Author: Avery

  • Macromedia flash player vulnerability

    A severe security vulnerability has been found in versions of the Flash Player prior to 7.0.19.0 Many sites require flash player in order to view various features on the site (depending on the site this ranges from commercials to the site navigation.) A specially crafted swf file on a remote website could allow the attacker to run arbitrary code (anything they want) on the local machine. In other words this could be an avenue for viral/spyware infection or trojan activity.

    (more…)

  • XML-RPC for PHP vulnerability attack attempts

    Incidents.org is reporting on attacks against a recent XML-RPC vulnerability in PHP. This would affect users of PostNuke, Drupal, b2evolution, Xoops, WordPress, PHPGroupWare and TikiWiki. As far as I know there are fixes for each of these in the most recent versions of the software.

    (more…)

  • Microsoft to bundle anti-spyware with vista

    Well it shouldn’t come as a big surprise, but Microsoft is expected to bundle their anti-spyware product (which will be renamed windows defender) with Vista when the next version of the OS ships. It’s probably not a big surprise given the headaches that people have with spyware and the potential for a subscription update service. For most people this will probably be the only anti-spyware application they have.

    (more…)

  • Firefox market share still growing

    This should have made it into the last update, but…. it didn’t.

    According to onestat.com and reported at desktoplinux.com the firefox browser is continuing to make market share gains. Now it stands at around 11% market share worldwide and 14% in the US.

    (more…)

  • Transgaming Cedaga 5 due to arrive Tuesday November 8

    I’ve just made it back over to the Transgaming site to check in on the release date for cedage 5.0 (formerly transgaming winex). It looks as though Tuesday November 8th at 2am (eastern Time zone (utc – 5)) will be the day they’re counting towards. I looked the other day and couldn’t get to their site, so I wondered if the release had already happened. It appears not so, and hopefully they’re bracing their servers for the release.

    (more…)

  • Botnets and spyare

    “It outta be illegal” is the first thing I usually hear as I start the long process of sanitizing a spyware infested windows machine. The fact is some parts of it ARE, some are just ethically questionable. The area that’s against the law is the part that involves tacking control of someone elses computer without their permission, either manually or in an automated way (exploiting a vulnerability to install a trojan or bot.) Today Brian Krebs is reporting on The connection between botnets and spyware at the securityfix.

    (more…)

  • Low power, small, wall mountable pc

    This is something neat I found at the sunbeltblog. Usually I see spyware/security related bits there, but this was different and worth a mention. It appears to be a wall mountable pc around 4-5″ square.

    (more…)

  • Firefox vulnerabilities and 1.5 Release Candidate

    I know there’s been at least one and probably a couple of Mozilla Firefox vulnerabilities announced in the last month or so. There are currently (according to Secunia) 3 unpatched Firefox vulnerabilities.

    (more…)

  • OpenOffice.org 2

    Of course, I alluded to it in my Mandriva 2006 article, OpenOffice.Org 2.0 has officially escaped (been released). Bringing a nice shiny new gui for a database (BASE) a bit quicker load times, lot’s of other improvements.

    (more…)