BuyLow.com Computers And Internet - Internet Security, Computers, Mobile Devices, Networks


BuyLow.com | Resources | Contact Us


 

Tracking GhostNet: Investigating a Cyber Espionage Network

This report documents the GhostNet – a suspected cyber espionage network of over 1,295 infected computers in 103 countries, 30% of which are high-value targets, including ministries of foreign affairs, embassies, international organizations, news media, and NGOs.
The capabilities of GhostNet are far-reaching. The report reveals that Tibetan computer systems were compromised giving attackers access to [...]

Read More About - Tracking GhostNet: Investigating a Cyber Espionage Network »

Conficker Worm Targets Microsoft Windows Systems

US-CERT is aware of public reports indicating a widespread infection of the Conficker worm, which can infect a Microsoft Windows system from a thumb drive, a network share, or directly across the network if the host is not patched with MS08-067.
The presence of a Conficker infection may be detected if a user is unable to [...]

Read More About - Conficker Worm Targets Microsoft Windows Systems »

Java Security Vulnerabilities

Sun Releases Updates for Java SE
added March 26, 2009 at 08:54 am
Sun has released updates for Java SE to address multiple vulnerabilities. These vulnerabilities may allow an attacker to execute arbitrary code, cause a denial-of-service condition, or operate with escalated privileges.
US-CERT encourages users to review the Sun Java SE 6 Update Release Notes and upgrade [...]

Read More About - Java Security Vulnerabilities »

Microsoft Updates for Multiple Vulnerabilities

Source: US-CERT
As part of the Microsoft Security Bulletin Summary for March 2009, Microsoft released updates to address vulnerabilities that affect Microsoft Windows and Windows Server.
A remote, unauthenticated attacker could gain elevated privileges, poison the DNS cache, execute arbitrary code, or cause a vulnerable application to crash.
Solution
Microsoft has provided updates for these vulnerabilities in the Microsoft [...]

Read More About - Microsoft Updates for Multiple Vulnerabilities »

RSS BugTraq

  • Vulnerabilities in CMS WebManager-Pro
    Posted by MustLive on Sep 02Hello Bugtraq! I want to warn you about SQL Injection and Redirector (URL Redirector Abuse) vulnerabilities in CMS WebManager-Pro (SecurityVulns ID:11108). It's Ukrainian commercial CMS. SQL Injection: http://site/c.php?id=1%20and%20version()=5 Redirector: http://site/c.php?id=1&url=http://websecurity.com.ua Affected prod […]
  • {PRL} Novell Netware OpenSSH Remote Stack Overflow
    Posted by Francis Provencher on Sep 02##################################################################################### Application: Novell Netware OpenSSH Remote Stack Overflow Platforms: Netware 6.5 Exploitation: Remote code execution CVE Number: Novell TID: 7006756 ZeroDayInitiative: ZDI-10-169 Author: Francis Provencher (Protek Research Lab's) B […]
  • Moovida Media Player version 2.0.0.15 Insecure DLL Hijacking Vulnerability (libc.dll,quserex.dll)
    Posted by YGN Ethical Hacker Group on Sep 021. OVERVIEW The Moovida Media Player application is vulnerable to Insecure DLL Hijacking Vulnerability. Similar terms that describe this vulnerability have been come up with Remote Binary Planting, Unsafe Library Loading, and Insecure DLL Loading/Injection/Hijacking/Preloading. 2. PRODUCT DESCRIPTION Moovida Media […]
  • [ MDVSA-2010:168 ] openssl
    Posted by security on Sep 02 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2010:168 http://www.mandriva.com/security/ _______________________________________________________________________ Package : openssl Date : September 1, 2010 Affected: 2010.1 _____________________________________________ […]
  • [ MDVSA-2010:169 ] mozilla-thunderbird
    Posted by security on Sep 02 _______________________________________________________________________ Mandriva Linux Security Advisory MDVSA-2010:169 http://www.mandriva.com/security/ _______________________________________________________________________ Package : mozilla-thunderbird Date : September 2, 2010 Affected: 2008.0, 2009.0, 2010.0, 2010.1 _________ […]