Email Alerts
-
Security fixes on tap for Windows, IE, DirectX
Microsoft plans to release seven security updates Tuesday, including three critical fixes for Windows, DirectX, DirectShow, Windows Media Format Runtime and Internet Explorer. Article
-
Microsoft warns of Windows zero-day
Attackers could exploit a zero-day flaw in Windows' Web Proxy Auto-Discovery (WPAD) feature to access sensitive data, Microsoft warned Monday. Article
-
Mozilla plugs Firefox flaws
Firefox 2.0.0.10 addresses multiple flaws attackers could have exploited to conduct cross-site request forgery attacks and potentially hijack a user's computer. Article
-
IBM Lotus Notes critical flaw affects file viewing
Attackers can exploit the flaw remotely to crash the application or gain access to a victim's machine. Article
-
Exploit code targets Apple QuickTime zero-day
Several security organizations have noted the appearance of exploit code against a zero-day buffer-overflow flaw in Apple's widely used QuickTime media player. Article
-
Information security book excerpts and reviews
Visit the Information Security Bookshelf for book reviews and free chapter downloads. Information Security Book
-
Making the case for Web application vulnerability scanners
If a Web application scanner can find common SQL injection flaws, cross-site scripting vulnerabilities, buffer overflows and dangerous backdoors, then why aren't more enterprises using them? In this tip, Michael Cobb not only examines where the tools... Tip
-
CSI 2007: Developers need Web application security assistance
It's unrealistic to expect Web application developers to become security pros, but industry experts say there are ways to help them create code with fewer problems. Article
-
Apple releases QuickTime security fix
The popular QuickTime multimedia application is afflicted with at least seven security flaws, but Apple has released an update to fix them. Article
-
Can data anonymization ensure the privacy of Web application user data?
There are many regulations requiring an organization to protect the personally identifiable information (PII) that it may collect. In this tip, Michael Cobb explains why it may not be too early for data anonymization techniques to help protect Web ap... Ask the Expert