default security advisory
Microsoft warns of ActiveX attack targetting Access
News Microsoft issued a security advisory on Monday warning about targeted attacks that exploit a hole in the ActiveX control for the Snapshot Viewer in the Microsoft Access database-management system.... [08 Jul 2008]
Cisco Security Advisory: Cisco IOS Secure Shell Denial of Service Vulnerabilities
White Paper The IOS SSH server is an optional service that is disabled by default, but its use is highly recommended as a security best practice for management of Cisco IOS devices. The Secure Shell server (SSH)... [12 Jun 2008]
Cisco Security Advisory: CBOS Web-based Configuration Utility Vulnerability
White Paper Any router in the Cisco 600 series family can be made unresponsive by a large amount of HTTP traffic accessing the web-based configuration utility on the router; additionally the web-based configuration utility is enabled by... [10 Apr 2008]
Cisco plugs DoS hole
News The vulnerabilities are found in a third-party cryptographic library in Cisco IOS, Cisco IOS XR, Cisco PIX and ASA Security Appliances, Cisco Firewall Module and Cisco Unified CallManager products, according to a... [25 May 2007]
Alert over "extremely critical" XML bug
News People running Windows Server 2003 and 2003 Service Pack 1 in the default configuration with the Enhanced Security Configuration turned on aren't affected, Microsoft said. An "extremely critical"... [07 Nov 2006]
Oracle issues hefty security fix
News In addition to the security fixes, Oracle said it has made "significant" changes to an existing tool that checks for default accounts and passwords. As part of its quarterly patch cycle, Oracle on... [19 Apr 2006]
Buggy Windows patch backfires on the security-minded
News Security-conscious Windows users who tweaked the operating system to protect their PCs better are getting hit hardest by a flawed Microsoft patch, experts said on Monday. Those changes aren't common, but have been... [18 Oct 2005]
Critical Windows patch causes 'serious problems'
News A Microsoft patch meant to fix critical security flaws in Windows 2000, Windows XP and Windows Server 2003 is causing trouble for some users, the company said on Friday. The patch was delivered with Microsoft... [17 Oct 2005]
Firefox flaw warning for Linux users
News Users running Firefox on Linux may be vulnerable to a security vulnerability that can be exploited to compromise the user's system. Security firm Secunia warned on Tuesday that a flaw rated as "extremely... [22 Sep 2005]
Microsoft finds malicious attack flaw
News Microsoft has issued an "important" Windows security fix as part of its monthly patch cycle, tackling a script injection vulnerability that could allow an attacker to take over a PC. The software giant has also published... [11 May 2005]
Protect yourself from 'Google hacking'
News Security experts are predicting a massive increase this year in so-called 'Google hacking', where malicious internet users or worms use the search engine to discover resources that are not intended for public consumption. [14 Jan 2005]
Roll over IE...Firefox 1.0 is here
News The Computer Emergency Readiness Team (CERT), the computer threats division of the US Department of Homeland Security, issued an advisory urging Americans to consider ditching IE in favour of its... [09 Nov 2004]
Cisco Security Advisory: Cisco IOS Malformed BGP Packet Causes Reload
White Paper The BGP protocol is not enabled by default, and must be configured in order to accept traffic from an explicitly defined peer. A Cisco device running IOS and enabled for the Border Gateway Protocol (BGP) is vulnerable to... [11 Oct 2004]
Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 Packets
White Paper Processing of IPv4 packets is enabled by default. Cisco routers and switches running Cisco IOS software and configured to process Internet Protocol version 4 (IPv4) packets are vulnerable to a Denial of Service (DoS)... [07 Oct 2004]
Cisco Security Advisory: Cisco IOS Malformed OSPF Packet Causes Reload
White Paper The OSPF protocol is not enabled by default. A Cisco device running Internetwork Operating System (IOS) and enabled for the Open Shortest Path First (OSPF) protocol is vulnerable to a Denial of Service (DoS) attack from... [07 Oct 2004]
Keep updated for stories matching default security advisory via RSS