The impact of structural vulnerabilities on enterprise websites
Dasient released a new research report, “Structural Vulnerabilities on Websites: Why Enterprise Websites Are Vulnerable to Malware Attacks,” which found that, …
Fake ImageShack emails lead to Zbot variant
Emails pretending to be registration notifications from the popular free image hosting website ImageShack are hitting inboxes, and are trying to get the users to follow a link …
Free tool to protect against Windows “.LNK” zero-day flaw
Sophos has released the Sophos Windows Shortcut Exploit Protection Tool, which protects against a vulnerability that allows malicious hackers to exploit a bug in the way that …
Managing your identity, secure access and online storage while protected by the cloud
Webroot announced Webroot Internet Security Complete, the company’s newest consumer offering that integrates cloud-based threat protection with identity management and …
APWG launches offline phishing education program
The Anti-phishing Working Group has contributed its expertise in online fraud to the Internal Revenue Service with the creation of a new consumer fax education initiative to …
OMG! Profile Spy targeting Facebook users
Facebook users are a curious lot, and one of the things that seemingly regularly piques their interest is the opportunity to see who views their profile. Posts that read …
U.K. seeks cyber experts, offers challenge and educational and job opportunities
It seems that the U.S. is not the only country with a severe shortage of cyber security experts – the U.K. is seeking them out as well. The BBC dubbed it a …
WoW players targeted with phishing emails
World of Warcraft players are once again targeted by a phishing scheme, says F-Secure. Emails purporting to come from Blizzard Entertainment – the creators of WoW …
Week in review: Adobe Reader sandbox, Stuxnet worm and a new 0-day Windows vulnerability
Here’s an overview of some of last week’s most interesting news, reviews, articles and videos: 10 steps for safe web surfing This is a good time for vacation-goers …
Georgian businesses targeted by identity thieves
A week ago, Colorado’s Secretary of State and the state’s Attorney General warned registered businesses that criminals are hijacking corporate names and brands in …
No more free bugs?
The recent announcements from Google and Mozilla that revealed their intent of paying up to $3,133.7 and $3,000 (respectively) for an eligible vulnerability discovered by …
Browser-enforced mitigation against CSRF
This is a video of a talk by Lieven Desmet and Philippe De Ryck at OWASP AppSec Research 2010.
Featured news
Resources
Don't miss
- Four arrested in connection with M&S, Co-op ransomware attacks
- Ruckus network management solutions riddled with unpatched vulnerabilities
- What EU’s PQC roadmap means on the ground
- Open source has a malware problem, and it’s getting worse
- Train smarter, respond faster: Close the skill gaps in your SOC