<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-9149765741928020644</id><updated>2012-01-28T14:29:24.877+02:00</updated><category term='mobile'/><category term='flash'/><category term='spotify'/><category term='infection'/><category term='malvertising'/><category term='dnschanger'/><category term='vulnerability'/><category term='websense'/><category term='malware'/><category term='ESET'/><category term='Rogue'/><category term='McAfee'/><category term='adobe'/><category term='Trend Micro'/><category term='Windows'/><category term='Apple'/><category term='Gpcode'/><category term='ZLOB'/><category term='chrome'/><category term='Srizbi'/><category term='mccolo'/><category term='picasa'/><category term='cisco'/><category term='f-secure'/><category term='BitDefender'/><category term='search terms'/><category term='Safari'/><category term='Security Essentials'/><category term='conficker'/><category term='downadup'/><category term='myspace'/><category term='oCERT'/><category term='VLC player'/><category term='patch'/><category term='IBM'/><category term='facebook'/><category term='malicious'/><category term='botnets'/><category term='SMS'/><category term='attack'/><category term='Sunbelt'/><category term='VMWare'/><category term='security'/><category term='Opera'/><category term='OpenOffice'/><category term='D-link'/><category term='injection attack'/><category term='cutwail'/><category term='mebroot'/><category term='RealPlayer'/><category term='autorun'/><category term='trojan'/><category term='wireshark'/><category term='rootkit'/><category term='ransomware'/><category term='pdf'/><category term='Open Office'/><category term='torpig'/><category term='koobface'/><category term='hijacking'/><category term='Firefox'/><category term='report'/><category term='iTunes'/><category term='fake'/><category term='UAC'/><category term='sinowal'/><category term='worm'/><category term='swf'/><category term='scam'/><category term='plugins'/><category term='winamp'/><category term='exploit'/><category term='Lotus Notes'/><category term='google'/><category term='MBR'/><category term='sandbox'/><category term='Microsoft'/><category term='pricewert'/><category term='Malwarebytes'/><category term='kaspersky'/><category term='Panda'/><category term='messagelabs'/><category term='Hotmail'/><category term='Oracle'/><category term='sql injection'/><category term='addons'/><category term='Mozilla'/><category term='foxit reader'/><category term='shockwave player'/><category term='Content Security Policy'/><category term='Spam'/><category term='thunderbird'/><category term='Razer'/><category term='Blogspot.com'/><category term='seamonkey'/><category term='update'/><category term='security threat'/><category term='Secure Computing'/><category term='messenger'/><category term='quicktime'/><category term='HP'/><category term='Storm'/><category term='research'/><category term='social engineering'/><category term='internet explorer'/><category term='WordPress'/><category term='symantec'/><category term='waledac'/><category term='Java'/><category term='pdf reader'/><category term='sans'/><category term='PHP'/><category term='acrobat'/><category term='phishing'/><category term='captcha'/><category term='Sun'/><category term='antivirus'/><category term='SEO'/><category term='service pack 3'/><category term='twitter'/><category term='virus'/><category term='royal wedding'/><category term='iFrame'/><category term='iPad'/><category term='targeted attack'/><title type='text'>Blade's Security Spot</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default?start-index=101&amp;max-results=100'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>574</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6822122007314635706</id><published>2012-01-28T14:29:00.000+02:00</published><updated>2012-01-28T14:29:24.895+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malware'/><category scheme='http://www.blogger.com/atom/ns#' term='Trend Micro'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><title type='text'>MS12-004 Vulnerability Exploiting Malware Found</title><content type='html'>Trend Micro warns in their blog about malware that exploits MIDI remote code execution vulnerability. Exploiting happens when Windows Multimedia Library in Windows Media Player (WMP) fails to handle a specially crafted MIDI file. According to the blog post infection vector is a malicious HTML exploiting the vulnerability by using two components that are also hosted on the same domain. The two files are: a MIDI file and a JavaScript code file.&lt;br /&gt;&lt;br /&gt;The exploited vulnerability was already addressed with an update (&lt;a href="http://technet.microsoft.com/en-us/security/bulletin/ms12-004"&gt;MS12-004&lt;/a&gt;) in Microsoft's last patch Tuesday. To protect against the threat users of affected systems should get this update installed as soon as possible.&lt;br /&gt;&lt;br /&gt;More details about the malware in &lt;a href="http://blog.trendmicro.com/malware-leveraging-midi-remote-code-execution-vulnerability-found/"&gt;Trend Micro blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6822122007314635706?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6822122007314635706/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6822122007314635706' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6822122007314635706'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6822122007314635706'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/ms12-004-vulnerability-exploiting.html' title='MS12-004 Vulnerability Exploiting Malware Found'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-3674915176989482695</id><published>2012-01-24T19:21:00.000+02:00</published><updated>2012-01-24T19:21:19.255+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>Chrome Updated</title><content type='html'>Google has released a new version of their Chrome web browser. Version 16.0.912.77 contains fixes to five vulnerabilities of which one is categorized as critical and four as high.&lt;br /&gt;&lt;br /&gt;More information in Google &lt;a href=http://googlechromereleases.blogspot.com/2012/01/stable-channel-update_23.html&gt;Chrome Releases&lt;/a&gt; blog.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-3674915176989482695?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/3674915176989482695/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=3674915176989482695' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3674915176989482695'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3674915176989482695'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/chrome-updated.html' title='Chrome Updated'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1514279947048347192</id><published>2012-01-19T09:29:00.000+02:00</published><updated>2012-01-19T09:29:12.807+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Oracle'/><title type='text'>Oracle Critical Patch Update For Q1 of 2012</title><content type='html'>Oracle has released updates for their products that fix 78 security issues in total. The updates are a part of Oracle's quarterly released critical patch update (CPU).&lt;br /&gt;&lt;br /&gt;Detailed list of vulnerabilities with patching instructions can be read from &lt;a href=http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html&gt;Oracle CPU Advisory&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Next Oracle CPU is planned to be released in April 2012.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1514279947048347192?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1514279947048347192/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1514279947048347192' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1514279947048347192'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1514279947048347192'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/oracle-critical-patch-update-for-q1-of.html' title='Oracle Critical Patch Update For Q1 of 2012'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6790739403549432311</id><published>2012-01-14T12:41:00.000+02:00</published><updated>2012-01-14T12:42:52.637+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for December 2011</title><content type='html'>ESET has released a report discussing global threats of December 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats of 2011 list:&lt;br /&gt;&lt;br /&gt;1.  INF/Autorun&lt;br /&gt;2.  Win32/Conficker&lt;br /&gt;3.  Win32/Sality&lt;br /&gt;4.  Win32/PSW.OnLineGames&lt;br /&gt;5.  HTML/Iframe.B&lt;br /&gt;6.  HTML/ScrInject.B&lt;br /&gt;7.  Win32/Autoit&lt;br /&gt;8.  Win32/Bflient&lt;br /&gt;9.  Win32/Tifaut&lt;br /&gt;10. Win32/Spy.Ursnif.A&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://www.eset.com/us/resources/threat-trends/Global_Threat_Trends_December_2011.pdf&gt;here&lt;/a&gt; (in PDF format).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6790739403549432311?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6790739403549432311/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6790739403549432311' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6790739403549432311'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6790739403549432311'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/eset-global-threat-report-for-december.html' title='ESET Global Threat Report for December 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-2030353512740678968</id><published>2012-01-11T14:47:00.001+02:00</published><updated>2012-01-11T14:47:06.415+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='wireshark'/><title type='text'>Vulnerabilities In Wireshark</title><content type='html'>There has been found three vulnerabilities in Wireshark, free open source program for analyzing network protocols. By exploiting the vulnerabilities an attacker may be able to make Wireshark crash, hang, or execute arbitrary code by injecting a series of malformed packets onto the wire or by convincing someone to read a malformed packet trace file.&lt;br /&gt;&lt;br /&gt;Vulnerable versions are all versions prior 1.4.11 or 1.6.5.&lt;br /&gt;&lt;br /&gt;Non vulnerable version of Wireshark can be downloaded &lt;a href=http://www.wireshark.org/download.html&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;More information can be read from these advisories:&lt;br /&gt;- &lt;a href=http://www.wireshark.org/security/wnpa-sec-2012-01.html&gt;http://www.wireshark.org/security/wnpa-sec-2012-01.html&lt;/a&gt;&lt;br /&gt;- &lt;a href=http://www.wireshark.org/security/wnpa-sec-2012-02.html&gt;http://www.wireshark.org/security/wnpa-sec-2012-02.html&lt;/a&gt;&lt;br /&gt;- &lt;a href=http://www.wireshark.org/security/wnpa-sec-2012-03.html&gt;http://www.wireshark.org/security/wnpa-sec-2012-03.html&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-2030353512740678968?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/2030353512740678968/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=2030353512740678968' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2030353512740678968'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2030353512740678968'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/vulnerabilities-in-wireshark.html' title='Vulnerabilities In Wireshark'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-3653513578343633446</id><published>2012-01-10T22:45:00.000+02:00</published><updated>2012-01-10T22:46:29.541+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='pdf'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='acrobat'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='pdf reader'/><title type='text'>Adobe Reader And Acrobat Security Updates</title><content type='html'>Adobe has released security updates to fix a bunch of critical vulnerabilities in their PDF products, Adobe Reader and Adobe Acrobat.&lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;*of series X (10.x)&lt;br /&gt;Adobe Reader 10.1.1 and earlier&lt;br /&gt;Adobe Acrobat 10.1.1 and earlier&lt;br /&gt;&lt;br /&gt;*of series 9.x&lt;br /&gt;Adobe Reader 9.4.7 and earlier&lt;br /&gt;Adobe Acrobat 9.4.7 and earlier&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help &gt; Check for Updates.&lt;br /&gt;&lt;br /&gt;Those who want to upgrade manually, can download the latest versions of the links below:&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=10&amp;platform=Windows&gt;Adobe Reader&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=1&amp;platform=Windows&gt;Acrobat Standard and Pro&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=158&amp;platform=Windows&gt;Acrobat Pro Extended&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;More information about fixed vulnerabilities can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb12-01.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-3653513578343633446?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/3653513578343633446/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=3653513578343633446' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3653513578343633446'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3653513578343633446'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/adobe-reader-and-acrobat-security.html' title='Adobe Reader And Acrobat Security Updates'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-279633097136980899</id><published>2012-01-10T22:32:00.000+02:00</published><updated>2012-01-10T22:32:17.277+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For January 2012</title><content type='html'>Microsoft has released security updates for January 2012. This month update contains seven security bulletins of which one critical and six important.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://technet.microsoft.com/en-us/security/bulletin/ms12-jan&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href="http://update.microsoft.com/"&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-279633097136980899?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/279633097136980899/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=279633097136980899' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/279633097136980899'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/279633097136980899'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/microsoft-security-updates-for-january.html' title='Microsoft Security Updates For January 2012'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1995327592147390030</id><published>2012-01-09T22:38:00.000+02:00</published><updated>2012-01-09T22:38:13.506+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='WordPress'/><title type='text'>Fix For WordPress Available</title><content type='html'>There has been fixed an XSS (cross site scripting) vulnerability in WordPress. The vulnerability could allow an attacker to put malicious content on affected site. Affected are WordPress versions earlier than 3.3.1.&lt;br /&gt;&lt;br /&gt;More information can be read from &lt;a href=http://wordpress.org/news/2012/01/wordpress-3-3-1/&gt;WordPress blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1995327592147390030?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1995327592147390030/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1995327592147390030' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1995327592147390030'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1995327592147390030'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/fix-for-wordpress-available.html' title='Fix For WordPress Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-3091936251562573079</id><published>2012-01-07T16:01:00.000+02:00</published><updated>2012-01-07T16:01:21.391+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>Update For Chrome Available</title><content type='html'>Google has released a new version of their Chrome web browser. Version 16.0.912.75 contains fixes to three vulnerabilities of which all of them being categorized as high.&lt;br /&gt; &lt;br /&gt;More information in Google &lt;a href=http://googlechromereleases.blogspot.com/2012/01/stable-channel-update.html&gt;Chrome Releases blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-3091936251562573079?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/3091936251562573079/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=3091936251562573079' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3091936251562573079'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3091936251562573079'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2012/01/update-for-chrome-available.html' title='Update For Chrome Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-929425991635545674</id><published>2011-12-21T22:32:00.000+02:00</published><updated>2011-12-21T22:33:30.331+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Mozilla'/><category scheme='http://www.blogger.com/atom/ns#' term='seamonkey'/><category scheme='http://www.blogger.com/atom/ns#' term='thunderbird'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Firefox'/><title type='text'>Security Updates To Mozilla Products</title><content type='html'>Mozilla has released updates to Firefox and Seamonkey browsers and Thunderbird email client to address a bunch of vulnerabilities of which several categorized as critical.&lt;br /&gt;&lt;br /&gt;Affected products are:- Mozilla Thunderbird earlier than 9.0- Mozilla SeaMonkey earlier than 2.6- Mozilla Firefox earlier than 9.0&lt;br /&gt;&lt;br /&gt;Links to the security advisories with details about addressed security issues:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-59.html&gt;MFSA 2011-59&lt;/a&gt; .jar not treated as executable in Firefox 3.6 on Mac &lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-58.html&gt;MFSA 2011-58&lt;/a&gt; Crash scaling video element to extreme sizes &lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-57.html&gt;MFSA 2011-57&lt;/a&gt; Crash when plugin removes itself on Mac OS X &lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-56.html&gt;MFSA 2011-56&lt;/a&gt; Key detection without JavaScript via SVG animation &lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-55.html&gt;MFSA 2011-55&lt;/a&gt; nsSVGValue out-of-bounds access &lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-54.html&gt;MFSA 2011-54&lt;/a&gt; Potentially exploitable crash in the YARR regular expression library &lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-53.html&gt;MFSA 2011-53&lt;/a&gt; Miscellaneous memory safety hazards (rv:9.0) &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Fresh versions can be obtained via inbuilt updater or by downloading from the product site:&lt;a href=http://www.firefox.com/&gt;Firefox&lt;/a&gt;&lt;a href=http://www.mozillamessaging.com/en-US/&gt;Thunderbird&lt;/a&gt;&lt;a href=http://www.seamonkey-project.org/&gt;SeaMonkey&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-929425991635545674?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/929425991635545674/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=929425991635545674' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/929425991635545674'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/929425991635545674'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/security-updates-to-mozilla-products.html' title='Security Updates To Mozilla Products'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1969287495444406663</id><published>2011-12-17T13:12:00.003+02:00</published><updated>2011-12-21T22:34:11.449+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='pdf reader'/><title type='text'>Updates For Adobe Reader and Acrobat 9.x Windows Versions</title><content type='html'>Adobe has released updates for Adobe Reader and Acrobat 9.x series Windows versions. New version patches &lt;a href=http://bladessecurityspot.blogspot.com/2011/12/vulnerability-in-adobe-pdf-products.html&gt;earlier informed&lt;/a&gt; vulnerability (CVE-2011-2462) and also other vulnerability (CVE-2011-4369). Both may allow an attacker to take control of the vulnerable system.&lt;br /&gt;&lt;br /&gt;Above mentioned vulnerabilities exist also in Adobe Reader X and Adobe Acrobat X versions. However, protection modes built in those prevent exploit of the type currently targeting these two vulnerabilities from executing. Thus, Adobe is planning to address theses issues in their next quarterly security update for Adobe Reader and Acrobat (scheduled for January 10, 2012).&lt;br /&gt;&lt;br /&gt;More information in the related &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-30.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1969287495444406663?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1969287495444406663/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1969287495444406663' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1969287495444406663'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1969287495444406663'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/updates-for-adobe-reader-and-acrobat-9x.html' title='Updates For Adobe Reader and Acrobat 9.x Windows Versions'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5294625805589747613</id><published>2011-12-14T16:06:00.000+02:00</published><updated>2011-12-21T22:34:50.241+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For December 2011</title><content type='html'>Microsoft has released security updates for December 2011. This month update contains 13 security bulletins of which three critical and ten important.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://technet.microsoft.com/en-us/security/bulletin/ms11-dec&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5294625805589747613?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5294625805589747613/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5294625805589747613' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5294625805589747613'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5294625805589747613'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/microsoft-security-updates-for-december.html' title='Microsoft Security Updates For December 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7877551625206476080</id><published>2011-12-13T19:20:00.000+02:00</published><updated>2011-12-13T19:21:37.266+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='winamp'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Vulnerabilities In Winamp</title><content type='html'>There have been found three &lt;a href="http://secunia.com/advisories/46882/"&gt;vulnerabilities&lt;/a&gt; in Nullsoft's Winamp media player. Two of these are in the in_avi.dll plugin and one in the in_mod.dll plugin. Successful exploiting may allow executing of arbitrary code in vulnerable system.&lt;br /&gt;&lt;br /&gt;Affected versions:Winamp 5.622 but older versions may also be affected&lt;br /&gt;&lt;br /&gt;Solution:Users of affected version can download latest version on &lt;a href="http://www.winamp.com/media-player/all"&gt;Winamp download site&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7877551625206476080?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7877551625206476080/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7877551625206476080' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7877551625206476080'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7877551625206476080'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/vulnerabilities-in-winamp.html' title='Vulnerabilities In Winamp'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-236149821698786511</id><published>2011-12-09T23:08:00.001+02:00</published><updated>2011-12-21T22:35:25.866+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='foxit reader'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='pdf reader'/><title type='text'>Vulnerability In Foxit Reader</title><content type='html'>There has been found a vulnerability in Foxit Reader, software for pdf file handling. This issue was caused by the cross-border assignment of an array which may result in memory corruption vulnerabilities.&lt;br /&gt;&lt;br /&gt;Affected are Foxit Reader 5.1.0.1021 and earlier versions. Foxit Reader users should update their version to the latest one available either by using "Check for Updates Now" in Reader help menu or by downloading fresh version &lt;a href="http://www.foxitsoftware.com/Secure_PDF_Reader/"&gt;here&lt;/a&gt; (Note: remember to unselect toolbar related options during the installation process unless you really want that installed too).More information &lt;a href="http://www.foxitsoftware.com/Secure_PDF_Reader/security_bulletins.php#termination"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-236149821698786511?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/236149821698786511/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=236149821698786511' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/236149821698786511'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/236149821698786511'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/vulnerability-in-foxit-reader.html' title='Vulnerability In Foxit Reader'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1192770092433789378</id><published>2011-12-09T22:07:00.001+02:00</published><updated>2011-12-09T22:07:44.390+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='symantec'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>Symantec Intelligence Report: November 2011</title><content type='html'>Symantec has published their &lt;a href=http://www.symanteccloud.com/globalthreats&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for November 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 70.5 percent (a decrease of 3.7 percentage points since October 2011)&lt;br /&gt;- Phishing – One in 302.0 emails identified as phishing (an increase of 0.04 percentage points since October 2011)&lt;br /&gt;- Malware – One in 255.8 emails contained malware (a decrease of 0.03 percentage points since October 2011)&lt;br /&gt;- Malicious Web sites – 4,915 Web sites blocked per day (an increase of 47.8 percent since October 2011)&lt;br /&gt;- A Review of Targeted Attacks in 2011&lt;br /&gt;- Revolution of Russian Phone Number Spam&lt;br /&gt;- Best Practices for Enterprises and Users&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.symanteccloud.com/en/us/mlireport/SYMCINT_2011_11_November_FINAL-en.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1192770092433789378?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1192770092433789378/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1192770092433789378' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1192770092433789378'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1192770092433789378'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/symantec-intelligence-report-november.html' title='Symantec Intelligence Report: November 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5708999882804766513</id><published>2011-12-07T12:34:00.001+02:00</published><updated>2011-12-07T12:36:45.283+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='pdf'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='acrobat'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><title type='text'>Vulnerability in Adobe PDF products</title><content type='html'>Adobe has released an &lt;a href=http://blogs.adobe.com/psirt/2011/12/security-advisory-for-adobe-reader-and-acrobat-apsa11-04.html&gt;advisory&lt;/a&gt; about a critical vulnerability in Adobe Reader &amp; Adobe Acrobat products. This vulnerability (CVE-2011-2462) could cause a crash and potentially allow an attacker to take control of the affected system. &lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;- Adobe Reader X (10.1.1) and earlier versions&lt;br /&gt;- Adobe Reader 9.4.6 and earlier 9.x versions&lt;br /&gt;- Adobe Acrobat X (10.1.1) and earlier versions&lt;br /&gt;&lt;br /&gt;Fix availability:&lt;br /&gt;&lt;i&gt;"We are in the process of finalizing a fix for the issue and expect to make available an update for Adobe Reader and Acrobat 9.x for Windows no later than the week of December 12, 2011. Because Adobe Reader X Protected Mode and Adobe Acrobat X Protected View would prevent an exploit of this kind from executing, we are currently planning to address this issue in Adobe Reader X and Acrobat X for Windows with the next quarterly security update for Adobe Reader and Acrobat, currently scheduled for January 10, 2012."&lt;/i&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5708999882804766513?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5708999882804766513/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5708999882804766513' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5708999882804766513'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5708999882804766513'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/vulnerability-in-adobe-pdf-products.html' title='Vulnerability in Adobe PDF products'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4591637226679244433</id><published>2011-12-07T12:05:00.000+02:00</published><updated>2011-12-07T12:06:48.289+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Opera'/><title type='text'>Patch For Opera Released</title><content type='html'>Opera Software has released an update for their Opera web browser. &lt;a href=http://www.opera.com/docs/changelogs/windows/1160/&gt;Version 11.60&lt;/a&gt; contains fixes to four security vulnerabilities (of one moderate of these Opera will reveal details later).&lt;br /&gt;&lt;br /&gt;moderate:&lt;br /&gt;* Pages can set cookies and communicate cross-site for some top level domains; &lt;a href=http://www.opera.com/support/kb/view/1003/&gt;advisory&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;low:&lt;br /&gt;* A weakness in the SSL v3.0 and TLS 1.0 specifications can allow eavesdropping attacks against some applications; &lt;a href=http://www.opera.com/support/kb/view/1004/&gt;advisory&lt;/a&gt;&lt;br /&gt;* JavaScript "in" operator allows leakage of cross-domain information; &lt;a href=http://www.opera.com/support/kb/view/1005/&gt;advisory&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Opera users are strongly recommended to update to 11.60 version. New version can be downloaded &lt;a href=http://www.opera.com/browser/download/&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4591637226679244433?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4591637226679244433/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4591637226679244433' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4591637226679244433'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4591637226679244433'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/patch-for-opera-released.html' title='Patch For Opera Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7106858560423379855</id><published>2011-12-05T14:21:00.000+02:00</published><updated>2011-12-05T14:22:34.491+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for November 2011</title><content type='html'>ESET has released a report discussing global threats of November 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Dorkbot (2.)&lt;br /&gt;3. HTML/ScrInject.B (4.)&lt;br /&gt;4. HTML/Iframe.B (6.)&lt;br /&gt;5. Win32/Conficker (3.)&lt;br /&gt;6. Win32/Autoit (7.)&lt;br /&gt;7. Win32/Sality (5.)&lt;br /&gt;8. Win32/Ramnit (8.)&lt;br /&gt;9. JS/TrojanDownloader.Iframe.NKE (9.)&lt;br /&gt;10. Win32/PSW.OnLineGames (10.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://www.eset.com/us/resources/threat-trends/Global_Threat_Trends_November_2011.pdf&gt;here&lt;/a&gt; (in PDF format).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7106858560423379855?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7106858560423379855/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7106858560423379855' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7106858560423379855'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7106858560423379855'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/12/eset-global-threat-report-for-november.html' title='ESET Global Threat Report for November 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-9159974801887572720</id><published>2011-11-21T18:55:00.000+02:00</published><updated>2011-11-21T18:57:12.727+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='RealPlayer'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Security Patch For RealPlayer</title><content type='html'>RealNetworks has released updated version of their RealPlayer. New version contains fixes to 19 vulnerabilities.&lt;br /&gt;&lt;br /&gt;Affected software: Windows RealPlayer prior 15.0.0 version&lt;br /&gt;&lt;br /&gt;Users of affected versions are advised to update their RealPlayer to the &lt;a href=http://eu.real.com/realplayer&gt;latest one&lt;/a&gt; available. More information can be read from related &lt;a href=http://service.real.com/realplayer/security/11182011_player/en/&gt;security advisory&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-9159974801887572720?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/9159974801887572720/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=9159974801887572720' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9159974801887572720'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9159974801887572720'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/security-patch-for-realplayer.html' title='Security Patch For RealPlayer'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1190076769038646169</id><published>2011-11-21T08:14:00.001+02:00</published><updated>2011-11-21T08:15:46.656+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for October 2011</title><content type='html'>ESET has released a report discussing global threats of October 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Dorkbot (3.)&lt;br /&gt;3. Win32/Conficker (2.)&lt;br /&gt;4. HTML/ScrInject.B (7.)&lt;br /&gt;5. Win32/Sality (4.)&lt;br /&gt;6. HTML/Iframe.B (5.)&lt;br /&gt;7. Win32/Autoit (6.)&lt;br /&gt;8. Win32/Ramnit (8.)&lt;br /&gt;9. JS/TrojanDownloader.Iframe.NKE (10.)&lt;br /&gt;10. Win32/PSW.OnLineGames (9.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://go.eset.com/us/resources/threat-trends/Global_Threat_Trends_October_2011.pdf&gt;here&lt;/a&gt; (in PDF format).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1190076769038646169?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1190076769038646169/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1190076769038646169' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1190076769038646169'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1190076769038646169'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/eset-global-threat-report-for-october.html' title='ESET Global Threat Report for October 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8752356266728727287</id><published>2011-11-17T17:53:00.002+02:00</published><updated>2011-11-17T17:55:45.580+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='iTunes'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Apple'/><title type='text'>Patched iTunes Available</title><content type='html'>Apple has released version 10.5.1 of their iTunes media player. New version fixes a security issue that could allow a man-in-the-middle attack (CVE-2008-3434). Latest version can be downloaded &lt;a href=http://www.apple.com/itunes/download/&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;More information about the update can be read from related &lt;a href=http://support.apple.com/kb/HT5030&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8752356266728727287?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8752356266728727287/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8752356266728727287' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8752356266728727287'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8752356266728727287'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/patched-itunes-available.html' title='Patched iTunes Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-3684481864827564192</id><published>2011-11-11T11:24:00.001+02:00</published><updated>2011-11-11T11:24:56.986+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Update For Adobe Flash Player</title><content type='html'>Adobe has released updated version of their Flash Player. The new version fixes some critical categorized vulnerabilities:&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2445)&lt;br /&gt;- a heap corruption vulnerability that could lead to code execution (CVE-2011-2450)&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2451)&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2452)&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2453)&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2454)&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2455)&lt;br /&gt;- a buffer overflow vulnerability that could lead to code execution (CVE-2011-2456)&lt;br /&gt;- a stack overflow vulnerability that could lead to code execution (CVE-2011-2457)&lt;br /&gt;- a vulnerability that could lead to a cross-domain policy bypass (Internet Explorer-only) (CVE-2011-2458)&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2459)&lt;br /&gt;- a memory corruption vulnerability that could lead to code execution (CVE-2011-2460)&lt;br /&gt;&lt;br /&gt;Users of Adobe Flash Player 11.0.1.152 and earlier should update to Adobe Flash Player 11.1.102.55. Also, users of Adobe AIR version 3.0 and earlier should update to Adobe AIR 3.1.0.4880.&lt;br /&gt;&lt;br /&gt;More information can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-28.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-3684481864827564192?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/3684481864827564192/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=3684481864827564192' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3684481864827564192'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3684481864827564192'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/update-for-adobe-flash-player.html' title='Update For Adobe Flash Player'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4054939966897817381</id><published>2011-11-11T11:10:00.000+02:00</published><updated>2011-11-11T11:17:09.340+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>Chrome Update Available</title><content type='html'>Update For Chrome Available&lt;br /&gt;Google has released a new version of their Chrome web browser. Version 15.0.874.120 contains fixes to seven vulnerabilities of which five are high, one medium and one low categorized.&lt;br /&gt;&lt;br /&gt;More information in Google &lt;a href=http://googlechromereleases.blogspot.com/2011/11/stable-channel-update.html&gt;Chrome Releases&lt;/a&gt; blog.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4054939966897817381?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4054939966897817381/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4054939966897817381' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4054939966897817381'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4054939966897817381'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/chrome-update-available.html' title='Chrome Update Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6992247959719521630</id><published>2011-11-10T10:21:00.001+02:00</published><updated>2011-11-10T10:22:38.995+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='thunderbird'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Firefox'/><title type='text'>Security Updates From Mozilla</title><content type='html'>Mozilla has released updates to Firefox browser and Thunderbird email client to address a bunch of vulnerabilities of which many are categorized as critical.&lt;br /&gt;&lt;br /&gt;Affected products are:&lt;br /&gt;- Mozilla Thunderbird earlier than 8.0 or 3.1.16&lt;br /&gt;- Mozilla Firefox earlier than 8.0 or 3.6.24&lt;br /&gt;&lt;br /&gt;Links to the security advisories with details about addressed security issues:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-52.html&gt;MFSA 2011-52&lt;/a&gt; Code execution via NoWaiverWrapper&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-51.html&gt;MFSA 2011-51&lt;/a&gt; Cross-origin image theft on Mac with integrated Intel GPU&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-50.html&gt;MFSA 2011-50&lt;/a&gt; Cross-origin data theft using canvas and Windows D2D&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-49.html&gt;MFSA 2011-49&lt;/a&gt; Memory corruption while profiling using Firebug&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-48.html&gt;MFSA 2011-48&lt;/a&gt; Miscellaneous memory safety hazards (rv:8.0)&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-47.html&gt;MFSA 2011-47&lt;/a&gt; Potential XSS against sites using Shift-JIS&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-46.html&gt;MFSA 2011-46&lt;/a&gt; loadSubScript unwraps XPCNativeWrapper scope parameter (1.9.2 branch)&lt;br /&gt;&lt;br /&gt;Fresh versions can be obtained via inbuilt updater or by downloading from the product site:&lt;br /&gt;&lt;a href=http://www.firefox.com/&gt;Firefox&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.mozillamessaging.com/en-US/&gt;Thunderbird&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6992247959719521630?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6992247959719521630/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6992247959719521630' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6992247959719521630'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6992247959719521630'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/security-updates-from-mozilla.html' title='Security Updates From Mozilla'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4086257313683675502</id><published>2011-11-10T10:11:00.000+02:00</published><updated>2011-11-10T10:12:57.657+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='shockwave player'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><title type='text'>Adobe Shockwave Player Updated</title><content type='html'>Adobe has released updated version of their Shockwave Player. The new version fixes several security vulnerabilities. The update is categorized as critical.&lt;br /&gt;&lt;br /&gt;Users of Adobe Shockwave Player 11.6.1.629 and earlier should update to Adobe Shockwave Player 11.6.3.633.&lt;br /&gt;&lt;br /&gt;More about fixed vulnerabilities and other information can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-27.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4086257313683675502?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4086257313683675502/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4086257313683675502' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4086257313683675502'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4086257313683675502'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/adobe-shockwave-player-updated.html' title='Adobe Shockwave Player Updated'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-383128018828901850</id><published>2011-11-08T21:55:00.000+02:00</published><updated>2011-11-08T21:56:38.720+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For November 2011</title><content type='html'>Microsoft has released security updates for November 2011. This month update contains four security bulletins of which one critical, two important and one moderate.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://technet.microsoft.com/security/bulletin/ms11-nov&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-383128018828901850?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/383128018828901850/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=383128018828901850' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/383128018828901850'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/383128018828901850'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/microsoft-security-updates-for-november.html' title='Microsoft Security Updates For November 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4461214059752630217</id><published>2011-11-04T21:14:00.002+02:00</published><updated>2011-11-04T21:20:13.432+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Unpatched Vulnerability in TrueType Font Parsing</title><content type='html'>Microsoft is investigating a vulnerability in a Windows component, the Win32k TrueType font parsing engine. By exploiting the vulnerability an attacker may be able to run arbitrary code in kernel mode. The attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Microsoft is aware of targeted attacks that try to exploit this vulnerability. Duqu malware is reported to be exploiting the vulnerability.&lt;br /&gt;&lt;br /&gt;At the moment there is no patch against the vulnerability available. However, has listed some workarounds to mitigate the problem. More information about this can be read from the &lt;a href=http://technet.microsoft.com/en-us/security/advisory/2639658&gt;Microsoft Security Advisory (2639658)&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4461214059752630217?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4461214059752630217/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4461214059752630217' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4461214059752630217'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4461214059752630217'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/unpatched-vulnerability-in-truetype.html' title='Unpatched Vulnerability in TrueType Font Parsing'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5619968097638965633</id><published>2011-11-02T18:17:00.000+02:00</published><updated>2011-11-02T18:18:47.522+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='symantec'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>Symantec Intelligence Report: October 2011</title><content type='html'>Symantec has published their &lt;a href=http://www.symanteccloud.com/globalthreats&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for October 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 74.2 percent in October (a decrease of 0.6 percentage points since September 2011)&lt;br /&gt;- Phishing – One in 343.1 emails identified as phishing (an increase of 0.07 percentage points since September 2011)&lt;br /&gt;- Malware – One in 235.8 emails in October contained malware (a decrease of 0.11 percentage points since September 2011)&lt;br /&gt;- Malicious Web sites – 3,325 Web sites blocked per day (a decrease of 4.3 percent since September 2011)&lt;br /&gt;- 43.9 percent of all malicious domains blocked were new in October (a decrease of 0.7 percentage points since September 2011)&lt;br /&gt;- 15.2 percent of all Web-based malware blocked was new in October (an increase of 0.7 percentage points since September 2011)&lt;br /&gt;- Spammers setting up more URL shortening services&lt;br /&gt;- Social engineering example from the East&lt;br /&gt;- New Symantec Research: W32.Duqu - Precursor to the Next Stuxnet&lt;br /&gt;- New Symantec Research: The Motivations of Recent Android Malware&lt;br /&gt;- Best Practices for Enterprises and Users&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.symanteccloud.com/en/us/mlireport/SYMCINT_2011_10_October_FINAL-en.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5619968097638965633?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5619968097638965633/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5619968097638965633' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5619968097638965633'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5619968097638965633'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/11/symantec-intelligence-report-october.html' title='Symantec Intelligence Report: October 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-2906950807802006221</id><published>2011-10-31T07:50:00.001+02:00</published><updated>2011-10-31T07:52:56.261+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for September 2011</title><content type='html'>ESET has released a report discussing global threats of September 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Conficker (2.)&lt;br /&gt;3. Win32/Dorkbot (4.)&lt;br /&gt;4. Win32/Sality (5.)&lt;br /&gt;5. HTML/Iframe.B.Gen (3.)&lt;br /&gt;6. Win32/Autoit (7.)&lt;br /&gt;7. HTML/ScrInject.B (6.)&lt;br /&gt;8. Win32/Ramnit (10.)&lt;br /&gt;9. Win32/PSW.OnLineGames (8.)&lt;br /&gt;10. JS/TrojanDownloader.Iframe.NKE (9.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href="http://go.eset.com/us/resources/threat-trends/Global_Threat_Trends_September_2011.pdf"&gt;here&lt;/a&gt; (in PDF format).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-2906950807802006221?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/2906950807802006221/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=2906950807802006221' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2906950807802006221'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2906950807802006221'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/eset-global-threat-report-for-september.html' title='ESET Global Threat Report for September 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6926842132237717138</id><published>2011-10-28T09:36:00.001+03:00</published><updated>2011-10-28T09:39:18.680+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='quicktime'/><category scheme='http://www.blogger.com/atom/ns#' term='Apple'/><title type='text'>QuickTime 7.7.1 Released</title><content type='html'>Apple has released new version of their QuickTime. Version 7.7.1 contains fixes for a bunch of vulnerabilities that could be exploited to run arbitrary code in target system.&lt;br /&gt;&lt;br /&gt;QuickTime users with version older than 7.7.1 should update to the &lt;a href=http://www.apple.com/quicktime/download/&gt;latest one&lt;/a&gt; available.&lt;br /&gt;&lt;br /&gt;More information about security content of QuickTime 7.7.1 can be read &lt;a href=http://support.apple.com/kb/HT5016&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6926842132237717138?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6926842132237717138/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6926842132237717138' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6926842132237717138'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6926842132237717138'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/quicktime-771-released.html' title='QuickTime 7.7.1 Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-3091346054023344911</id><published>2011-10-26T11:18:00.002+03:00</published><updated>2011-10-26T11:22:45.850+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>New Chrome Version Available</title><content type='html'>Google has released a new version of their Chrome web browser. Version 15.0.874.102 contains fixes to 18 vulnerabilities of which 11 are high, three are medium and four low categorized. Along with security fixes there's also some other &lt;a href=http://chrome.blogspot.com/2011/10/making-chrome-even-more-app-ealing.html&gt;tweaks&lt;/a&gt;, like a New Tab page, added.&lt;br /&gt;&lt;br /&gt;More information in Google &lt;a href=http://googlechromereleases.blogspot.com/2011/10/chrome-stable-release.html&gt;Chrome Releases blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-3091346054023344911?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/3091346054023344911/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=3091346054023344911' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3091346054023344911'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3091346054023344911'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/new-chrome-version-available.html' title='New Chrome Version Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5716570028999205470</id><published>2011-10-20T19:27:00.001+03:00</published><updated>2011-10-20T19:38:12.242+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Java'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Oracle'/><title type='text'>Java Updates From Oracle</title><content type='html'>Oracle has released update for Java JRE and JDK. The update fixes 20 vulnerabilities of which nine can be exploited to execute arbitrary code in affected system.&lt;br /&gt;&lt;br /&gt;Affected versions are:&lt;br /&gt;- Java 7 JRE and JDK earlier than update 1 (1.7.0_1)&lt;br /&gt;- Java 6 JRE and JDK earlier than update 29 (1.6.0_29)&lt;br /&gt;- Java 5.0 JRE and JDK earlier than update 32 (1.5.0_32)&lt;br /&gt;- Java 1.4.2 JRE and JDK earlier than update 34 (1.4.2_34)&lt;br /&gt;&lt;br /&gt;More information about the update can be read from &lt;a href=http://www.oracle.com/technetwork/topics/security/javacpuoct2011-443431.html&gt;Java critical patch update document&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Java users are recommended to update their versions to the latest one available.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5716570028999205470?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5716570028999205470/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5716570028999205470' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5716570028999205470'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5716570028999205470'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/java-updates-from-oracle.html' title='Java Updates From Oracle'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5790483612277802705</id><published>2011-10-20T19:09:00.001+03:00</published><updated>2011-10-20T19:13:51.489+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Oracle'/><title type='text'>Oracle Critical Patch Update For Q4 of 2011</title><content type='html'>Oracle has released updates for their products that fix 57 security issues in total. The updates are a part of Oracle's quarterly released critical patch update (CPU).&lt;br /&gt;&lt;br /&gt;Detailed list of vulnerabilities with patching instructions can be read from &lt;a href=http://www.oracle.com/technetwork/topics/security/cpuoct2011-330135.html&gt;Oracle CPU Advisory&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Next Oracle CPU is planned to be released in January 2012.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5790483612277802705?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5790483612277802705/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5790483612277802705' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5790483612277802705'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5790483612277802705'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/oracle-critical-patch-update-for-q4-of.html' title='Oracle Critical Patch Update For Q4 of 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5998320465263017076</id><published>2011-10-13T20:39:00.004+03:00</published><updated>2011-10-13T20:41:36.377+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='Safari'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Apple'/><title type='text'>Safari Update Available</title><content type='html'>Apple has released new version of their Safari web browser. The new version contains fixes to 23 different vulnerabilities. Some of these vulnerabilities may lead to an unexpected application termination or allow an attacker to execute arbitrary code in affected system.&lt;br /&gt;&lt;br /&gt;Affected are Safari versions earlier than 5.1.1. Users of vulnerable Safari versions can get the latest version &lt;a href=http://www.apple.com/safari/download/&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;More information of security content of 5.1.1 version can be read &lt;a href=http://support.apple.com/kb/HT5000&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5998320465263017076?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5998320465263017076/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5998320465263017076' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5998320465263017076'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5998320465263017076'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/safari-update-available.html' title='Safari Update Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5562100746089168407</id><published>2011-10-12T16:48:00.002+03:00</published><updated>2011-10-12T16:51:21.698+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='iTunes'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Apple'/><title type='text'>iTunes 10.5 Released</title><content type='html'>Apple has released version 10.5 of their iTunes media player. New version fixes bunch of security vulnerabilities of which some allow an attacker to execute arbitrary code in target system. Latest version can be downloaded &lt;a href=http://www.apple.com/itunes/download/&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;More information about the update can be read from related &lt;a href=http://support.apple.com/kb/HT4981&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5562100746089168407?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5562100746089168407/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5562100746089168407' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5562100746089168407'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5562100746089168407'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/itunes-105-released.html' title='iTunes 10.5 Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-2677204539038073987</id><published>2011-10-12T12:16:00.001+03:00</published><updated>2011-10-12T12:18:16.603+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>Microsoft Security Intelligence Report Volume 11 Released</title><content type='html'>Microsoft has released volume 11 of their Security Intelligence Report (SIR). The Security Intelligence Report (SIR) is an investigation of the current threat landscape. It focuses on software vulnerabilities, software vulnerability exploits, malicious and potentially unwanted software, and security breaches. The latest, volume 11 covers the first part of year 2011 (January-June).&lt;br /&gt;&lt;br /&gt;The report can be downloaded &lt;a href=http://download.microsoft.com/download/0/3/3/0331766E-3FC4-44E5-B1CA-2BDEB58211B8/Microsoft_Security_Intelligence_Report_volume_11_English.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-2677204539038073987?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/2677204539038073987/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=2677204539038073987' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2677204539038073987'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2677204539038073987'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/microsoft-security-intelligence-report.html' title='Microsoft Security Intelligence Report Volume 11 Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7379872832899348079</id><published>2011-10-11T21:34:00.002+03:00</published><updated>2011-10-11T21:35:51.216+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For October 2011</title><content type='html'>Microsoft has released security updates for October 2011. This month update contains eight security bulletins of which two critical and six important.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://technet.microsoft.com/en-us/security/bulletin/ms11-oct&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7379872832899348079?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7379872832899348079/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7379872832899348079' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7379872832899348079'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7379872832899348079'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/microsoft-security-updates-for-october.html' title='Microsoft Security Updates For October 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1628175893626288614</id><published>2011-10-06T08:23:00.000+03:00</published><updated>2011-10-06T08:24:12.058+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Update For Chrome Available</title><content type='html'>Google has released a new version of their Chrome web browser. Version 14.0.835.202 contains fixes to seven vulnerabilities of which one is critical and six are high categorized.&lt;br /&gt;&lt;br /&gt;More information in Google &lt;a href=http://googlechromereleases.blogspot.com/2011/10/stable-channel-update.html&gt;Chrome Releases blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1628175893626288614?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1628175893626288614/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1628175893626288614' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1628175893626288614'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1628175893626288614'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/update-for-chrome-available.html' title='Update For Chrome Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-579499932475517033</id><published>2011-10-04T18:58:00.001+03:00</published><updated>2011-10-04T19:01:53.546+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='facebook'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='websense'/><title type='text'>Facebook To Check Web Links</title><content type='html'>Malicious web links is one of the problems that have brought negative publicity for Facebook. To help reducing this problem Facebook has teamed up with security company Websense. In near future, all web links published in Facebook will be checked to filter out malicious ones.&lt;br /&gt;&lt;br /&gt;When user clicks a link in Facebook it will be sent to Websense for security classification. If the link is found to be malicious user will be given options to either access the link at one's own risk or return back to the previous screen.&lt;br /&gt;&lt;br /&gt;More information can be read from &lt;a href=http://community.websense.com/blogs/websense-insights/archive/2011/10/03/facebook-and-websense-partner-to-protect-users-from-malicious-links.aspx&gt;Websense blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-579499932475517033?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/579499932475517033/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=579499932475517033' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/579499932475517033'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/579499932475517033'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/facebook-to-check-web-links.html' title='Facebook To Check Web Links'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1275121442381284791</id><published>2011-10-02T10:53:00.000+03:00</published><updated>2011-10-02T10:54:42.505+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='symantec'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>Symantec Intelligence Report: September 2011</title><content type='html'>Symantec has published their &lt;a href=http://www.symanteccloud.com/globalthreats&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for September 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 74.8 percent in September (a decrease of 1.1 percentage points since August 2011)&lt;br /&gt;- Phishing – One in 447.9 emails identified as phishing (a decrease of 0.26 percentage points since August 2011)&lt;br /&gt;- Malware – One in 188.7 emails in September contained malware (an increase of 0.04 percentage points since August 2011)&lt;br /&gt;- Malicious Web sites – 3,474 Web sites blocked per day (an increase of 1.0 percent since August 2011)&lt;br /&gt;- 44.6 percent of all malicious domains blocked were new in September (an increase of 10.0 percentage points since August 2011)&lt;br /&gt;- 14.5 percent of all Web-based malware blocked was new in September (a decrease of 2.9 percentage points since August 2011)&lt;br /&gt;- Malicious emails masquerade as office printer messages&lt;br /&gt;- Spammers exploit WordPress vulnerability to promote pharmaceutical spam Web sites&lt;br /&gt;- Fake Offers with Fake Trust Seals&lt;br /&gt;- Spammers and malware authors making increasing use of obfuscated JavaScript&lt;br /&gt;- Best Practices for Enterprises and Users&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.symanteccloud.com/en/us/mlireport/SYMCINT_2011_09_September_FINAL-en.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1275121442381284791?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1275121442381284791/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1275121442381284791' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1275121442381284791'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1275121442381284791'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/10/symantec-intelligence-report-september.html' title='Symantec Intelligence Report: September 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7880864558001738931</id><published>2011-09-30T07:41:00.001+03:00</published><updated>2011-09-30T07:43:12.803+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Mozilla'/><category scheme='http://www.blogger.com/atom/ns#' term='seamonkey'/><category scheme='http://www.blogger.com/atom/ns#' term='thunderbird'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Firefox'/><title type='text'>Updates To Mozilla Products</title><content type='html'>Mozilla has released updates to Firefox and Seamonkey browsers and Thunderbird email client to address a bunch of vulnerabilities of which several categorized as critical.&lt;br /&gt;&lt;br /&gt;Affected products are:&lt;br /&gt;- Mozilla Thunderbird earlier than 7.0&lt;br /&gt;- Mozilla SeaMonkey earlier than 2.4&lt;br /&gt;- Mozilla Firefox earlier than 7.0 or 3.6.23&lt;br /&gt;&lt;br /&gt;Links to the security advisories with details about addressed security issues:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-45.html&gt;MFSA 2011-45&lt;/a&gt; Inferring Keystrokes from motion data&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-44.html&gt;MFSA 2011-44&lt;/a&gt; Use after free reading OGG headers&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-43.html&gt;MFSA 2011-43&lt;/a&gt; loadSubScript unwraps XPCNativeWrapper scope parameter&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-42.html&gt;MFSA 2011-42&lt;/a&gt; Potentially exploitable crash in the YARR regular expression library&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-41.html&gt;MFSA 2011-41&lt;/a&gt; Potentially exploitable WebGL crashes&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-40.html&gt;MFSA 2011-40&lt;/a&gt; Code installation through holding down Enter&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-39.html&gt;MFSA 2011-39&lt;/a&gt; Defense against multiple Location headers due to CRLF Injection&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-38.html&gt;MFSA 2011-38&lt;/a&gt; XSS via plugins and shadowed window.location object&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-37.html&gt;MFSA 2011-37&lt;/a&gt; Integer underflow when using JavaScript RegExp&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-36.html&gt;MFSA 2011-36&lt;/a&gt; Miscellaneous memory safety hazards (rv:7.0 / rv:1.9.2.23)&lt;br /&gt;&lt;br /&gt;Fresh versions can be obtained via inbuilt updater or by downloading from the product site:&lt;br /&gt;&lt;a href=http://www.firefox.com/&gt;Firefox&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.mozillamessaging.com/en-US/&gt;Thunderbird&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.seamonkey-project.org/&gt;SeaMonkey&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7880864558001738931?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7880864558001738931/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7880864558001738931' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7880864558001738931'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7880864558001738931'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/updates-to-mozilla-products.html' title='Updates To Mozilla Products'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5128129005652931476</id><published>2011-09-27T11:26:00.002+03:00</published><updated>2011-09-27T11:28:57.223+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Advisory 2588513</title><content type='html'>Microsoft has released a security advisory (2588513) discussing a new vulnerability reported in SSL 3.0 and TLS 1.0. "This vulnerability affects the protocol itself and is not specific to the Windows operating system. This is an information disclosure vulnerability that allows the decryption of encrypted SSL/TLS traffic. This vulnerability primarily impacts HTTPS traffic, since the browser is the primary attack vector, and all web traffic served via HTTPS or mixed content HTTP/HTTPS is affected. We are not aware of a way to exploit this vulnerability in other protocols or components and we are not aware of attacks that try to use the reported vulnerability at this time. Considering the attack scenario, this vulnerability is not considered high risk to customers."&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;More information:&lt;br /&gt;&lt;a href=http://technet.microsoft.com/en-us/security/advisory/2588513&gt;Microsoft Security Advisory 2588513&lt;/a&gt;&lt;br /&gt;&lt;a href=https://blogs.technet.com/b/srd/archive/2011/09/26/is-ssl-broken-more-about-security-advisory-2588513.aspx&gt;Is SSL broken? – More about Security Advisory 2588513&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5128129005652931476?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5128129005652931476/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5128129005652931476' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5128129005652931476'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5128129005652931476'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/microsoft-security-advisory-2588513.html' title='Microsoft Security Advisory 2588513'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4824138646512649350</id><published>2011-09-22T10:54:00.000+03:00</published><updated>2011-09-22T10:55:27.249+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Security Update For Adobe Flash Player</title><content type='html'>Adobe has released an updated version of their Flash Player. The new version fixes critical vulnerabilities that could cause a crash and potentially allow an attacker to take control of the affected system. Adobe states that there are reports that one of these vulnerabilities (CVE-2011-2444) is being exploited in the wild in targeted attacks via malicious web pages.&lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;-Users of Adobe Flash Player 10.3.183.7 and earlier are recommended to get update 10.3.183.10&lt;br /&gt;-Users of Flash Player 10.3.186.6 and earlier for Android are recommended to get update 10.3.186.7&lt;br /&gt;-Flash Player integrated with Google Chrome will be updated by Google via Chrome update.&lt;br /&gt;&lt;br /&gt;More information can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-26.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4824138646512649350?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4824138646512649350/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4824138646512649350' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4824138646512649350'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4824138646512649350'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/security-update-for-adobe-flash-player.html' title='Security Update For Adobe Flash Player'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-630855936290368914</id><published>2011-09-20T08:02:00.000+03:00</published><updated>2011-09-20T08:03:11.906+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>New Chrome Version Released</title><content type='html'>Google has released a new version of their Chrome web browser. Version 14.0.835.163 contains fixes to 32 vulnerabilities of which some may allow an attacker to execute arbitrary code in target system.&lt;br /&gt;&lt;br /&gt;More information in &lt;a href=http://googlechromereleases.blogspot.com/2011/09/stable-channel-update_16.html&gt;Google Chrome Releases blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-630855936290368914?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/630855936290368914/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=630855936290368914' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/630855936290368914'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/630855936290368914'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/new-chrome-version-released.html' title='New Chrome Version Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6919118288531337131</id><published>2011-09-14T11:43:00.001+03:00</published><updated>2011-09-14T11:44:14.650+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='acrobat'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><title type='text'>Adobe Reader And Acrobat Security Updates</title><content type='html'>Adobe has released security updates for its PDF products, Adobe Reader and Adobe Acrobat.&lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;&lt;br /&gt;*of series X (10.x)&lt;br /&gt;Adobe Reader 10.1 and earlier&lt;br /&gt;Adobe Acrobat 10.1 and earlier&lt;br /&gt;&lt;br /&gt;*of series 9.x&lt;br /&gt;Adobe Reader 9.4.5 and earlier&lt;br /&gt;Adobe Acrobat 9.4.5 and earlier&lt;br /&gt;&lt;br /&gt;*of series 8.x&lt;br /&gt;Adobe Reader 8.3 and earlier&lt;br /&gt;Adobe Acrobat 8.3 and earlier&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help &gt; Check for Updates.&lt;br /&gt;&lt;br /&gt;Those who want to upgrade manually, can download the latest versions of the links below:&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=10&amp;platform=Windows&gt;Adobe Reader&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=1&amp;platform=Windows&gt;Acrobat Standard and Pro&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=1&amp;platform=Windows&gt;Acrobat Pro Extended&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=1&amp;platform=Windows&gt;Acrobat 3D&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;More information about fixed vulnerabilities can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-24.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6919118288531337131?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6919118288531337131/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6919118288531337131' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6919118288531337131'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6919118288531337131'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/adobe-reader-and-acrobat-security.html' title='Adobe Reader And Acrobat Security Updates'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4039814490708452002</id><published>2011-09-13T22:20:00.001+03:00</published><updated>2011-09-13T22:22:16.118+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For September 2011</title><content type='html'>Microsoft has released security updates for September 2011. This month update contains five important catagorized security bulletins.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://technet.microsoft.com/en-us/security/bulletin/ms11-sep&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4039814490708452002?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4039814490708452002/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4039814490708452002' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4039814490708452002'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4039814490708452002'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/microsoft-security-updates-for.html' title='Microsoft Security Updates For September 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6186267457535078299</id><published>2011-09-10T17:33:00.001+03:00</published><updated>2011-09-10T17:34:08.034+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for August 2011</title><content type='html'>ESET has released a report discussing global threats of August 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Conficker (2.)&lt;br /&gt;3. HTML/Iframe.B.Gen (5.)&lt;br /&gt;4. Win32/Dorkbot (7.)&lt;br /&gt;5. Win32/Sality (3.)&lt;br /&gt;6. HTML/ScrInject.B (6.)&lt;br /&gt;7. Win32/Autoit (8.)&lt;br /&gt;8. Win32/PSW.OnLineGames (4.)&lt;br /&gt;9. JS/TrojanDownloader.Iframe.NKE (-)&lt;br /&gt;10. Win32/Ramnit (41.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://www.eset.com/us/resources/threat-trends/Global_Threat_Trends_August_2011.pdf&gt;here&lt;/a&gt; (in PDF format).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6186267457535078299?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6186267457535078299/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6186267457535078299' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6186267457535078299'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6186267457535078299'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/eset-global-threat-report-for-august.html' title='ESET Global Threat Report for August 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1682658606790046693</id><published>2011-09-07T20:00:00.004+03:00</published><updated>2011-09-07T20:04:12.818+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ransomware'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Panda'/><title type='text'>Ransomware Posing As Microsoft</title><content type='html'>Security company Panda warns in their blog about a ransomware that tries to trick users to believe their Windows authenticity has failed. To get it fixed users are asked to pay 100€ by following given instructions. Naturally, nothing should be paid. Panda have published a code that can be used to deactivate the malware.&lt;br /&gt;&lt;br /&gt;More information in PandaLabs &lt;a href=http://pandalabs.pandasecurity.com/ransomware-posing-as-microsoft/&gt;blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1682658606790046693?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1682658606790046693/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1682658606790046693' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1682658606790046693'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1682658606790046693'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/ransomware-posing-as-microsoft.html' title='Ransomware Posing As Microsoft'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8484006475249040875</id><published>2011-09-01T17:05:00.000+03:00</published><updated>2011-09-01T17:06:12.564+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='symantec'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>Symantec Intelligence Report: August 2011</title><content type='html'>Symantec has published their &lt;a href=http://www.symanteccloud.com/globalthreats&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for August 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 75.9 percent in August (a decrease of  1.9 percentage points since July 2011)&lt;br /&gt;- Phishing – One in 207.7 emails identified as phishing (an increase of 0.48 percentage points since July 2011)&lt;br /&gt;- Malware – One in 203.3 emails in August contained malware (an increase of 0.14 percentage points since July 2011)&lt;br /&gt;- Malicious Web sites – 3,441 Web sites blocked per day (a decrease of 49.4 percent since July 2011)&lt;br /&gt;- 34.1 percent of all malicious domains blocked were new in August (a decrease of 1.32 percentage points since July 2011)&lt;br /&gt;- 17.3 percent of all Web-based malware blocked was new in August (a decrease of 3.82 percentage points since July 2011)&lt;br /&gt;- Global Debt Crises News Drives Pump-and-Dump Stock Scams&lt;br /&gt;- Are MBR Infections Back in Fashion?&lt;br /&gt;- Phishing Apple’s iDisk&lt;br /&gt;- Phishing Brazilian Brands&lt;br /&gt;- The Truth Behind the Shady RAT&lt;br /&gt;- Spammers take advantage of Unicode normalisation to hide URLs&lt;br /&gt;- Best Practices for Enterprises and Users&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.symanteccloud.com/en/us/mlireport/SYMCINT_2011_08_August_FINAL-EN.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8484006475249040875?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8484006475249040875/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8484006475249040875' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8484006475249040875'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8484006475249040875'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/09/symantec-intelligence-report-august.html' title='Symantec Intelligence Report: August 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6355533063264507119</id><published>2011-08-29T17:20:00.001+03:00</published><updated>2011-08-29T17:22:18.545+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='infection'/><category scheme='http://www.blogger.com/atom/ns#' term='worm'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Morto Worm Takes Advantage of Remote Desktop Protocol</title><content type='html'>F-Secure warns in their blog about a network worm that takes advantage of Remote Desktop Protocol (RDP) as a way to spread itself. Once this Morto worm has infected the system it starts scanning the local network for machines having Remote Desktop Connection enabled. This thing creates much traffic for RDP port, port number 3389/TCP.&lt;br /&gt;&lt;br /&gt;More information about Morto in &lt;a href=http://www.f-secure.com/weblog/archives/00002227.html&gt;F-Secure blog&lt;/a&gt; and there is also a discussion going on at Microsoft's &lt;a href=http://social.technet.microsoft.com/Forums/en-US/winserversecurity/thread/31cf740c-818c-4863-8df9-0d9a1d6de6fc&gt;Technet forums&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6355533063264507119?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6355533063264507119/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6355533063264507119' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6355533063264507119'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6355533063264507119'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/morto-worm-takes-advantage-of-remote.html' title='Morto Worm Takes Advantage of Remote Desktop Protocol'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7523205832917157052</id><published>2011-08-21T01:25:00.001+03:00</published><updated>2011-08-21T01:27:14.018+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='PHP'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>PHP 5.3.7 Released</title><content type='html'>PHP development team has released 5.3.7 version of PHP scripting language. New version fixes big amount of bugs of which some are security related. All PHP users are recommended to upgrade their versions to this latest release.&lt;br /&gt;&lt;br /&gt;More details about 5.3.7 release can be read from the &lt;a href="http://www.php.net/archive/2011.php#id2011-08-18-1"&gt;official release announcement&lt;/a&gt;. &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7523205832917157052?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7523205832917157052/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7523205832917157052' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7523205832917157052'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7523205832917157052'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/php-537-released.html' title='PHP 5.3.7 Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7884604038213301113</id><published>2011-08-19T08:20:00.000+03:00</published><updated>2011-08-19T08:20:04.594+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>NSS Labs Browser Security Test Report</title><content type='html'>NSS Labs has published a &lt;a href=https://www.nsslabs.com/assets/noreg-reports/2011/nss%20labs_q3_2011_browsersem%20GLOBAL-FINAL.pdf&gt;report&lt;/a&gt; of a test they made to compare how different browsers managed against socially-engineered malware.&lt;br /&gt;&lt;br /&gt;Tested browsers were:&lt;br /&gt;-Apple Safari 5&lt;br /&gt;-Google Chrome 12&lt;br /&gt;-Windows Internet Explorer 9&lt;br /&gt;-Mozilla Firefox 4&lt;br /&gt;-Opera 11&lt;br /&gt;&lt;br /&gt;Internet Explorer 9 became the winner. It was able to stop 96 percent of malicious links via its SmartScreen URL Reputation feature and in addition 3.2 percent when its Application Reputation feature was turned on. The second place was taken by Chrome 12 (13.2%). Apple Safari 5 and Firefox 4 shared third place with percent of 7.6. Opera 11 caught 6.1 percent of samples.&lt;br /&gt;&lt;br /&gt;The full report (in PDF format) can be viewed &lt;a href=https://www.nsslabs.com/assets/noreg-reports/2011/nss%20labs_q3_2011_browsersem%20GLOBAL-FINAL.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7884604038213301113?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7884604038213301113/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7884604038213301113' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7884604038213301113'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7884604038213301113'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/nss-labs-browser-security-test-report.html' title='NSS Labs Browser Security Test Report'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8730742449232956377</id><published>2011-08-18T23:22:00.001+03:00</published><updated>2011-08-18T23:23:55.796+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='RealPlayer'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Security Updates From RealNetworks</title><content type='html'>RealNetworks have released updated versions of their RealPlayer. New versions contain fixes to several vulnerabilities.&lt;br /&gt;&lt;br /&gt;Affected are:&lt;br /&gt;- Windows RealPlayer earlier than 14.0.6 &lt;br /&gt;- RealPlayer Enterprise earlier than 2.1.6 &lt;br /&gt;- Mac RealPlayer earlier than 12.0.0.1701&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Users of affected versions are advised to update their RealPlayer to the &lt;a href=http://eu.real.com/realplayer&gt;latest one&lt;/a&gt; available. More information can be read from related &lt;a href=http://service.real.com/realplayer/security/08162011_player/en/&gt;security advisory&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8730742449232956377?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8730742449232956377/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8730742449232956377' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8730742449232956377'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8730742449232956377'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/security-updates-from-realnetworks.html' title='Security Updates From RealNetworks'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7263801738566388099</id><published>2011-08-18T23:13:00.002+03:00</published><updated>2011-08-18T23:16:50.611+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Mozilla'/><category scheme='http://www.blogger.com/atom/ns#' term='seamonkey'/><category scheme='http://www.blogger.com/atom/ns#' term='thunderbird'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Firefox'/><title type='text'>Mozilla Security Updates Available</title><content type='html'>Mozilla has released updates to Firefox and Seamonkey browsers and Thunderbird email client to address a bunch of vulnerabilities of which several categorized as critical.&lt;br /&gt;&lt;br /&gt;Affected products are:&lt;br /&gt;-Mozilla Thunderbird 2.x- and 3.x series &lt;br /&gt;- Mozilla SeaMonkey 1.x- and 2.x series&lt;br /&gt;- Mozilla Firefox 3.x- and 4.x series&lt;br /&gt;&lt;br /&gt;Links to the security advisories with details about addressed security issues:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-33.html&gt;MFSA 2011-33&lt;/a&gt; Security issues addressed in SeaMonkey 2.3&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-32.html&gt;MFSA 2011-32&lt;/a&gt; Thunderbird 3.1.12&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-31.html&gt;MFSA 2011-31&lt;/a&gt; Thunderbird 6&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-30.html&gt;MFSA 2011-30&lt;/a&gt; Firefox 3.6.20&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-29.html&gt;MFSA 2011-29&lt;/a&gt; Firefox 6&lt;br /&gt;&lt;br /&gt;Fresh versions can be obtained via inbuilt updater or by downloading from the product site:&lt;br /&gt;&lt;a href=http://www.firefox.com/&gt;Firefox&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.mozillamessaging.com/en-US/&gt;Thunderbird&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.seamonkey-project.org/&gt;SeaMonkey&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7263801738566388099?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7263801738566388099/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7263801738566388099' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7263801738566388099'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7263801738566388099'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/mozilla-security-updates-available.html' title='Mozilla Security Updates Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6319021998663015884</id><published>2011-08-12T18:56:00.001+03:00</published><updated>2011-08-12T19:09:05.727+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='shockwave player'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Security Updates From Adobe</title><content type='html'>Adobe has released updated versions of some of their software. Major part of fixed issues are categorized as critical. Many of the fixed vulnerabilities may allow an attacker to execute arbitrary code in target system.&lt;br /&gt;&lt;br /&gt;Affected Adobe products are:&lt;br /&gt;- Shockwave Player 11.6.0.626 and earlier (Windows &amp; Macintosh)&lt;br /&gt;- Flash Media Server 4.0.2 and earlier (Windows &amp; Linux)&lt;br /&gt;- Flash Media Server 3.5.6 and earlier (Windows &amp; Linux)&lt;br /&gt;- Adobe Flash Player 10.3.181.36 and earlier (Windows, Macintosh, Linux &amp; Solaris)&lt;br /&gt;- Adobe Flash Player 10.3.185.25 and earlier (Android)&lt;br /&gt;- Adobe AIR 2.7 and earlier (Windows, Macintosh &amp; Android)&lt;br /&gt;- Adobe Photoshop CS5, CS5.1 and earlier (Windows &amp; Macintosh)&lt;br /&gt;- RoboHelp 9.0.1.232 and earlier (Windows)&lt;br /&gt;- RoboHelp Server 9 (Windows)&lt;br /&gt;- RoboHelp 8 (Windows)&lt;br /&gt;- RoboHelp Server 8 (Windows)&lt;br /&gt;&lt;br /&gt;More information behind the following links:&lt;br /&gt;&lt;a href=http://www.adobe.com/go/apsb11-19&gt;Shockwave Player&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/go/apsb11-20&gt;Flash Media Server&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/go/apsb11-21&gt;Flash Player and AIR&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/go/apsb11-22&gt;Photoshop&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/go/apsb11-23&gt;RoboHelp&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6319021998663015884?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6319021998663015884/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6319021998663015884' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6319021998663015884'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6319021998663015884'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/security-updates-from-adobe.html' title='Security Updates From Adobe'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8569660428785235975</id><published>2011-08-12T18:46:00.001+03:00</published><updated>2011-08-12T18:48:24.746+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for July 2011</title><content type='html'>ESET has released a report discussing global threats of July 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Conficker (2.)&lt;br /&gt;3. Win32/Sality (3.)&lt;br /&gt;4. Win32/PSW.OnLineGames (4.)&lt;br /&gt;5. HTML/Iframe.B.Gen (6.)&lt;br /&gt;6. HTML/ScrInject.B (9.)&lt;br /&gt;7. Win32/Dorkbot (11.)&lt;br /&gt;8. Win32/Autoit (5.)&lt;br /&gt;9. HTML/StartPage.NAE (8.)&lt;br /&gt;10. VBS/StartPage.NDS (48.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://www.eset.com/us/resources/threat-trends/Global_Threat_Trends_July_2011.pdf&gt;here&lt;/a&gt; (in PDF format). &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8569660428785235975?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8569660428785235975/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8569660428785235975' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8569660428785235975'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8569660428785235975'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/eset-global-threat-report-for-july-2011.html' title='ESET Global Threat Report for July 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4142769287155987226</id><published>2011-08-10T14:01:00.000+03:00</published><updated>2011-08-10T14:02:11.629+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For August 2011</title><content type='html'>Microsoft has released security updates for August 2011. This month update contains 13 security bulletins (two critical, nine important and two moderate).&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://www.microsoft.com/technet/security/Bulletin/MS11-aug.mspx&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4142769287155987226?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4142769287155987226/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4142769287155987226' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4142769287155987226'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4142769287155987226'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/microsoft-security-updates-for-august.html' title='Microsoft Security Updates For August 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-9052817478801651319</id><published>2011-08-04T20:59:00.001+03:00</published><updated>2011-08-04T21:02:01.050+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>New Chrome Version Available</title><content type='html'>Google has released a new version of their Chrome web browser. Version 13.0.782.107 contains fixes to 30 vulnerabilities of which 14 are high, nine medium and seven low categorized.&lt;br /&gt;&lt;br /&gt;More information in &lt;a href=http://googlechromereleases.blogspot.com/2011/08/stable-channel-update.html&gt;Google Chrome Releases blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-9052817478801651319?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/9052817478801651319/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=9052817478801651319' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9052817478801651319'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9052817478801651319'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/new-chrome-version-available.html' title='New Chrome Version Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-2354983259537897398</id><published>2011-08-01T12:26:00.002+03:00</published><updated>2011-08-01T12:31:53.802+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='symantec'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>Symantec Intelligence Report: July 2011</title><content type='html'>Symantec has published their &lt;a href=http://www.symanteccloud.com/globalthreats&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for July 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 77.8 percent in July (an increase of  4.9 percentage points since June 2011)&lt;br /&gt;- Phishing – One in 319.3 emails identified as phishing (an increase of 0.01 percentage points since June 2011)&lt;br /&gt;- Malware – One in 280.9 emails in July contained malware (an increase of 0.02 percentage points since June 2011)&lt;br /&gt;- Malicious Web sites – 6,797 Web sites blocked per day (an increase of 25.5 percent since June 2011)&lt;br /&gt;- 35.9 percent of all malicious domains blocked were new in July (an increase of 0.8 percentage points since June 2011)&lt;br /&gt;- 21.1 percent of all Web-based malware blocked was new in July (an increase of 0.8 percentage points since June 2011)&lt;br /&gt;- Aggressively unstable malware leads to a rise in sophisticated socially engineered attacks&lt;br /&gt;- Phishers’ World in Your Cell Phone&lt;br /&gt;- Large scale malware attack using URL shortening services&lt;br /&gt;- Best Practices for Enterprises and Users&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.symanteccloud.com/en/us/mlireport/SYMCINT_2011_07_July_FINAL-EN.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-2354983259537897398?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/2354983259537897398/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=2354983259537897398' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2354983259537897398'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2354983259537897398'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/08/symantec-intelligence-report-july-2011.html' title='Symantec Intelligence Report: July 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7502463319942650139</id><published>2011-07-23T12:06:00.002+03:00</published><updated>2011-07-23T12:21:47.837+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='foxit reader'/><category scheme='http://www.blogger.com/atom/ns#' term='pdf'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>New Version Of Foxit Reader Available</title><content type='html'>Foxit Software has released a new version of their PDF viewer, Foxit Reader. In addition to a bunch of minor bugs there're fixes for two security vulnerabilities that if exploited may allow an attacker to execute arbitrary code in target system. The first vulnerability is caused by &lt;a href=http://www.foxitsoftware.com/products/reader/security_bulletins.php#execution&gt;Insecure Library Loading&lt;/a&gt; and the second one is related to opening &lt;a href=http://www.foxitsoftware.com/products/reader/security_bulletins.php#certain&gt;certain PDF files in a web browser&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Affected are Foxit Reader versions earlier than 5.0.2. Foxit Reader users should update their version to the latest one available either by using "Check for Updates Now" in Reader help menu or by downloading a fresh version &lt;a href="http://www.foxitsoftware.com/products/reader/"&gt;here&lt;/a&gt; (&lt;span style="font-style:italic;"&gt;Note: remember to unselect Ask related options during the installation process unless you really want that installed too&lt;/span&gt;).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7502463319942650139?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7502463319942650139/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7502463319942650139' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7502463319942650139'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7502463319942650139'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/new-version-of-foxit-reader-available.html' title='New Version Of Foxit Reader Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-953460584165596925</id><published>2011-07-22T10:45:00.000+03:00</published><updated>2011-07-22T10:46:33.581+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='Safari'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Apple'/><title type='text'>New Versions Of Safari Released</title><content type='html'>Apple has released new versions of their Safari web browsers. The new versions contain fixes to 58 different vulnerabilities. These vulnerabilities may lead to an unexpected application termination or allow an attacker to execute arbitrary code in affected system.&lt;br /&gt;&lt;br /&gt;Affected are Safari versions earlier than 5.1 or 5.0.6. Users of vulnerable Safari versions can get the latest version &lt;a href=http://www.apple.com/safari/download/&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Adobe warns that Safari 5.1 will break part of Adobe Acrobat and Adobe Reader Safari plugin functionality. More about this in Adobe &lt;a href=http://blogs.adobe.com/adobereader/2011/07/compatibility-advisory-regarding-adobe-reader-plug-in-and-acrobat-plug-in-with-safari-5-1.html&gt;blog post&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;More information of security content of 5.1 and 5.0.6 versions can be read &lt;a href=http://support.apple.com/kb/HT4808&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-953460584165596925?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/953460584165596925/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=953460584165596925' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/953460584165596925'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/953460584165596925'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/new-versions-of-safari-released.html' title='New Versions Of Safari Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8502586586785950987</id><published>2011-07-20T13:18:00.001+03:00</published><updated>2011-07-20T13:26:45.246+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Oracle'/><title type='text'>Oracle Critical Patch Update For Q3 of 2011</title><content type='html'>Oracle has released updates for their products that fix 78 security issues in total. The updates are a part of Oracle's quarterly released critical patch update (CPU).&lt;br /&gt;&lt;br /&gt;Detailed list of vulnerabilities with patching instructions can be read from &lt;a href=http://www.oracle.com/technetwork/topics/security/cpujuly2011-313328.html&gt;Oracle CPU Advisory&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Next Oracle CPU is planned to be released in October 2011.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8502586586785950987?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8502586586785950987/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8502586586785950987' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8502586586785950987'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8502586586785950987'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/oracle-critical-patch-update-for-q3-of.html' title='Oracle Critical Patch Update For Q3 of 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5515522654566531954</id><published>2011-07-18T19:55:00.001+03:00</published><updated>2011-07-18T19:59:39.719+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='VLC player'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>New Version Of VLC Player Available</title><content type='html'>VideoLAN project has released a new version of their VLC media player. Version 1.1.11 contains fixes to two stack overflow vulnerabilities of RealMedia and AVI handling (security advisories &lt;a href=http://www.videolan.org/security/sa1105.html&gt;1105&lt;/a&gt; and &lt;a href=http://www.videolan.org/security/sa1106.html&gt;1106&lt;/a&gt;).&lt;br /&gt;&lt;br /&gt;Affected are VLC Player versions prior 1.1.11. Owners of those versions should update to the &lt;a href=http://www.videolan.org/&gt;latest version&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5515522654566531954?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5515522654566531954/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5515522654566531954' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5515522654566531954'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5515522654566531954'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/new-version-of-vlc-player-available.html' title='New Version Of VLC Player Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5226141776833808129</id><published>2011-07-17T11:55:00.001+03:00</published><updated>2011-07-17T11:57:31.087+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for June 2011</title><content type='html'>ESET has released a report discussing global threats of June 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Conficker (2.)&lt;br /&gt;3. Win32/Sality (4.)&lt;br /&gt;4. Win32/PSW.OnLineGames (3.)&lt;br /&gt;5. Win32/Autoit (8.)&lt;br /&gt;6. HTML/Iframe.B.Gen (7.)&lt;br /&gt;7. Win32/Bflient (9.)&lt;br /&gt;8. HTML/StartPage.NAE (5.)&lt;br /&gt;9. HTML/ScrInject.B (11.)&lt;br /&gt;10. Win32/Autorun (6.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://www.eset.com/us/resources/threat-trends/Global_Threat_Trends_June_2011.pdf&gt;here&lt;/a&gt; (in PDF format).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5226141776833808129?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5226141776833808129/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5226141776833808129' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5226141776833808129'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5226141776833808129'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/eset-global-threat-report-for-june-2011.html' title='ESET Global Threat Report for June 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1693030550493860652</id><published>2011-07-17T11:32:00.002+03:00</published><updated>2011-07-17T11:44:15.841+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>NSS Labs Browser Security Test Europe Q2 2011 Report</title><content type='html'>NSS Labs has published a &lt;a href=http://www.nsslabs.com/research/endpoint-security/browser-security/web-browser-group-test-socially-engineered-malware-europe-q2-2011.html&gt;report&lt;/a&gt; of a test they made to compare how different browsers managed against socially-engineered malware targeting European users.&lt;br /&gt;&lt;br /&gt;Tested browsers were:&lt;br /&gt;-Apple Safari 5&lt;br /&gt;-Google Chrome 10&lt;br /&gt;-Windows Internet Explorer 8&lt;br /&gt;-Windows Internet Explorer 9&lt;br /&gt;-Mozilla Firefox 4&lt;br /&gt;-Opera 11&lt;br /&gt;&lt;br /&gt;The test winner was Internet Explorer 9. It was able to catch 92% of malware with its URL-based filtering and 100% with Application-based filtering enabled. The second came Internet Explorer 8 with 90% success of blocking. The third place was shared by Safari 5, Chrome 10 and Firefox 4, each able to stop 13%. Opera 11 was left the last with 5%.&lt;br /&gt;&lt;br /&gt;The full report can be read &lt;a href=http://www.nsslabs.com/assets/noreg-reports/2011/nss%20labs_q2_2011_browsersem_FINAL.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1693030550493860652?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1693030550493860652/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1693030550493860652' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1693030550493860652'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1693030550493860652'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/nss-labs-browser-security-test-europe.html' title='NSS Labs Browser Security Test Europe Q2 2011 Report'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-3195084945374791882</id><published>2011-07-15T12:13:00.007+03:00</published><updated>2011-07-15T12:20:45.840+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Hotmail'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='hijacking'/><title type='text'>Hotmail Introduces New Features To Prevent Email Account Hijacking</title><content type='html'>Email account hijacking has been one of the top problems I've faced while helping users on security forums. Big part of affected accounts is from Hotmail. Hotmail team knows about the problem and have developed two new features in order to help prevent account hijacking.&lt;br /&gt;&lt;br /&gt;One of these is to let Hotmail user report if they suspect some of their friend's account as compromised. In situation like this user can take advantage of "My friend's been hacked!" feature on the "Mark as" menu. Alternatively, account can be reported as compromised while moving message to the Junk folder. Reporting isn't limited to Hotmail accounts only but accounts from other email providers like Yahoo and Gmail can be reported too. The second new feature prevents user from using common passwords as their account password.&lt;br /&gt;&lt;br /&gt;More about these features can be read from related &lt;a href=http://windowsteamblog.com/windows_live/b/windowslive/archive/2011/07/14/hey-my-friend-s-account-was-hacked.aspx&gt;blog post&lt;/a&gt; in Windows Live blog.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-3195084945374791882?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/3195084945374791882/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=3195084945374791882' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3195084945374791882'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/3195084945374791882'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/hotmail-introduces-new-features-to.html' title='Hotmail Introduces New Features To Prevent Email Account Hijacking'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5294186597885825870</id><published>2011-07-12T21:15:00.000+03:00</published><updated>2011-07-12T21:16:48.750+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For July 2011</title><content type='html'>Microsoft has released security updates for July 2011. This month update contains four security bulletins, one critical and three important.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://www.microsoft.com/technet/security/bulletin/MS11-jul.mspx&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5294186597885825870?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5294186597885825870/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5294186597885825870' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5294186597885825870'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5294186597885825870'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/microsoft-security-updates-for-july.html' title='Microsoft Security Updates For July 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1358077566784143417</id><published>2011-07-04T14:31:00.001+03:00</published><updated>2011-07-04T14:33:23.370+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='WordPress'/><title type='text'>New WordPress Version Available</title><content type='html'>There has been fixed a vulnerability in &lt;a href=http://wordpress.org/&gt;WordPress&lt;/a&gt;. The vulnerability could allow a malicious Editor-level user to gain further access to the site. Affected are:&lt;br /&gt;-WordPress 3.1 prior version 3.1.4&lt;br /&gt;-WordPress 3.2 prior version Release Candidate 3&lt;br /&gt;&lt;br /&gt;More information (including instructions for updating) can be read from &lt;a href=http://wordpress.org/news/2011/06/wordpress-3-1-4/&gt;WordPress blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1358077566784143417?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1358077566784143417/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1358077566784143417' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1358077566784143417'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1358077566784143417'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/new-wordpress-version-available.html' title='New WordPress Version Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-2069345010491446332</id><published>2011-07-02T11:58:00.002+03:00</published><updated>2011-07-17T11:46:56.740+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='messagelabs'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>MessageLabs Intelligence Report: June 2011</title><content type='html'>MessageLabs has published their &lt;a href=http://www.symanteccloud.com/intelligence.aspx&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for June 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 72.9% in June (a decrease of  2.9 percentage points since May 2011)&lt;br /&gt;- Phishing – One in 330.6 emails identified as phishing (a decrease of 0.05 percentage points since May 2011)&lt;br /&gt;- Malware – One in 300.7 emails in June contained malware (a decrease of 0.12 percentage points since May 2011)&lt;br /&gt;- Malicious Web sites – 5,415 Web sites blocked per day (an increase of 70.8% since May 2011)&lt;br /&gt;- 35.1% of all malicious domains blocked were new in June (a decrease of 1.7 percentage points since May 2011)&lt;br /&gt;- 20.3% of all Web-based malware blocked was new in June (a decrease of 4.3 percentage points since May 2011)&lt;br /&gt;- Review of Spam-sending botnets in June 2011&lt;br /&gt;- Clicking to Watch Videos Leads to Pharmacy Spam&lt;br /&gt;- Wiki for Everything, Even for Spam&lt;br /&gt;- Phishers Return for Tax Returns&lt;br /&gt;- Fake Donations Continue to Haunt Japan&lt;br /&gt;- Spam Subject Line Analysis&lt;br /&gt;- Best Practices for Enterprises and Users&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.symanteccloud.com/mlireport/SYMCINT_2011_06_June_FINAL-EN.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-2069345010491446332?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/2069345010491446332/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=2069345010491446332' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2069345010491446332'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2069345010491446332'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/07/messagelabs-intelligence-report-june.html' title='MessageLabs Intelligence Report: June 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8513945767505205543</id><published>2011-06-29T21:59:00.000+03:00</published><updated>2011-06-29T22:00:07.566+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>New Chrome Version Available</title><content type='html'>Google has released a new version of their Chrome web browser. Version 12.0.742.112 contains fresh version of Adobe Flash and fixes seven vulnerabilities of which six are high and one medium categorized.&lt;br /&gt;&lt;br /&gt;More information in &lt;a href=http://googlechromereleases.blogspot.com/2011/06/stable-channel-update_28.html&gt;Google Chrome Releases&lt;/a&gt; blog.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8513945767505205543?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8513945767505205543/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8513945767505205543' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8513945767505205543'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8513945767505205543'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/new-chrome-version-available.html' title='New Chrome Version Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-9026045211915349366</id><published>2011-06-24T01:00:00.001+03:00</published><updated>2011-06-24T01:03:18.389+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Mozilla'/><category scheme='http://www.blogger.com/atom/ns#' term='thunderbird'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Firefox'/><title type='text'>Patches To Mozilla Products</title><content type='html'>Mozilla has released security bulletins related to found issues in some of their products. Six of them are categorized as critical, three as moderate and one as low.&lt;br /&gt;&lt;br /&gt;Critical:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-19.html&gt;MFSA 2011-19&lt;/a&gt; Miscellaneous memory safety hazards (rv:3.0/1.9.2.18)&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-20.html&gt;MFSA 2011-20&lt;/a&gt; Use-after-free vulnerability when viewing XUL document with script disabled&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-21.html&gt;MFSA 2011-21&lt;/a&gt; Memory corruption due to multipart/x-mixed-replace images&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-22.html&gt;MFSA 2011-22&lt;/a&gt; Integer overflow and arbitrary code execution in Array.reduceRight()&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-23.html&gt;MFSA 2011-23&lt;/a&gt; Multiple dangling pointer vulnerabilities&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-26.html&gt;MFSA 2011-26&lt;/a&gt; Multiple WebGL crashes&lt;br /&gt;&lt;br /&gt;Moderate:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-24.html&gt;MFSA 2011-24&lt;/a&gt; Cookie isolation error&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-25.html&gt;MFSA 2011-25&lt;/a&gt; Stealing of cross-domain images using WebGL textures&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-27.html&gt;MFSA 2011-27&lt;/a&gt; XSS encoding hazard with inline SVG&lt;br /&gt;&lt;br /&gt;Low:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-28.html&gt;MFSA 2011-28&lt;/a&gt; Non-whitelisted site can trigger xpinstall&lt;br /&gt;&lt;br /&gt;Fresh versions can be obtained via inbuilt updater or by downloading from the product site:&lt;br /&gt;&lt;a href=http://www.firefox.com/&gt;Firefox&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.mozillamessaging.com/en-US/&gt;Thunderbird&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-9026045211915349366?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/9026045211915349366/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=9026045211915349366' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9026045211915349366'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9026045211915349366'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/patches-to-mozilla-products.html' title='Patches To Mozilla Products'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8843672577860462322</id><published>2011-06-16T17:48:00.002+03:00</published><updated>2011-06-16T17:51:31.659+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='shockwave player'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><title type='text'>Adobe Shockwave Player Update Available</title><content type='html'>Adobe has released updated version of their Shockwave Player. The new version fixes several security vulnerabilities. The update is categorized as critical.&lt;br /&gt;&lt;br /&gt;Users of Adobe Shockwave Player 11.5.9.620 and earlier should update to Adobe Shockwave Player 11.6.0.626. &lt;br /&gt;&lt;br /&gt;More about fixed vulnerabilities and other information can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-17.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8843672577860462322?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8843672577860462322/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8843672577860462322' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8843672577860462322'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8843672577860462322'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/adobe-shockwave-player-update-available.html' title='Adobe Shockwave Player Update Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4449866584002596320</id><published>2011-06-16T17:39:00.002+03:00</published><updated>2011-06-16T17:43:49.815+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Update For Adobe Flash Player</title><content type='html'>Adobe has released an updated version of their Flash Player. The new version fixes a critical memory corruption vulnerability (CVE-2011-2110) that could cause a crash and potentially allow an attacker to take control of the affected system. Adobe states that there are reports that this vulnerability is being exploited in the wild in targeted attacks via malicious web pages.&lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;-Users of Flash Player 10.3.181.23 and earlier are recommended to get update 10.3.181.26&lt;br /&gt;-Users of Flash Player 10.3.185.23 and earlier for Android are recommended to get update 10.3.185.24&lt;br /&gt;-Flash Player integrated with Google Chrome will be updated by Google via Chrome update.&lt;br /&gt;&lt;br /&gt;More information can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-18.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4449866584002596320?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4449866584002596320/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4449866584002596320' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4449866584002596320'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4449866584002596320'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/update-for-adobe-flash-player.html' title='Update For Adobe Flash Player'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1803585380486503953</id><published>2011-06-16T17:19:00.001+03:00</published><updated>2011-06-16T17:21:35.742+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='pdf'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><title type='text'>Security Updates For Adobe Reader And Acrobat</title><content type='html'>Adobe has released security updates for its PDF products, Adobe Reader and Adobe Acrobat.&lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;&lt;br /&gt;*of series X (10.x)&lt;br /&gt;Adobe Reader 10.0.1 and earlier&lt;br /&gt;Adobe Acrobat 10.0.3 and earlier&lt;br /&gt;&lt;br /&gt;*of series 9.x&lt;br /&gt;Adobe Reader 9.4.4 and earlier&lt;br /&gt;Adobe Acrobat 9.4.4 and earlier&lt;br /&gt;&lt;br /&gt;*of series 8.x&lt;br /&gt;Adobe Reader 8.2.6 and earlier&lt;br /&gt;Adobe Acrobat 8.2.6 and earlier&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Users of vulnerable versions are instructed to update their versions either by using automatic update functionality or by downloading fresh version manually. The default installation configuration runs automatic updates on a regular schedule and can be manually activated by choosing Help &gt; Check for Updates.&lt;br /&gt;&lt;br /&gt;Those who want to upgrade manually, can download the latest versions of the links below:&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=10&amp;platform=Windows&gt;Adobe Reader&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=1&amp;platform=Windows&gt;Acrobat Standard and Pro&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=158&amp;platform=Windows&gt;Acrobat Pro Extended&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.adobe.com/support/downloads/product.jsp?product=112&amp;platform=Windows&gt;Acrobat 3D&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;More information about fixed vulnerabilities can be read from Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-16.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1803585380486503953?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1803585380486503953/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1803585380486503953' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1803585380486503953'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1803585380486503953'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/security-updates-for-adobe-reader-and.html' title='Security Updates For Adobe Reader And Acrobat'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8434424375379909438</id><published>2011-06-16T17:08:00.001+03:00</published><updated>2011-06-16T17:09:43.913+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For June 2011</title><content type='html'>Microsoft has released security updates for June 2011. This month update contains 16 updates.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms11-jun.mspx"&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8434424375379909438?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8434424375379909438/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8434424375379909438' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8434424375379909438'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8434424375379909438'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/microsoft-security-updates-for-june.html' title='Microsoft Security Updates For June 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1768647351140187344</id><published>2011-06-09T22:41:00.001+03:00</published><updated>2011-06-09T22:43:02.685+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><title type='text'>Fresh Chrome Version Available</title><content type='html'>Google has released a new version of their Chrome web browser. Version 12.0.742.91 contains some new features like for example:&lt;br /&gt;- Hardware accelerated 3D CSS&lt;br /&gt;- New Safe Browsing protection against downloading malicious files&lt;br /&gt;- Ability to delete Flash cookies from inside Chrome&lt;br /&gt;&lt;br /&gt;New version patches also 14 security vulnerabilities in Chrome itself.&lt;br /&gt;&lt;br /&gt;More information in &lt;a href=http://googlechromereleases.blogspot.com/2011/06/chrome-stable-release.html&gt;Google Chrome Releases blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1768647351140187344?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1768647351140187344/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1768647351140187344' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1768647351140187344'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1768647351140187344'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/fresh-chrome-version-available.html' title='Fresh Chrome Version Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-229838869382208409</id><published>2011-06-08T21:41:00.001+03:00</published><updated>2011-06-08T22:07:59.683+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Java'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Oracle'/><title type='text'>Critical Java Updates From Oracle</title><content type='html'>Oracle has released update for Java SE. The update fixes 17 security vulnerabilities of which 12 can be exploited to execute arbitrary code in affected system.&lt;br /&gt;&lt;br /&gt;Affected versions are:&lt;br /&gt;• JDK and JRE 6 Update 25 and earlier&lt;br /&gt;• JDK 5.0 Update 29 and earlier&lt;br /&gt;• SDK 1.4.2_31 and earlier&lt;br /&gt;&lt;br /&gt;More information about the update can be read from Java &lt;a href="http://www.oracle.com/technetwork/topics/security/javacpujune2011-313339.html"&gt;critical patch update document&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Java users are recommended to update their versions to the latest one available.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-229838869382208409?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/229838869382208409/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=229838869382208409' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/229838869382208409'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/229838869382208409'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/critical-java-updates-from-oracle.html' title='Critical Java Updates From Oracle'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1870096042027976420</id><published>2011-06-07T19:30:00.001+03:00</published><updated>2011-06-07T19:33:00.104+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='VMWare'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Some VMware Security Issues Fixed</title><content type='html'>VMware has released security updates to patch some security vulnerabilities in their virtualization applications.&lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;- VMware Workstation prior 7.1.4&lt;br /&gt;- VMware Player prior 3.1.4&lt;br /&gt;- VMware Fusion prior 3.1.3&lt;br /&gt;- ESXi 4.1 without patch ESXi410-201104402-BG&lt;br /&gt;- ESXi 4.0 without patch ESXi400-201104402-BG&lt;br /&gt;- ESXi 3.5 without patches ESXe350-201105401-I-SG and ESXe350-201105402-T-SG&lt;br /&gt;- ESX 4.1 without patch ESX410-201104401-SG&lt;br /&gt;- ESX 4.0 without patch ESX400-201104401-SG&lt;br /&gt;- ESX 3.5 without patches ESX350-201105401-SG, ESX350-201105404-SG and ESX350-201105406-SG&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Further information including updating instructions can be read from VMware's &lt;a href=http://www.vmware.com/security/advisories/VMSA-2011-0009.html&gt;security advisory&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1870096042027976420?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1870096042027976420/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1870096042027976420' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1870096042027976420'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1870096042027976420'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/some-vmware-security-issues-fixed.html' title='Some VMware Security Issues Fixed'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-2422469260705401953</id><published>2011-06-07T19:16:00.003+03:00</published><updated>2011-06-07T19:20:37.058+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='VLC player'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>New Version Of VLC Player Available</title><content type='html'>VideoLAN project has released a new version of their VLC media player. Among other things &lt;a href="http://www.videolan.org/vlc/releases/1.1.10.html"&gt;version 1.1.10&lt;/a&gt; contains a fix to a bug regarding an integer overflow in xspf demuxer. It also contains an update of libmodplug for security reasons in Windows and Mac versions.&lt;br /&gt;&lt;br /&gt;Affected are VLC Player versions prior 1.1.10. Owners of those versions should update to the &lt;a href="http://www.videolan.org/"&gt;latest version&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-2422469260705401953?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/2422469260705401953/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=2422469260705401953' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2422469260705401953'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2422469260705401953'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/new-version-of-vlc-player-available.html' title='New Version Of VLC Player Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7533773128655931771</id><published>2011-06-06T21:54:00.001+03:00</published><updated>2011-06-06T21:56:35.441+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malicious'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Critical Security Update Available For Adobe Flash</title><content type='html'>Adobe has released patched version of their popular Flash Player. Version 10.3.181.22 (10.3.181.23 for ActiveX) fixes a universal cross-site scripting vulnerability (CVE-2011-2107) that could be used to take actions on a user's behalf on any website or webmail provider, if the user visits a malicious website. There are reports that this vulnerability is being exploited in the wild in active targeted attacks designed to trick the user into clicking on a malicious link delivered in an email message.&lt;br /&gt;&lt;br /&gt;Affected software:&lt;br /&gt;- Adobe Flash Player 10.3.181.16 and earlier versions for Windows, Macintosh, Linux and Solaris operating systems&lt;br /&gt;- Adobe Flash Player 10.3.185.22 and earlier versions for Android&lt;br /&gt;&lt;br /&gt;Patched version for Windows, Macintosh, Linux and Solaris operating systems is available at &lt;a href=http://get.adobe.com/flashplayer/&gt;Adobe Flash Player Download Center&lt;/a&gt;. Windows users and users of Adobe Flash Player 10.3.181.16 for Macintosh can install the update via the auto-update mechanism within the product when prompted. Adobe says that they expect to make available an update for Flash Player 10.3.185.22 for Android during the week of June 6, 2011.&lt;br /&gt;&lt;br /&gt;More information in Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-13.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7533773128655931771?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7533773128655931771/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7533773128655931771' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7533773128655931771'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7533773128655931771'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/critical-security-update-available-for.html' title='Critical Security Update Available For Adobe Flash'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-6083971407098729396</id><published>2011-06-02T13:50:00.001+03:00</published><updated>2011-06-02T13:52:26.213+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for May 2011</title><content type='html'>ESET has released a report discussing global threats of May 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Conficker (2.)&lt;br /&gt;3. Win32/PSW.OnLineGames (3.)&lt;br /&gt;4. Win32/Sality (4.)&lt;br /&gt;5. HTML/StartPage.NAE (17.)&lt;br /&gt;6. JS/Redirector (11.)&lt;br /&gt;7. HTML/Iframe.B.Gen (7.)&lt;br /&gt;8. Win32/Autoit (5.)&lt;br /&gt;9. Win32/Bflient (8.)&lt;br /&gt;10. Win32/Autorun (6.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://www.eset.com/us/resources/threat-trends/Global_Threat_Trends_May_2011.pdf&gt;here&lt;/a&gt; (in PDF format)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-6083971407098729396?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/6083971407098729396/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=6083971407098729396' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6083971407098729396'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/6083971407098729396'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/eset-global-threat-report-for-may-2011.html' title='ESET Global Threat Report for May 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4883511015548359844</id><published>2011-06-02T13:14:00.001+03:00</published><updated>2011-06-02T13:31:39.891+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='messagelabs'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>MessageLabs Intelligence Report: May 2011</title><content type='html'>MessageLabs has published their &lt;a href=http://www.messagelabs.com/intelligence.aspx&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for May 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 75.8% in May (an increase of  2.9 percentage points since April 2011) &lt;br /&gt;- Viruses – One in 222.3 emails in May contained malware (a decrease of 0.14 percentage points since April 2011) &lt;br /&gt;- Phishing – One in 286.7 emails comprised a phishing attack (a decrease of 0.06 percentage points since April 2011) &lt;br /&gt;- Malicious web sites – 3,170 web sites blocked per day (an increase of 30.4% since April 2011) &lt;br /&gt;- 36.8% of all malicious domains blocked were new in May (an increase of 3.8 percentage points since April 2011) &lt;br /&gt;- 24.6% of all web-based malware blocked was new in May (an increase of 2.1 percentage points since April 2011) &lt;br /&gt;- For the First Time, Spammers establish their own fake URL-shortening services &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.messagelabs.com/mlireport/MLI_2011_05_May_FINAL-en.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4883511015548359844?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4883511015548359844/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4883511015548359844' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4883511015548359844'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4883511015548359844'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/06/messagelabs-intelligence-report-may.html' title='MessageLabs Intelligence Report: May 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-2036755398801047440</id><published>2011-05-28T13:53:00.003+03:00</published><updated>2011-05-28T14:00:17.574+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='IBM'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Lotus Notes'/><title type='text'>Vulnerabilities Affecting IBM Lotus Notes</title><content type='html'>There have been found buffer overflow vulnerabilities in IBM Lotus Notes for Windows. The vulnerabilities could allow an attacker to execute arbitrary code in target system. To exploit the vulnerabilities user can be lured to open specially crafted file attachment.&lt;br /&gt;&lt;br /&gt;Affected software:&lt;br /&gt;IBM Lotus Notes 8.5.2&lt;br /&gt;IBM Lotus Notes 8.5.1&lt;br /&gt;IBM Lotus Notes 8.0.x&lt;br /&gt;IBM Lotus Notes 7.x&lt;br /&gt;IBM Lotus Notes 6.x&lt;br /&gt;IBM Lotus Notes 5.x&lt;br /&gt;&lt;br /&gt;At the moment there's a patch available for version &lt;a href=https://www-304.ibm.com/support/docview.wss?uid=swg21500632&gt;8.5.2&lt;/a&gt; only. Users of other affected versions are advised to turn vulnerable feature off until the fix is available. More information about workarounds &lt;a href=https://www-304.ibm.com/support/docview.wss?uid=swg21500034&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-2036755398801047440?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/2036755398801047440/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=2036755398801047440' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2036755398801047440'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/2036755398801047440'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/vulnerabilities-affecting-ibm-lotus.html' title='Vulnerabilities Affecting IBM Lotus Notes'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8652936725787739703</id><published>2011-05-24T21:39:00.002+03:00</published><updated>2011-05-24T21:45:10.514+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malware'/><category scheme='http://www.blogger.com/atom/ns#' term='kaspersky'/><category scheme='http://www.blogger.com/atom/ns#' term='trojan'/><title type='text'>MAX++ Malware Back With x64 Version</title><content type='html'>MAX++ (aka ZeroAccess) trojan is not totally new malware but its x64 version is. "Computers are infected using a drive-by attack on a browser and its components via the Bleeding Life exploit kit. In particular, Acrobat Reader (CVE 2010-0188, CVE 2010-1297, CVE 2010-2884, CVE 2008-2992) and Java (CVE 2010-0842, CVE 2010-3552) modules are prone to attack.", explains Kaspersky Lab Expert Vasily Berdnikov in company's blog.&lt;br /&gt;&lt;br /&gt;Detailed description of MAX++ x86 and x64 version behaviour can be read from the related &lt;a href=http://www.securelist.com/en/blog/493/MAX_sets_its_sights_on_x64_platforms&gt;Kaspersky blog post&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8652936725787739703?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8652936725787739703/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8652936725787739703' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8652936725787739703'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8652936725787739703'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/max-malware-back-with-x64-version.html' title='MAX++ Malware Back With x64 Version'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-641619342451212419</id><published>2011-05-19T18:12:00.001+03:00</published><updated>2011-05-19T18:12:58.222+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Opera'/><title type='text'>Security Update For Opera Released</title><content type='html'>Opera Software has released an update for their Opera web browser. Version 11.11 contains fix to one security vulnerability.&lt;br /&gt;&lt;br /&gt;critical:&lt;br /&gt;* Frameset issue allows execution of arbitrary code; &lt;a href=http://www.opera.com/support/kb/view/992/&gt;advisory&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Opera users are strongly recommended to update to 11.11 version. New version can be downloaded &lt;a href=http://www.opera.com/browser/download/&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-641619342451212419?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/641619342451212419/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=641619342451212419' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/641619342451212419'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/641619342451212419'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/security-update-for-opera-released.html' title='Security Update For Opera Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7832938281668682317</id><published>2011-05-15T14:06:00.001+03:00</published><updated>2011-05-15T14:07:52.741+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>Microsoft Security Intelligence Report Volume 10 Released</title><content type='html'>Microsoft has released volume 10 of their Security Intelligence Report (SIR). "The Security Intelligence Report (SIR) is an investigation of the current threat landscape. It analyzes exploits, vulnerabilities, and malware based on data from over 600 million systems worldwide, as well as internet services, and three Microsoft Security Centers." The latest, volume 10 covers year 2010.&lt;br /&gt;&lt;br /&gt;The report can be downloaded &lt;a href=http://www.microsoft.com/security/sir/&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7832938281668682317?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7832938281668682317/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7832938281668682317' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7832938281668682317'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7832938281668682317'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/microsoft-security-intelligence-report.html' title='Microsoft Security Intelligence Report Volume 10 Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8117340170288804531</id><published>2011-05-13T22:40:00.001+03:00</published><updated>2011-05-13T22:49:01.679+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Updates For Adobe Products Available</title><content type='html'>Adobe has released updates for their Adobe Flash Player, Flash Media Server, Audition and Robohelp products. In total 16 vulnerabilities were fixed and 15 of these being critical.&lt;br /&gt;&lt;br /&gt;Affected versions:&lt;br /&gt;- Adobe Flash Player 10.2.159.1 and earlier versions (Windows, Macintosh,Linux, Solaris)&lt;br /&gt;- Adobe Flash Player 10.2.154.28 and earlier versions (Chrome)&lt;br /&gt;- Adobe Flash Player 10.2.157.51 and earlier versions (Android)&lt;br /&gt;- Adobe Flash Media Server 4.0.1 and earlier versions (Windows, Linux)&lt;br /&gt;- Adobe Flash Media Server 3.5.5 and earlier versions (Windows, Linux)&lt;br /&gt;- Adobe Audition 3.0.1 and earlier versions (Windows)&lt;br /&gt;- Adobe RoboHelp 7 and 8 (Windows)&lt;br /&gt;- Adobe RoboHelp Server 7 and 8 (Windows)&lt;br /&gt;&lt;br /&gt;Details about available updates and other information can be read from &lt;a href=http://blogs.adobe.com/psirt/2011/05/security-updates-available-for-flash-player-robohelp-audition-and-flash-media-server.html&gt;Adobe PSIRT blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8117340170288804531?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8117340170288804531/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8117340170288804531' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8117340170288804531'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8117340170288804531'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/updates-for-adobe-products-available.html' title='Updates For Adobe Products Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7761324445210507302</id><published>2011-05-11T18:50:00.001+03:00</published><updated>2011-05-11T18:51:31.567+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For May 2011</title><content type='html'>Microsoft has released security updates for May 2011. This month update contains fixes to three vulnerabilities.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://www.microsoft.com/technet/security/bulletin/ms11-may.mspx&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7761324445210507302?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7761324445210507302/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7761324445210507302' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7761324445210507302'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7761324445210507302'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/microsoft-security-updates-for-may-2011.html' title='Microsoft Security Updates For May 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-9040480871390616874</id><published>2011-05-08T13:48:00.003+03:00</published><updated>2011-05-08T14:00:14.824+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ESET'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>ESET Global Threat Report for April 2011</title><content type='html'>ESET has released a report discussing global threats of April 2011.&lt;br /&gt;&lt;br /&gt;TOP 10 threats list (previous ranking listed too):&lt;br /&gt;&lt;br /&gt;1. INF/Autorun (1.)&lt;br /&gt;2. Win32/Conficker (2.)&lt;br /&gt;3. Win32/PSW.OnLineGames (3.)&lt;br /&gt;4. Win32/Sality (4.)&lt;br /&gt;5. Win32/Autoit (9.)&lt;br /&gt;6. Win32/Autorun (7.)&lt;br /&gt;7. HTML/Iframe.B.Gen (15.)&lt;br /&gt;8. Win32/Bflient (6.)&lt;br /&gt;9. Win32/Tifaut.C (8.)&lt;br /&gt;10. Win32/Spy.Ursnif.A (10.)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Complete report (with a description about each of the above listed threats) can be downloaded &lt;a href=http://www.eset.com/us/resources/threat-trends/Global_Threat_Trends_April_2011.pdf&gt;here&lt;/a&gt; (in PDF format)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-9040480871390616874?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/9040480871390616874/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=9040480871390616874' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9040480871390616874'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/9040480871390616874'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/eset-global-threat-report-for-april.html' title='ESET Global Threat Report for April 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7822512492552229395</id><published>2011-05-08T13:20:00.003+03:00</published><updated>2011-05-08T13:30:30.440+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='rootkit'/><title type='text'>TDL4 Rootkit And 64-bit Windows</title><content type='html'>Last month, Microsoft released &lt;a href=http://www.microsoft.com/technet/security/advisory/2506014.mspx&gt;KB2506014 patch&lt;/a&gt; to fix a hole TDL4 rootkit had used to successfully bypass security implementions in the 64-bit version of Windows. Authors of TDL4 have now made some modifications to their evil creation to bypass Microsoft's patch. Below are links to two recent blog posts discussing the latest turn of this highly advanced rootkit.&lt;br /&gt;&lt;br /&gt;&lt;a href=http://www.prevx.com/blog/172/TDL-rootkit-is-coming-back-stronger-than-before.html&gt;TDL4 rootkit is coming back stronger than before&lt;/a&gt; by Marco Giuliani, Prevx&lt;br /&gt;&lt;a href=http://www.symantec.com/connect/blogs/backdoortidserv-and-x64&gt;Backdoor.Tidserv and x64&lt;/a&gt; by Mircea Ciubotariu, Symantec&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7822512492552229395?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7822512492552229395/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7822512492552229395' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7822512492552229395'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7822512492552229395'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/tdl4-rootkit-and-64-bit-windows.html' title='TDL4 Rootkit And 64-bit Windows'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4919138591347476235</id><published>2011-05-04T22:43:00.000+03:00</published><updated>2011-05-04T22:44:37.381+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='messagelabs'/><category scheme='http://www.blogger.com/atom/ns#' term='report'/><title type='text'>MessageLabs Intelligence Report: April 2011</title><content type='html'>MessageLabs has published their &lt;a href=http://www.messagelabs.com/intelligence.aspx&gt;Intelligence report&lt;/a&gt; that sums up the latest threat trends for April 2011.&lt;br /&gt;&lt;br /&gt;Report highlights:&lt;br /&gt;- Spam – 72.9% in April (a decrease of  6.4 percentage points since March 2011)&lt;br /&gt;- Viruses – One in 168.6 emails in April contained malware (an increase of 0.11 percentage points since March 2011) &lt;br /&gt;- Phishing – One in 242.2 emails comprised a phishing attack (an increase of 0.02 percentage points since March 2011)&lt;br /&gt;- Malicious web sites – 2,431 web sites blocked per day (a decrease of 18.2% since March 2011) &lt;br /&gt;- 33.0% of all malicious domains blocked were new in April (a decrease of 4.0 percentage points since March 2011)&lt;br /&gt;- 22.5% of all web-based malware blocked was new in April (a decrease of 1.9 percentage points since March 2011)&lt;br /&gt;- Targeted attacks increase in intensity: What does a recent targeted attack look like?&lt;br /&gt;- Shortened URLs: Do you know what you’re clicking on?&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The report can be viewed &lt;a href=http://www.messagelabs.com/mlireport/MLI_2011_04_April_FINAL_en-us.pdf&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4919138591347476235?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4919138591347476235/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4919138591347476235' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4919138591347476235'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4919138591347476235'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/05/messagelabs-intelligence-report-april.html' title='MessageLabs Intelligence Report: April 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7858325282209140580</id><published>2011-04-30T01:22:00.002+03:00</published><updated>2011-04-30T01:32:50.548+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Mozilla'/><category scheme='http://www.blogger.com/atom/ns#' term='seamonkey'/><category scheme='http://www.blogger.com/atom/ns#' term='thunderbird'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Firefox'/><title type='text'>Mozilla Updates Available</title><content type='html'>Mozilla has released security bulletins related to found issues in some of their products. Four of these are categorized as critical, two as moderate and one as low.&lt;br /&gt;&lt;br /&gt;Critical:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-12.html&gt;MFSA 2011-12&lt;/a&gt; Miscellaneous memory safety hazards (rv:2.0.1/ 1.9.2.17/ 1.9.1.19)&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-13.html&gt;MFSA 2011-13&lt;/a&gt; Multiple dangling pointer vulnerabilities&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-15.html&gt;MFSA 2011-15&lt;/a&gt; Escalation of privilege through Java Embedding Plugin&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-17.html&gt;MFSA 2011-17&lt;/a&gt; WebGLES vulnerabilities&lt;br /&gt;&lt;br /&gt;Moderate:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-14.html&gt;MFSA 2011-14&lt;/a&gt; Information stealing via form history&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-16.html&gt;MFSA 2011-16&lt;/a&gt; Directory traversal in resource: protocol&lt;br /&gt;&lt;br /&gt;Low:&lt;br /&gt;&lt;a href=http://www.mozilla.org/security/announce/2011/mfsa2011-18.html&gt;MFSA 2011-18&lt;/a&gt; XSLT generate-id() function heap address leak&lt;br /&gt;&lt;br /&gt;Fresh versions can be obtained via inbuilt updater or by downloading from the product site:&lt;br /&gt;&lt;a href=http://www.firefox.com/&gt;Firefox&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.mozillamessaging.com/en-US/&gt;Thunderbird&lt;/a&gt;&lt;br /&gt;&lt;a href=http://www.seamonkey-project.org/&gt;SeaMonkey&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7858325282209140580?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7858325282209140580/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7858325282209140580' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7858325282209140580'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7858325282209140580'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/mozilla-updates-available.html' title='Mozilla Updates Available'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7986001490223117563</id><published>2011-04-26T10:08:00.004+03:00</published><updated>2011-04-26T10:17:13.330+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malware'/><category scheme='http://www.blogger.com/atom/ns#' term='royal wedding'/><title type='text'>The Upcoming Royal Wedding And Malware</title><content type='html'>Malware spreaders are once again taking advantage of attracting event to get some dirty work done. This time it's a theme under the Royal Wedding ceremony that will take place on April 29. GFI LABS have a few entries about this in their blog:&lt;br /&gt;&lt;a href=http://sunbeltblog.blogspot.com/2011/04/fake-av-we-are-not-amused.html&gt;http://sunbeltblog.blogspot.com/2011/04/fake-av-we-are-not-amused.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://sunbeltblog.blogspot.com/2011/04/collection-of-royal-wedding-fakeouts.html"&gt;http://sunbeltblog.blogspot.com/2011/04/collection-of-royal-wedding-fakeouts.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://sunbeltblog.blogspot.com/2011/04/kate-middleton-has-blog-and-some-fake.html"&gt;http://sunbeltblog.blogspot.com/2011/04/kate-middleton-has-blog-and-some-fake.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Time to be careful when looking for information about the Royal Wedding (or any hot topic at the moment) and clicking hits returned by web search engines or links seen on Facebook and other social media. More hints offers for example &lt;a href=http://safeandsavvy.f-secure.com/2011/04/22/royal-wedding/&gt;this&lt;/a&gt; post on F-Secure's Safe and Savvy blog.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7986001490223117563?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7986001490223117563/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7986001490223117563' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7986001490223117563'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7986001490223117563'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/upcoming-royal-wedding-and-malware.html' title='The Upcoming Royal Wedding And Malware'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-8803382555377177914</id><published>2011-04-22T13:20:00.001+03:00</published><updated>2011-04-22T13:22:15.571+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='pdf reader'/><title type='text'>Security Updates Available For Adobe Reader And Acrobat</title><content type='html'>Adobe has released updated version of their Adobe Reader and Acrobat products. The new version fixes a couple of critical vulnerabilities.&lt;br /&gt;&lt;br /&gt;Patched versions were released for Adobe Reader 9.x and Acrobat 9.x series (and Adobe Reader X for Macintosh). Because Adobe Reader X Protected Mode would prevent an exploit of this kind from executing, Adobe is planning to address this issue in Adobe Reader X for Windows with the next quarterly security update for Adobe Reader, currently scheduled for June 14, 2011.&lt;br /&gt;&lt;br /&gt;Details about available updates and other information can be read from &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-08.html&gt;Adobe Security Advisory APSB11-08&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-8803382555377177914?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/8803382555377177914/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=8803382555377177914' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8803382555377177914'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/8803382555377177914'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/security-updates-available-for-adobe.html' title='Security Updates Available For Adobe Reader And Acrobat'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-5578702917328319290</id><published>2011-04-21T12:01:00.002+03:00</published><updated>2011-04-21T12:03:18.813+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Oracle'/><title type='text'>Oracle Critical Patch Update For Q2 of 2011</title><content type='html'>Oracle has released updates for their products that fix 73 security issues in total. The updates are a part of Oracle's quarterly released critical patch update (CPU).&lt;br /&gt;&lt;br /&gt;Detailed list of vulnerabilities with patching instructions can be read from &lt;a href=http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html&gt;Oracle CPU Advisory&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Next Oracle CPU is planned to be released in July 2011.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-5578702917328319290?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/5578702917328319290/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=5578702917328319290' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5578702917328319290'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/5578702917328319290'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/oracle-critical-patch-update-for-q2-of.html' title='Oracle Critical Patch Update For Q2 of 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1200425776376268413</id><published>2011-04-16T15:25:00.000+03:00</published><updated>2011-04-16T15:26:41.363+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Security Update Available For Adobe Flash</title><content type='html'>Adobe has released patched version of their popular Flash Player. Version 10.2.159.1 fixes vulnerability that was announced earlier in Adobe's &lt;a href=http://www.adobe.com/support/security/advisories/apsa11-02.html&gt;Security Advisory APSA11-02&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;More information in Adobe's &lt;a href=http://www.adobe.com/support/security/bulletins/apsb11-07.html&gt;security bulletin&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1200425776376268413?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1200425776376268413/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1200425776376268413' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1200425776376268413'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1200425776376268413'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/security-update-available-for-adobe.html' title='Security Update Available For Adobe Flash'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-590487094278807861</id><published>2011-04-15T17:28:00.001+03:00</published><updated>2011-04-15T17:30:22.911+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='chrome'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='google'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>New Chrome Version Released</title><content type='html'>Google has released a new version of their Chrome web browser. Version 10.0.648.205 contains a new version of Adobe Flash fixing a &lt;a href=http://www.adobe.com/support/security/advisories/apsa11-02.html&gt;security vulnerability&lt;/a&gt; (CVE-2011-0611). New version patches also three security vulnerabilities in Chrome itself.&lt;br /&gt;&lt;br /&gt;More information in Google &lt;a href=http://googlechromereleases.blogspot.com/2011/04/stable-channel-update.html&gt;Chrome Releases blog&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-590487094278807861?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/590487094278807861/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=590487094278807861' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/590487094278807861'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/590487094278807861'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/new-chrome-version-released.html' title='New Chrome Version Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-7173136316327816674</id><published>2011-04-15T17:19:00.001+03:00</published><updated>2011-04-15T17:21:48.159+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='Safari'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Apple'/><title type='text'>Patched Version of Safari Released</title><content type='html'>Apple has released a new versions of their Safari web browser. Version 5.0.5 contains fixes to two WebKit (=browser engine in Safari) vulnerabilities. These may lead to an unexpected application termination or allow an attacker to execute arbitrary code in affected system.&lt;br /&gt;&lt;br /&gt;Affected are Safari versions earlier than 5.0.5. Users of vulnerable Safari versions can get the latest version &lt;a href=http://www.apple.com/safari/download/&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;More information of security content of 5.0.5 version can be read &lt;a href=http://support.apple.com/kb/HT4596&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-7173136316327816674?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/7173136316327816674/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=7173136316327816674' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7173136316327816674'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/7173136316327816674'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/patched-version-of-safari-released.html' title='Patched Version of Safari Released'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-1776069624254881795</id><published>2011-04-13T16:02:00.002+03:00</published><updated>2011-04-13T16:05:22.476+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='pdf'/><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='adobe'/><category scheme='http://www.blogger.com/atom/ns#' term='flash'/><title type='text'>Unpatched Vulnerability Affecting Adobe Products</title><content type='html'>There has been found a critical vulnerability (CVE-2011-0611) in Adobe Flash Player which also impacts the authplay.dll component shipping with Adobe Reader and Acrobat. The vulnerability could cause a crash and potentially allow an attacker to take control of the affected system. Adobe states that there are reports that this vulnerability is being exploited in the wild in targeted attacks via a Flash (.swf) file embedded in a Microsoft Word (.doc) file delivered as an email attachment. At this time, Adobe is not aware of attacks targeting Adobe Reader and Acrobat.&lt;br /&gt;&lt;br /&gt;Affected versions are:&lt;br /&gt;- Adobe Flash Player 10.2.153.1 and earlier versions for Windows, Macintosh, Linux and Solaris operating systems&lt;br /&gt;- Adobe Flash Player 10.2.154.25 and earlier for Chrome users&lt;br /&gt;- Adobe Flash Player 10.2.156.12 and earlier for Android&lt;br /&gt;- The Authplay.dll component that ships with Adobe Reader and Acrobat X (10.0.2) and earlier 10.x and 9.x versions for Windows and Macintosh operating systems&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Adobe states that it's finalizing a schedule for delivering updates to affected versions. Because Adobe Reader X Protected Mode would prevent an exploit of this kind from executing, Adobe is currently planning to address this issue in Adobe Reader X for Windows with the next quarterly security update for Adobe Reader, currently scheduled for June 14, 2011.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;More information:&lt;br /&gt;&lt;a href=http://www.adobe.com/support/security/advisories/apsa11-02.html&gt;Security Advisory&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-1776069624254881795?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/1776069624254881795/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=1776069624254881795' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1776069624254881795'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/1776069624254881795'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/unpatched-vulnerability-affecting-adobe.html' title='Unpatched Vulnerability Affecting Adobe Products'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-9149765741928020644.post-4375548838326044566</id><published>2011-04-13T15:51:00.001+03:00</published><updated>2011-04-13T15:53:01.589+03:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='vulnerability'/><category scheme='http://www.blogger.com/atom/ns#' term='update'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft'/><title type='text'>Microsoft Security Updates For April 2011</title><content type='html'>Microsoft has released security updates for April 2011. This month update contains fixes to over 60 vulnerabilities.&lt;br /&gt;&lt;br /&gt;A new version of Windows Malicious Software Removal Tool (MSRT) was released too.&lt;br /&gt;&lt;br /&gt;More information can be read from the &lt;a href=http://www.microsoft.com/technet/security/bulletin/ms11-apr.mspx&gt;bulletin summary&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;For consumer the easist way to get the update is to use &lt;a href=http://update.microsoft.com/&gt;Microsoft Update service&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/9149765741928020644-4375548838326044566?l=bladessecurityspot.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://bladessecurityspot.blogspot.com/feeds/4375548838326044566/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=9149765741928020644&amp;postID=4375548838326044566' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4375548838326044566'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/9149765741928020644/posts/default/4375548838326044566'/><link rel='alternate' type='text/html' href='http://bladessecurityspot.blogspot.com/2011/04/microsoft-security-updates-for-april.html' title='Microsoft Security Updates For April 2011'/><author><name>Blade81</name><uri>http://www.blogger.com/profile/18020945485252669189</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
