Firefox 3.0.7 released

Mozilla has released version 3.0.7 of Firefox. This release fixes several issues found in the previous version. The most critical item fixed is the problem of a crash causing memory corruption. For release notes click here

Microsoft Updates

Overview of the February 2009 Microsoft patches and their status. 2 critical and 2 important updates MS09-002 Cumulative MSIE patch, adds fixes for multiple vulnerabilities that lead to random code execution with the rights of the logged on user Replaces MS08-073 and MS08-078. MS09-003 Multiple vulnerabilities allow code execution and DoS. Replaces MS08-039. MS09-004 An […]

Sighting of Kido Worm

The worm spread by exploiting the RPC vulnerability MS08-067, It also attempted to brute-force user passwords when connecting to the ADMIN$ share of systems on the local network.

Microsoft Updates

Overview of the January 2009 Microsoft patches and their status. MS09-001 Vulnerabilities in SMB Could Allow Remote Code Execution.

DNS poisoning vector

The Internet Systems Consortium has released an update for all supported BIND 9.x versions. In this update a potential DNS poisoning vector has been addressed. The problem appears to affect only specific BIND configuration where DNSSEC has been enabled. Refer to the ISC BIND Server software Index

Christmas Ecard Malware

Beware of e-mails consist of a hyperlink to a “Christmas card”. If a user visits this site, he will see the following. The user will need to click on either button, get a Security Warning and will need to accept the fact that an executable is being run.

AVAR 2008 International Conference hosted in India

New Delhi, 11th December 2008: Quick Heal Technologies hosted Asia’s Premier Information Security Conference – Association of Anti-Virus Asia Researchers (AVAR 2008 International Conference) for the very first time in New Delhi, India. AVAR 2008 was a unique three day event showcasing the latest technologies in Information Security and Anti – Malware Industry. In fact, […]

Out of band Microsoft Patch

Microsoft has announced that they will be releasing an out of cycle security bulletin tomorrow for the IE zero day vulnerability being exploited. Click here for more information. Many site were discovered hosting the exploit code, which were injected using SQL Injection attacks. The site pages were having links to exploit hosting site and some […]

Microsoft Updates

Overview of the December 2008 Microsoft patches and their status. 8 crtical and important updates have been covered. MS08-070 Multiple vulnerabilities in activeX controls from visual basic 6.0’s runtime allow random code execution. Also affects Visual studio, Foxpro, Frontpage, and MS Project. The vulnerable files are distributed with 3rd party applications as well. MS08-071 Multiple […]

Mumbai in Spam and Scams

As Mumbai is under terrorist attack, like other major events, this one caught a lot of media coverage, which opens a door for people who likes to make money on tragedies like this. Over the last few days Internet community saw a spike on domains related to the Mumbai attack. Be vigilant, as always…