Saturday, October 10, 2009

[Lockergnome] Computer Security ~ October 10, 2009

Lockergnome
Lockergnome's Computer Security ~ October 10, 2009   



Fitness Tools: Fitness Tools is an integrated collection of fitness calculators. Check your body fat percentage, see how many calories you burn in an activity, test your flexibility and aerobic fitness, see how much weight you should be able to lift, and what your optimal heart rate should be during exercise. One tool, all the calculations! Features: Now includes full color support for devices with color capabilities. Supports both English and Metric measurement units. Integrated help and... [Click Here to Download]

Lockergnome help - Antivirus Discussions

Lockergnome help - Trojans/Spyware Discussions

Lockergnome help - Antivirus Discussions - General Discussions

Lockergnome help - Antivirus Discussions - McAfee

Lockergnome help - Antivirus Discussions - Symantec/Norton

Lockergnome help - Antivirus Discussions - AVG

Lockergnome help - Antivirus Discussions - F-PROT

Lockergnome help - Antivirus Discussions - Panda

Lockergnome help - Antivirus Discussions - Free Antivirus

Lockergnome help - Antivirus Discussions - Others

Lockergnome help - Trojans/Spyware Discussions - General Discussions

Lockergnome help - Trojans/Spyware Discussions - Lavasoft Ad-Aware

Lockergnome help - Trojans/Spyware Discussions - Webroot Spy Sweeper

Lockergnome help - Trojans/Spyware Discussions - Spybot S&D

Tumble Bugs: You, the hero Tumble, hold the fate of your colorful beetle buddies in your hands as you save them from being enslaved by the Black Bug Empire. Set your buggy brethren free by matching beetles of the same color in groups of three or more. Lob shots over rows with "Ballistic Bugs" or jump between multiple shooting platforms and take shots from different angles. This spectacular 3D game is not to be missed! [Download Free... [Click Here to Download]

Administrivia

Tech Help and How To


Sociological Sex Survey Summation

Assisted Suicide: Death by ?Choice??

Auslogics - Making Disk Defrag Better for All

Working with XP again

Last of the Big Iron Gone In the House

Tweeting Yourself to an Early Retirement

It?s Official! Marge Simpson to Grace the November Cover of Playboy!

Opera (Quietly) Continues to Get Better

Actual Hall Where Obama Will Receive Nobel Peace Prize Lord Mayor P »

Alcohol Allowance Moonbomb Homosexual Tweets on Catholic Bladderball

Some Salesmen Don?t Know When to Shut Up (or Time to Give It a Rest)

Libertarians Suggest Nobel Announcements be Moved to April Fool?s Day

More and More Fees from the Airlines

nVidia ? Between a Rock and A Hard Place

KipKay: The Halloween Blood Spurting Knife Wound

Hey, Let?s Bomb the Moon!

Solaris 10 (10/09) ? Get It While You Can

President Giveaway Gets A Nobel

Barack Obama needs a Peace Prize like Custer needs Indians

Stop the Presses! Microsoft Actually Says No to Something


TrendLabs | Malware Blog - by Trend Micro - 2 new articles

 

Your email updates, powered by FeedBlitz

 
Here are the latest updates for security-news@awsoda.net

"TrendLabs | Malware Blog - by Trend Micro" - 2 new articles

  1. New Adobe Zero-Day Exploit
  2. Even smart people make mistakes
  3. More Recent Articles
  4. Search TrendLabs | Malware Blog - by Trend Micro

New Adobe Zero-Day Exploit

Trend Micro threat analysts were alerted to the discovery of a zero-day exploit that affects Adobe Reader and Acrobat 9.1.3 and earlier versions (CVE-2009-3459). Trend Micro detects this as TROJ_PIDIEF.UO. This .PDF file contains an embedded JavaScript, which Trend Micro detects as JS_AGENTT.DT. This JavaScript is used to execute arbitrary codes in a technique known as heap spraying. In addition, there is a possibility that a future variant may be created that does not use JavaScript to exploit the said vulnerability.

Based on our findings, the shellcode (that was heap sprayed) jumps to another shellcode inside the .PDF file. The said shellcode then extracts and executes a malicious file detected by Trend Micro as BKDR_PROTUX.BD. The said backdoor is also embedded in the .PDF file and not the usual file downloaded from the Web. Protux variants are known for their ability to provide unrestricted user-level access to a malicious user. Earlier variants of the Protux backdoor were seen to have been used as payload in previous attacks exploiting vulnerabilities in Microsoft Office files.


Click Click
Click

As of this writing, Adobe has indicated that it will include this vulnerability in its upcoming security update release. Meanwhile, users are recommended to disable JavaScript in Adobe Acrobat/Reader to mitigate the said attack. To do this, they should follow these steps:

  1. Run Acrobat or Adobe Reader.
  2. Go to Edit > Preferences.
  3. Select JavaScript under the Categories tab.
  4. Uncheck the "Enable Acrobat JavaScript" option.
  5. Click OK.

Users are also advised to patch their systems as soon as Adobe releases the security patch. Trend Micro protects users with the Smart Protection Network by detecting the said exploit.

Post from: TrendLabs | Malware Blog - by Trend Micro

New Adobe Zero-Day Exploit


Even smart people make mistakes

Anybody want to know Trend Micro’s top secret internal strategic plans for our upcoming projects? How about our financial returns for the next quarter?

Well sorry, obviously we are not going to give that sort of information out publically – we’d need to be crazy to do something like that.

… On the other hand if you want a heads up on Microsoft’s upcoming Windows 8 and Windows 9 operating systems (128 bit apparently) just wander over to the LinkedIn social networking site.

PC Pro have published a short piece on how a certain key Microsoft employee’s LinkedIn profile described his job description as:

Working in high security department for research and development involving strategic planning for medium and longterm projects. Research & Development projects including 128bit architecture compatibility with the Windows 8 kernel and Windows 9 project plan. Forming relationships with major partners: Intel, AMD, HP and IBM.

Ouch.

This is yet another example of very sensitive company data being accidently posted to a social networking site, an all too common occurence. Social Networking sites are also invaluable as sources of reconnaissance for hackers targeting a specific company, whether it’s an IT admin on LinkedIn mentioning “managing Checkpoint Firewalls” in his job description, or an employee tweeting that they are going on their way to a “merger meeting with company X” – employees are quite often unaware of the sensitive information they are publically disclosing.

Don’t get me wrong, I like Social Networks. I even have a LinkedIn profile of my own, but I don’t put any data there that people would not already know.

If you are worried about this sort of data leakage occuring in your own company, I’d fully recommend reading my colleague David Sancho’s paper “A Security Guide to Social Networks“.

Perhaps Microsoft might like to print out a copy for all of their own employees.

Post from: TrendLabs | Malware Blog - by Trend Micro

Even smart people make mistakes


More Recent Articles



Click here to safely unsubscribe now from "TrendLabs | Malware Blog - by Trend Micro" or change your subscription or subscribe

 
Unsubscribe from all current and future newsletters powered by FeedBlitz
Your requested content delivery powered by FeedBlitz, LLC, 9 Thoreau Way, Sudbury, MA 01776, USA. +1.978.776.9498

 

Friday, October 9, 2009

[Lockergnome] Computer Security ~ October 9, 2009

Lockergnome
Lockergnome's Computer Security ~ October 9, 2009   



Flip Words: You'll flip over our new word game: Flip Words! Click on letters to make words and solve familiar phrases. The first letter of each word you make will be revealed in the phrase you're trying to solve. Once you recognize the phrase, you can submit your guess - or, try to reveal all the letters for a special bonus! You'll never run out of phrases because you can create your own and automatically download new... [Click Here to Download]

Lockergnome help - Antivirus Discussions

Lockergnome help - Trojans/Spyware Discussions

Lockergnome help - Antivirus Discussions - General Discussions

Lockergnome help - Antivirus Discussions - McAfee

Lockergnome help - Antivirus Discussions - Symantec/Norton

Lockergnome help - Antivirus Discussions - AVG

Lockergnome help - Antivirus Discussions - F-PROT

Lockergnome help - Antivirus Discussions - Panda

Lockergnome help - Antivirus Discussions - Free Antivirus

Lockergnome help - Antivirus Discussions - Others

Lockergnome help - Trojans/Spyware Discussions - General Discussions

Lockergnome help - Trojans/Spyware Discussions - Lavasoft Ad-Aware

Lockergnome help - Trojans/Spyware Discussions - Webroot Spy Sweeper

Lockergnome help - Trojans/Spyware Discussions - Spybot S&D

AlphaZIP: Alpha ZIP is the easiest way to handle ZIP files and other compressed formats, offering a range of new features and a unique level of integration with Windows. No more grappling with complicated ZIP software! Make handling ZIP files quick and easy. AlphaZIP also supports most other compressed formats, including 7-ZIP. With its unique Windows integration, AlphaZIP lets you do more in less time! Working with archives has never been easier! All archive operations... [Click Here to Download]

Administrivia

Tech Help and How To


Some Salesmen Don?t Know When to Shut Up (or Time to Give It a Rest)

Libertarians Suggest Nobel Announcements be Moved to April Fool?s Day

More and More Fees from the Airlines

nVidia ? Between a Rock and A Hard Place

KipKay: The Halloween Blood Spurting Knife Wound

Hey, Let?s Bomb the Moon!

Solaris 10 (10/09) ? Get It While You Can

President Giveaway Gets A Nobel

Barack Obama needs a peace prize like Custer needs indiansWe?ve

Stop the Presses! Microsoft Actually Says No to Something

Next Debian Release Will Use FreeBSD Kernel

Windows 7 in for a rough ride?

Android to Become New King of Smart Phones

OK, Once Again ? Who Doesn?t Learn from Their Mistakes?

Yahoo Pushing The Door On Geocities Closed October 26

Mozilla Firefox - Add Colors To Your Tabs

The Work Band

Comcast Malware Alerts

Webkit ? Just the Start of a Good Browser

KipKay: How I Escaped From A Coffin


Subscribe via email

Enter your email address:

Delivered by FeedBurner

Blog Archive