Warning! Warning! Pink Mal-ware Rabbit Approaching!

March 8th, 2010 No Comments   Posted in Crazy IT, What THE |= ?

energizer-bunnyThe U.S. Department of Homeland Security found software for Energizer’s Duo USB battery charger can leave computers vulnerable to attack.

The Duo battery chargers for NiMH batteries are safe, but the software that enables the user to monitor the batteries is infected, PC World reported Monday.

The infected software includes a “backdoor” that allows some computer files to be to be remotely controlled, PC World said.

The trouble begins if the consumer downloads Windows software from the Energizer company website If this was not done or if the consumer uses a Macintosh computer, consumer files are safe.

Consumers were advised to uninstall the infected software, reboot the computers and then go to the System32 directory in Windows. There, consumers were advised to delete “arucer.dll,” the file that is the actual backdoor, PC World said.

Energizer has discontinued the software, but you can still buy the DUO at Amazon for about $20.

  • Share/Bookmark

Hackers can now see all the Files on your System ! IE warning ! Use Chrome :)

February 4th, 2010 No Comments   Posted in Do QA Right!, What THE |= ?

Microsoft today issued a security advisory to acknowledge an information disclosure hole in its Internet Explorer browser and warned that an attacker could exploit the flaw to access files with an already known filename and location.

The vulnerability was first discussed at this week’s Black Hat DC conference by Jorge Luis Alvarez Medina, a security consultant with Core Security Technologies.   Microsoft says the risk is highest for IE users running Windows XP or who have disabled the browser’s Protected Mode feature.

Medina’s  presentation demonstrated how an attacker can read every file of an IE user’s filesystem.  The attack scenario leveraged different design features of Internet Explorer that can be combined to do serious damage.

Here’s more on Medina’s talk from DarkReading’s Kelly Jackson-Higgins:

[Medina] says More »

  • Share/Bookmark

Keep adding those Apps in Facebook….& loose your personal information !

January 21st, 2010 No Comments   Posted in What THE |= ?

Vulnerabilities in the way members authorize the use of third-party applications in Facebook could potentially lead to loss of personal information or even targeted attacks on specific individuals, a security researcher said today.

Nitesh Dhanjani, a well-known security researcher and author of Hacking: The Next Generation, says he has discovered design flaws in Facebook that could allow attackers to collect the personal information of users on the social networking site, and even build profiles of “friends” that might facilitate direct attacks on specific individuals within a company.

The flaws were presented to Facebook in November; Dhanjani has agreed not to release specific code or other details for two weeks while technical staffers at the social networking site continue their efforts to patch the vulnerabilities. Dhanjani says he has begun to speak generally about the problem, without specifics.

The vulnerabilities center around the way Facebook enables users to place third-party applications More »

  • Share/Bookmark

Get Adobe Flash playerPlugin by wpburn.com wordpress themes