Security

WordPress Security Threat: Old Versions Under Attack

WordPress

There are reports that older versions of WordPress -- now at version 2.8.4, are exposed to security threats.

Two clues provided by Lorelle on WordPress blog that your non-up-to-date WordPress blog is under attack;
1) Strange additions to permalinks, such as example.com/category/post-title/%&(%7B$%7Beval(base64_decode($_SERVER%5BHTTP_REFERER%5D))%7D%7D|.+)&%/ The keywords are “eval” and “base64_decode.” More»

Posted in Open-Source, Security, WordPress | 3 Comments »

Proof-of-Concept Trojan Targets Skype Users

Researchers at TrendLabs have reported the presence of a newly released Proof-of-Concept (PoC) trojan that listens and records your Skype conversations.

Confirmation of the release of this Trojan horse called Trojan.Peskyspy that records VoIP communications, specifically Skype calls comes from Symantec.com. They sympathetically call it the “wiretap Trojan”.
More»

Posted in Multimedia, Open-Source, Security, Ubuntu, Voip, Windows | 1 Comment »

Beware of Fake Firefox Add-On: Adobe Flash Player 0.2

Fake Firefox Spyware Add-on

Security researchers at Trend Micro have discovered the existence of a new spyware that initially pretends to be an Adobe Flash Player update but upon execution creates a Firefox add-on called “Adobe Flash Player 0.2″. If installed this fake Firefox add-on has the capability to monitor the user’s browsing activities, with much regard to the users Google search habits, say the researchers.

All information gathered is forwarded to a third party website http://{BLOCKED}jupdate.com.” The fake add-on is also capable of injecting ads into a Google search results page, that’s just a minor side effect.

via TrendLabs – Firefox Add-on Spies on Google Search Results

Posted in Firefox, Open-Source, Security, Windows | Comments Off on Beware of Fake Firefox Add-On: Adobe Flash Player 0.2

Skype 2.1 Beta for Linux gets High Quality Video and SMS Sending Support

Skype 2.1 beta for Linux - Chat

[Updated screenshots]
It took 1 year and 2 months for Skype 2 for Linux to get an update. Sorry, to say it, but its not fair treatments if you think that Skype for Windows is at version 4.1.

What’s new on Skype 2.1 beta for Linux
Amongst the several incoming features in this beta stand-out four;

– High Quality Video support ~ Already in Skype for windows, Skype High Quality Video is a respectable 640×480 (VGA) resolution at 30fps. This is probably the best resolution size since any higher will require a ton of bandwidth. More»

Posted in Multimedia, Security, Ubuntu, Video, Voip | 4 Comments »

An Unexpected WordPress 2.8.2 Security Patch

WordPress

An unexpected upgrade of the WordPress blogging platform has been released. WordPress 2.8.1 was released roughly two weeks ago, and nobody expected WordPress 2.8.2 to come out so soon.

The upgrade or security patch fixes an XSS vulnerability. The upgrade note says the vulnerability could be exploited this way:

“Comment author URLs were not fully sanitized when displayed in the admin. This could be exploited to redirect you away from the admin to another site”

You are strongly advised to upgrade as soon as possible. You can do it by downloading the WordPress 2.8.2 package and upload via a FTP Client to your server or from Tools -> Upgrade page of your blog’s admin.

Download WordPress 2.8.2

Posted in Open-Source, Security, WordPress | 1 Comment »

  • RSS
  • subscribe
  • twitter