Archive for the 'Security' Category


Illegal to disable some spyware?

Tuesday, November 8th, 2005

OK – for starters, the keylogger that sunbelt talks about here is a legitimate piece of software for sale. Like anything though it could have illegit uses. Apparently retrocoder is upset that Sunbelt’s software detects spymon and gives the option of disabling it. Spymon is a commercial keylogger. They’ve claimed that it’s against their EULA […]

Linux network worm…

Monday, November 7th, 2005

There is a linux network worm (virus) in the wild, which I’ve mentioned already in an earlier post. I did want to take a few moments to highlight this and dispell a few myths. (This is the first linux virus I recall seeing over at SARC in the last couple years….) Myth #1) linux doesn’t […]

Macromedia flash player vulnerability

Monday, November 7th, 2005

A severe security vulnerability has been found in versions of the Flash Player prior to 7.0.19.0 Many sites require flash player in order to view various features on the site (depending on the site this ranges from commercials to the site navigation.) A specially crafted swf file on a remote website could allow the attacker […]

XML-RPC for PHP vulnerability attack attempts

Monday, November 7th, 2005

Incidents.org is reporting on attacks against a recent XML-RPC vulnerability in PHP. This would affect users of PostNuke, Drupal, b2evolution, Xoops, WordPress, PHPGroupWare and TikiWiki. As far as I know there are fixes for each of these in the most recent versions of the software.    Send article as PDF   

Botnets and spyare

Friday, November 4th, 2005

“It outta be illegal” is the first thing I usually hear as I start the long process of sanitizing a spyware infested windows machine. The fact is some parts of it ARE, some are just ethically questionable. The area that’s against the law is the part that involves tacking control of someone elses computer without […]

Microsoft Updates for October and bugs on the loose

Wednesday, October 12th, 2005

Well, it’s been a bit since a post here, but if you haven’t already patch your systems with Microsoft update, as new updates were released yesterday. Incidents.org is reporting rumors of bugs in the wild. Everyone KNOWS the window between vulnerability and exploit is getting shorter and shorter, so if you have a windows system […]

Another critical IE vulnerability

Thursday, September 1st, 2005

Say it ain’t so…. yet another security vulnerability was discovered in Internet Explorer. Users are advised to use alternative browsers (firefox, opera, netscape.) At this point it doesn’t look to be actively exploited, it can at least crash IE, but at worst allow a vulnerable system to be controlled remotely….    Send article as PDF […]

More on the Zotob/Mytob identity theft ring

Thursday, September 1st, 2005

The Security Fix has reported on the unraveling of a ring of identity theives after the arrests of the writers of the zotob and mytob worms. Apparently they have leads on about a dozen different people following the arrests last week of the suspected virus writers.    Send article as PDF   

Adware, spam, bots, keyloggers, 180solutions, etc. etc. etc. oh my…

Thursday, September 1st, 2005

Spyware Confidential has an article and there are more details at the spyware warrior. Of a particularly bad spyware infestation triggered by the visit to ONE web site.    Send article as PDF   

A virus writer talks….

Monday, August 29th, 2005

Along the lines of “Wishlist of Spyware Slime” that I referred to last week, it appears there’s a chat transcript out from before the arrest of the suspected writer of the mytob and zotob worms. The security fix has the details.    Send article as PDF   

Google
 
Web www.averyjparker.com