Anzeige aller Artikel von

February 2010

Thunderbird 3.0.2 security updates (?)

Mozilla released Thunderbird 3.0.2 yesterday. According to the release notes and h-online.com version 3.0.2 fixes several security issues. The corresponding security advisory tells us that this issues have already been fixed with version 3.0.1 at 2010-01-20. So one of these seems to be at fault.

TYPO3 security updates

At 2010-02-23 a security bulletin at Typo3.org addressed some security issues with  versions 4.2.11 and below and 4.3.1 and below. It lists two cross-site scripting vulnerabilities, one information disclosure and an authentication bypass vulnerability. It’s recommended to update your systems to versions 4.2.12 and 4.3.2 .

“Klipper on Security” is going mobile

“Klipper on Security” is now available for smartphones and mobiles, too. So you can use the website with a special theme on your way to work or whatever. The mobile theme is very saving with your bandwidth. One site is up to 150KB. With my Nokia it works fine. The server will automatically detect your [...]

Hoax or not? Firefox 3.6 vulnerability

It all started with a posting at the IMMUNITY-Forum. Evgeny Legerov reported about a new commercial Firefox 3.6 exploit. The posting dated 2010-02-01. At 2010-02-03 Mario23 posted: “I’ve bought VulnDisco 9.0 and tested the FireFox 0-day-exploit. It did NOT (!!!) work…” He was concerned, that post could be a hoax, which also Secunia bought into [...]

Street View: Google gives concessions in Germany

In Germany you can send Google an simple disagreement. After that Google won’t publishing pictures of your house to the Internet. That is the short form for the concessions Google made only in Germany. The Ministry of Consumer Protection provides a disagreement-form at their download-area. You are even allowed to mail the form. By clicking [...]

German Internet law against child porn enacts tomorrow

On Feb. 23. 2010 the German Internet law against child porn enacts. From then on the German Federal Criminal Police Office BKA has to provide  blacklists for criminal websites to German Internet providers. These have to block the Domains after 6 hours. But as I posted in my article  ZensUrsula passé the law won’t be implemented. [...]

Almost 2,500 firms hit by united botnets

Security researchers have found out, that one ZeuS botnet not only has turned more than 74,000 PCs at 2,500 firms into remote spying platforms. The researchers also found out, that the 50% of the infected machines are working hand-in-hand with a Waledac botnet, The Register reported. The coordinated attack on networks of companies and also [...]

School used student laptop webcams to spy on them at home

What happens in America, will happen in Europe not more than 10 years later. And times going faster … The Website BoingBoing reports of an incident at an US school, where students have been spied over their laptop webcams by the teachers of the school! The incident got public, because the VP of the school [...]

Going Commercial with Firefox Vulnerabilities

Security vendor Secunia released a advisory two days ago. Nothing unusual. The Advisory is titled “Mozilla Firefox Unspecified Code Execution Vulnerability”. Unspecified? Why that? Secunia is well informed usually. “The vulnerability is caused due to an unspecified error and can be exploited to execute arbitrary code. The vulnerability is reported in version 3.6. Other versions [...]

Stupid Password Evaluation

Never heard of password evaluation as stupid as this at the website of the CXO magazin. An article uses a picture with passwords evaluated by the Gmail Password Strength Meter. It rates passwords as enzoferrari, ggecko and ncc1701 as “good” passwords. Even better: The rating for the password deathknight55 is “strong”. Good Luck!