=1%20and%20version()=5 Redirector: http://site/c.php?id=1&url=http://websecurity.com.ua Affected prod […]
  • {PRL} Novell Netware OpenSSH Remote Stack Overflow
    Posted by Francis Provencher on Sep 02##################################################################################### Application: Novell Netware OpenSSH Remote Stack Overflow Platforms: Netware 6.5 Exploitation: Remote code execution CVE Number: Novell TID: 7006756 ZeroDayInitiative: ZDI-10-169 Author: Francis Provencher (Protek Research Lab's) B […]
  • Moovida Media Player version 2.0.0.15 Insecure DLL Hijacking Vulnerability (libc.dll,quserex.dll)
    Posted by YGN Ethical Hacker Group on Sep 021. OVERVIEW The Moovida Media Player application is vulnerable to Insecure DLL Hijacking Vulnerability. Similar terms that describe this vulnerability have been come up with Remote Binary Planting, Unsafe Library Loading, and Insecure DLL Loading/Injection/Hijacking/Preloading. 2. PRODUCT DESCRIPTION Moovida Media […]
  • [ MDVSA-2010:168 ] openssl
    Posted by security on Sep 02 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2010:168 http://www.mandriva.com/security/ _______________________________________________________________________ Package : openssl Date : September 1, 2010 Affected: 2010.1 _____________________________________________ […]
  • [ MDVSA-2010:169 ] mozilla-thunderbird
    Posted by security on Sep 02 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2010:169 http://www.mandriva.com/security/ _______________________________________________________________________ Package : mozilla-thunderbird Date : September 2, 2010 Affected: 2008.0, 2009.0, 2010.0, 2010.1 _________ […]