# Tags

Android Rougeware targeting “Stevens Creek Software”

We have received a new malicious Android malware which is using the names of popular games and applications published under the name “Stevens Creek Software” to get installed on the user’s mobile. And the interesting thing about this rogueware is that unlike other Android malware which ask for numerous permissions before getting installed, it asks […]

Microsoft January-2012 Patch Tuesday Released

Microsoft has released seven bulletins covering a total of eight vulnerabilities. Only one issue is rated ‘Critical’ and it affects Windows Media. The remaining issues affect Windows, the kernel and Microsoft’s Anti-Cross Site Scripting library. The following vulnerabilities are rated “Critical”: MS12-004 – Vulnerabilities in Windows Media Could Allow Remote Code Execution (2636391) This security […]

Google chrome update

Google Chrome has released a new version, 16.0.912.75, to fix three high severity security issues. The details about these issues can be found at: https://googlechromereleases.blogspot.com/2012/01/stable-channel-update.html Most users will get automatically updated to the latest Chrome version. It is recommended to apply this update if you don’t have version 16.0.912.75.

Indian Cyberspace hit by Kim Jong-II Malware Mails!

It has been observed that cybercriminals are using the name of the North Korean leader Kim Jong-II after his death to target Internet users. Attackers are achieving this by spamming malicious emails containing specially crafted PDF files named “BriefintroductionofKim-Jong-il.pdf” This PDF file has been found to exploit CVE-2010-2883 and CVE-2010-3333 vulnerabilities in Adobe Acrobat reader. […]

Microsoft has released an out-of-band bulletin MS11-100

Microsoft has released an out-of-band bulletin MS11-100 addressing four vulnerabilities. The bulletin is rated by Microsoft as critical and the vulnerabilities are listed as below: – Collisions in HashTable May Cause DoS Vulnerability (CVE-2011-3414) – Insecure Redirect in .NET Form Authentication Vulnerability (CVE-2011-3415) – ASP.Net Forms Authentication Bypass Vulnerability (CVE-2011-3416) – ASP.NET Forms Authentication Ticket […]

Fake Facebook alert for changing their password

Facebook users are being targeted with fake emails pertaining to come from the social network and alerting them to change their password. The emails are sent from the spoofed email address “Facebook (update+{Random Characters}@facebookmail.com) with subjects like: -Security alert. -Your account information. -New notifications. The email comes with one of these attachments: -alert1523230352.zip -alertN75139832.zip -instructions2374870680.zip […]

Microsoft Windows win32k.sys Memory Corruption Vulnerability

A vulnerability has been discovered in Microsoft Windows which can be exploited by malicious parties to potentially compromise a user’s system. The vulnerability is caused due to an error in win32k.sys and can be exploited to corrupt memory via a specially crafted web page containing an IFRAME with an overly large “height” attribute. This is […]

Security Advisory for Adobe Reader and Acrobat!

A critical vulnerability has been identified in Adobe Reader X (10.1.1) and earlier versions for Windows and Macintosh, Adobe Reader 9.4.6 and earlier 9.x versions for UNIX and Adobe Acrobat X (10.1.1) and earlier versions for Windows and Macintosh. This vulnerability (CVE-2011-2462) could cause a crash and potentially allow an attacker to take control of […]