Whether you are a large-scale online business or a mom and pop storefront, all merchants can and must have a strong security strategy. With Retail now the number one most targeted industry, accounting for 48 percent of all data breach incidents in 2012 alone, it is crucial for organizations of any size to protect themselves Read more…
Tags: eCommerce, online security, PCI Compliance, PCI DSS, Trust and Safety, trustmark, vulnerability
This blog was updated on January 14. See the end of the file. A new Java zero-day vulnerability is spreading malicious files to infect unprotected users. The threat is dangerous: Just browsing a malicious page or clicking a malicious link in spam is enough to cause an infection when combined with a vulnerable Java version. Read more…
Tags: Blackhole Exploit Kit, Cool Exploit Kit, CVE2013-0422, Exploit Analysis, Exploit-CVE2013-0422, Exploit-CVE2013-0422 Analysis, Exploit-Kits, Java Vulnerability, MBeanInstantiator vulnerability, Nuclear Exploit-Kit, Ransomware, Red Exploit-Kit, vulnerability, Zero-Day, Zero-Day Attack
Exploit kits are toolkits that are used to build malware components such as binaries and scripts. They automate the exploitation of client-side vulnerabilities, targeting browsers and programs. These exploit kits provide an effective way for cybercriminals to distribute malware without the users consent. Among these kits, the Blackhole exploit kit is one of the most Read more…
Tags: Adobe Reader, Exploit Kit, exploits, java, Red Kit, vulnerabilities, vulnerability
On October 12, McAfee Labs learned of proof-of-concept code exploiting a newly patched Flash Player vulnerability. Adobe had patched this vulnerability in its latest security update on October 8. Our research team rapidly responded to this threat with an in-depth analysis of the root cause and the degree of exploitability. This specific vulnerability occurred due Read more…
Tags: 1-day, ActionScript, Adobe, exploitation, Flash Player, vulnerability, Zero-Day
Adobe has recommended that its Flash customers update to the latest version, which addresses a vulnerability (CVE 2012-1535) in the ActiveX component of the Flash player. This flaw could cause the application to crash and potentially allow an attacker to take control of the affected system. Overview of the attack. We have also observed that Read more…
Tags: Adobe Flash, CVE 2012-1535, vulnerability
Microsoft has issued a security advisory that describes a vulnerability in its XML module. McAfee has also observed that the vulnerability is being actively exploited in the wild. The vulnerability exists when the function “msxml3!_dispatchImpl::InvokeHelper” in Microsoft’s XML attempts to access an object in memory that has not been initialized, allowing attacker to execute arbitrary Read more…
Tags: CVE 2012-1889, iframe, Microsoft XML Core Services, uninitialized local variable, vulnerability
On June 1, McAfee Labs discovered a new Microsoft Internet Explorer zero-day attack that is active in the wild and exploits a use-after-free vulnerability. We have successfully reproduced it with the latest IE8 and Windows 7. We have confirmed it’s a zero day and have been working with the Microsoft security team for their solutions. Read more…
Tags: ASLR, exploit, Internet Explorer, java, msvcr71.dll, ROP, use after free, vulnerability, Zero-Day
About 2 months ago, the public got wind of what is thus far one of the largest US data breaches in 2012– and possibly the worst ever suffered by the state of Utah. The state’s Department of Technology Services had some 800,000 personal records (and 280,000 Social Security numbers) compromised in an attack that is Read more…
Tags: breach, Database, firewall, security, sensitive information, server, vulnerability
Welcome back to Security 101. Our New Year’s recess is over, and it’s time to offer another lesson. So far we have discussed vulnerabilities and some types of low-interaction attack vectors. In this lesson we shall continue with attack vectors that require medium or high levels of user interaction to succeed. These attack vectors are Read more…
Tags: online security, online threats, vulnerability, web security
In my last post we discussed the most dangerous kind of vulnerabilities that we classify at McAfee Labs: remote code execution and denial of service. Today, we’ll talk about vulnerabilities that are not so dangerous, those we classify as Medium or Low Risk. These threats still require our attention because they can create a chain Read more…
Tags: attack, malware, security, Security 101, vulnerability
Posts tagged under vulnerability