flaw
Avoiding the next Northern Rock
Comment This worked for a while but the fatal flaw was the assumption that limitless liquidity would be available in the markets, at cheap rates indefinitely. The banking and finance sector can take months to spot that things... [15 Oct 2007]
eBay Hacks: Withhold Feedback
White Paper The biggest flaw (and in some ways, the biggest strength) of eBay's feedback system is the risk of retaliation. One leaves negative or neutral feedback for someone, and they will - without considering the circumstances... [10 Oct 2007]
Gmail cookie flaw 'puts email at risk'
News Petko Petkov of ethical hacking group GNUCitizen has developed a proof-of-concept program to steal contacts and incoming emails from Google Gmail users. Pure Hacking security researcher Chris Gatford said: "This can be used to forward... [27 Sep 2007]
Escape the data management minefield
Comment And this flaw wasn't caused by an errant employee with a grudge or a hacker on a mission. The public sector's data management is looking increasingly like Swiss cheese - full of holes. Paul Bentham explains how this is... [13 Sep 2007]
Hacking a Mac 'just works', says researcher
News A flaw in any one of these could be easily exploited over the web. Miller said his formula for finding a zero-day flaw on a Mac is this: "Find an open source package that they use that's out of date -... [14 Aug 2007]
Microsoft to patch critical trio
News The sixth patch is for a "moderate" Windows Vista flaw. Microsoft will fix three critical security holes, and three other flaws, in tomorrow's scheduled patch release. The critical holes, all of which could allow a... [09 Jul 2007]
Microsoft patches 'the class of 2007'
News Last month's Microsoft patches included a fix for a zero-day flaw in Windows that also affected Vista. This includes an expected patch for a flaw in the Windows domain name system, or DNS. The Word... [09 May 2007]
Microsoft primes DNS fix for Patch Tuesday
News Microsoft is planning to release seven security bulletins on Tuesday, including a fix for a zero-day flaw in Windows that is already being used in cyber attacks. The bulletins, part of Microsoft's monthly patch cycle,... [04 May 2007]
Apple fixes 'hack-a-Mac hole'
News Apple has released a QuickTime update to fix a security flaw that was used to breach a MacBook Pro at a recent security conference. Security monitoring company Secunia deems the flaw "highly critical",... [02 May 2007]
Photoshop invaded by critical flaw
News Exploit code that could take advantage of a "highly critical" security flaw in the most recent versions of Adobe Photoshop has been published, a security researcher reported. The security flaw affects... [27 Apr 2007]
Malicious code getting harder to spot
News But an attack could also lurk on a trusted site by exploiting a common flaw known as cross-site scripting. Cyber crooks who rig websites to break into PCs are getting better at hiding their malicious code, a security... [19 Apr 2007]
Microsoft warns of 'critical' Windows flaw
News Cyber crooks are using a yet-to-be-patched security flaw in certain Windows versions to attack computers running the operating systems, Microsoft has warned. Windows XP and Windows Vista are not impacted by the DNS... [13 Apr 2007]
Office at risk from bug trio
News Karthik Raman, a McAfee researcher wrote on the blog: "There is one heap-overflow flaw that might be exploited for code execution. Microsoft did not deliver any patches for Office on Tuesday, despite two vulnerabilities... [11 Apr 2007]
Microsoft patches hasty patch
News Microsoft is set to today push out a fix to repair problems caused by last week's emergency cursor flaw patch. The fix will be delivered as a "high priority" update alongside Microsoft's regular security updates,... [10 Apr 2007]
Apple nails down AirPort problems
News The update also fixes a security flaw that exposes file names on a password-protected disk attached to the device, it said. Apple has released a software update that addresses a pair of security problems in its latest... [10 Apr 2007]
