Jun 9, 2008

IT-Sec updates...

There has been so much going on, on the IT Security front.

F-Secure shows in a rather simple way how an Adobe Acrobat Reader vulnerability can be used - link
... and they even show how to create such malicious PDFs (considering you got the tools) - link
(links obtained from RHensing's post - here)

Microsoft warned about an Apple Safari for Windows issue - link
... but then a researcher wrote that the issue is just the tip of the iceberg and an IE/Windows vulnerability can be used to propel the issue even further - link

Adobe, according to RHensing, is just increasing its attack surface, almost "just for the fun of adding cool features" by allowing Javascript, and in the future, Flash data to be embedded into PDFs... just great... - link

Kaspersky calls for help to beat a new RansomWare's encryption key, it's REALLY nasty when a virus just encrypts YOUR data, making it unreachable/unreadable and asks for a ransom to decrypt it back - link1 - link2

Some genral simple concepts:
- Adobe Acrobat (Secunia link) as well as Adobe Flash (Secunia link) player from a security point of view, are widely known as swiss cheese ie. have lots of security vulnerabilities, they're always in the (secuurity) news aren't they?
- F-Secure and Kaspersky are top-notch AV vendors (no wonder that several banks propose their customers a discount for products of these two vendors)


n.-

PS: This post's picture was taken from Stuart King's blog post on Computerweekly - link
PPS: I am still... working on trackbacks... my apologies to the affected people

0 comments: