<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; vulnerability</title>
	<atom:link href="http://www.ghacks.net/tag/vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 10 Nov 2009 01:33:24 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Adobe Fixes Critical Shockwave Vulnerability</title>
		<link>http://www.ghacks.net/2009/06/25/adobe-fixes-critical-shockwave-vulnerability/</link>
		<comments>http://www.ghacks.net/2009/06/25/adobe-fixes-critical-shockwave-vulnerability/#comments</comments>
		<pubDate>Thu, 25 Jun 2009 06:51:09 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[adobe flash]]></category>
		<category><![CDATA[adobe shockwave]]></category>
		<category><![CDATA[security vulnerability]]></category>
		<category><![CDATA[shockwave]]></category>
		<category><![CDATA[shockwave update]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=13844</guid>
		<description><![CDATA[Adobe has issues a security patch for their Adobe Shockwave software program that fixes on vulnerability that has been rated critical. The vulnerability gives attackers, who can attack systems remotely, control over affected computer systems. The interesting aspect of the issued patch is that Adobe recommends to completely uninstall Adobe Shockwave 11.5.0.596 or earlier on [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.ghacks.net/wp-content/uploads/2009/06/adobe_shockwave.jpg" alt="adobe shockwave" title="adobe shockwave" width="100" height="100" class="alignleft size-full wp-image-13845" />Adobe has issues a security patch for their Adobe Shockwave software program that fixes on vulnerability that has been rated critical. The vulnerability gives attackers, who can attack systems remotely, control over affected computer systems. The interesting aspect of the issued patch is that Adobe recommends to completely uninstall Adobe Shockwave 11.5.0.596 or earlier on their computer systems before installing the latest version of the software product in which the security vulnerability has been fixed.</p>
<p>To secure a computer system running Adobe Shockwave a user would therefor have to uninstall Adobe Shockwave, perform a system restart and install the latest version of Shockwave after the reboot.</p>
<p><span id="more-13844"></span>The Security Bulletin that has been published at the Adobe website gives little information about the vulnerability other than it can be remotely exploited and that it only affects the Microsoft Windows operating system. Users are encouraged to download the latest version of Adobe Shockwave on the <a href="http://get.adobe.com/shockwave/">program&#8217;s</a> website.</p>
<p>It should also be noted that this vulnerability targets only Adobe Shockwave and not Adobe Flash. Thanks goes to Dante for sending me the information per email.</p>

	Tags: <a href="http://www.ghacks.net/tag/adobe/" title="adobe" rel="tag">adobe</a>, <a href="http://www.ghacks.net/tag/adobe-flash/" title="adobe flash" rel="tag">adobe flash</a>, <a href="http://www.ghacks.net/tag/adobe-shockwave/" title="adobe shockwave" rel="tag">adobe shockwave</a>, <a href="http://www.ghacks.net/tag/security-vulnerability/" title="security vulnerability" rel="tag">security vulnerability</a>, <a href="http://www.ghacks.net/tag/shockwave/" title="shockwave" rel="tag">shockwave</a>, <a href="http://www.ghacks.net/tag/shockwave-update/" title="shockwave update" rel="tag">shockwave update</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/12/08/game-for-the-weekend-3-isketch/" title="Game for the Weekend 3 iSketch (December 8, 2006)">Game for the Weekend 3 iSketch</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/10/08/adobe-flash-player-clickjacking-vulnerability/" title="Adobe Flash Player Clickjacking Vulnerability (October 8, 2008)">Adobe Flash Player Clickjacking Vulnerability</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/09/06/youd-be-stupid-not-to/" title="You&rsquo;d be Stupid Not To&hellip; (September 6, 2008)">You&rsquo;d be Stupid Not To&hellip;</a> (31)</li>
	<li><a href="http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/" title="You better stop using Internet Explorer for now (June 27, 2008)">You better stop using Internet Explorer for now</a> (18)</li>
	<li><a href="http://www.ghacks.net/2008/05/28/vulnerabilities-in-latest-flash-version/" title="Vulnerabilities in latest Flash version (May 28, 2008)">Vulnerabilities in latest Flash version</a> (4)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2009/06/25/adobe-fixes-critical-shockwave-vulnerability/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>New Attack: Combine Files With Jar Scripts</title>
		<link>http://www.ghacks.net/2008/08/01/new-attack-combine-files-with-jar-scripts/</link>
		<comments>http://www.ghacks.net/2008/08/01/new-attack-combine-files-with-jar-scripts/#comments</comments>
		<pubDate>Fri, 01 Aug 2008 16:22:34 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Browsing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[browser]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[gifar]]></category>
		<category><![CDATA[jar]]></category>
		<category><![CDATA[jar gif]]></category>
		<category><![CDATA[java]]></category>
		<category><![CDATA[java applets]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=5782</guid>
		<description><![CDATA[A new attack, dubbed Gifar by their creators named after the two file types that they mixed to create the attack (Gif and Jar), was mentioned in a Black Hat Sneak Preview article over at ZDnet. While not everything was revealed in that preview article it mentioned that the developers were able to combine two [...]]]></description>
			<content:encoded><![CDATA[<p>A new attack, dubbed Gifar by their creators named after the two file types that they mixed to create the attack (Gif and Jar), was mentioned in a Black Hat Sneak Preview article over at <a href="http://blogs.zdnet.com/security/?p=1619">ZDnet</a>. While not everything was revealed in that preview article it mentioned that the developers were able to combine two file types like the previously mentioned gif and jar files so that the first, container file type, would be shown normally in the browser but that the Java applet would be executed at the same time.</p>
<p>Many file and image hosts filter dangerous file types. If you tried to upload a Jar file to most of them you would get an error message stating that the file type was not supported. Many however fail to analyze the file itself and simply reject files based on their extension which opens the door for this attack.</p>
<p>That&#8217;s a pretty dangerous exploit. Imagine someone who uses this to upload a new avatar to popular websites like <a href="http://www.ghacks.net/2009/10/17/facebook-login/">Facebook</a> or Myspace (two examples, I have not checked if the two use advanced upload filters). He could do all sorts of things with the Java Applet once users open up his profile page.</p>
<p><span id="more-5782"></span>The only valid defense against this type of attack is to disable Java on the computer for the moment. Sun is already working on a fix although the researchers say that it is not Sun&#8217;s fault that this vulnerability exists.</p>

	Tags: <a href="http://www.ghacks.net/tag/browser/" title="browser" rel="tag">browser</a>, <a href="http://www.ghacks.net/tag/exploit/" title="exploit" rel="tag">exploit</a>, <a href="http://www.ghacks.net/tag/gifar/" title="gifar" rel="tag">gifar</a>, <a href="http://www.ghacks.net/tag/jar/" title="jar" rel="tag">jar</a>, <a href="http://www.ghacks.net/tag/jar-gif/" title="jar gif" rel="tag">jar gif</a>, <a href="http://www.ghacks.net/tag/java/" title="java" rel="tag">java</a>, <a href="http://www.ghacks.net/tag/java-applets/" title="java applets" rel="tag">java applets</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2007/03/31/send-windows-to-nirvana-with-an-animated-cursor/" title="Send Windows to Nirvana with an animated cursor (March 31, 2007)">Send Windows to Nirvana with an animated cursor</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/" title="You better stop using Internet Explorer for now (June 27, 2008)">You better stop using Internet Explorer for now</a> (18)</li>
	<li><a href="http://www.ghacks.net/2009/03/06/windows-xp-default-internet-browser-per-user-profile/" title="Windows XP: Default Internet Browser Per User Profile (March 6, 2009)">Windows XP: Default Internet Browser Per User Profile</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/06/13/which-will-it-be-opera-firefox-ie/" title="Which will it be ? Opera ? Firefox ? IE ? (June 13, 2008)">Which will it be ? Opera ? Firefox ? IE ?</a> (38)</li>
	<li><a href="http://www.ghacks.net/2009/03/13/web-browser-firefox-31-beta-3/" title="Web Browser: Firefox 3.1 Beta 3 (March 13, 2009)">Web Browser: Firefox 3.1 Beta 3</a> (4)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/08/01/new-attack-combine-files-with-jar-scripts/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Are you running the latest browser version?</title>
		<link>http://www.ghacks.net/2008/07/04/are-you-running-the-latest-browser-version/</link>
		<comments>http://www.ghacks.net/2008/07/04/are-you-running-the-latest-browser-version/#comments</comments>
		<pubDate>Fri, 04 Jul 2008 15:00:22 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[The Web]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[opera]]></category>
		<category><![CDATA[internet-explorer]]></category>
		<category><![CDATA[safari]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[web threat]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=5211</guid>
		<description><![CDATA[In a recently released research paper Stefan Frei, Thomas Dübendorfer, Gunter Ollmann and Martin May analyzed Google Search Engine logs between January 2007 and June 2008 to understand the web browser threat. The research paper brought up some interesting figures including worldwide browser usage, number of users with the latest version of the browser and [...]]]></description>
			<content:encoded><![CDATA[<p>In a recently released research <a href="http://www.techzoom.net/publications/insecurity-iceberg/index.en">paper</a> Stefan Frei, Thomas Dübendorfer, Gunter Ollmann and Martin May analyzed Google Search Engine logs between January 2007 and June 2008 to understand the web browser threat. The research paper brought up some interesting figures including worldwide browser usage, number of users with the latest version of the browser and the share of the most secure browser version.</p>
<p>According to their research <a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a> is leading the field with a market share of 78.3% followed by <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> with 16.1%, Safari with 3.4% and <a href="http://www.ghacks.net/category/browsing/opera/">Opera</a> with 0.8%. This means in daily numbers 1108 million Internet Explorer, 227 million Firefox, 48 million Safari and 11 million Opera browsers.</p>
<p>If you analyze that data to find out how many of the users are using the latest version of the browser the picture changes drastically and provides another explanation why Internet Explorer is still the number one target for malicious software.</p>
<p><span id="more-5211"></span>Only 52.5% of all Internet Explorer users are running the latest browser version compared to 92.2% of all Firefox users, 90.1% of the Opera users and 70.2% of the Safari users. The numbers are assuming that the latest version of the browser is the most secure one. </p>
<p>This leads to my initial question. Are you running the latest browser version of the browser that you are using ?</p>

	Tags: <a href="http://www.ghacks.net/tag/firefox/" title="firefox" rel="tag">firefox</a>, <a href="http://www.ghacks.net/tag/internet-explorer/" title="internet-explorer" rel="tag">internet-explorer</a>, <a href="http://www.ghacks.net/tag/opera/" title="opera" rel="tag">opera</a>, <a href="http://www.ghacks.net/tag/safari/" title="safari" rel="tag">safari</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a>, <a href="http://www.ghacks.net/tag/web-threat/" title="web threat" rel="tag">web threat</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/" title="You better stop using Internet Explorer for now (June 27, 2008)">You better stop using Internet Explorer for now</a> (18)</li>
	<li><a href="http://www.ghacks.net/2009/04/04/xenocode-web-browser-sandbox/" title="Xenocode Web Browser Sandbox (April 4, 2009)">Xenocode Web Browser Sandbox</a> (0)</li>
	<li><a href="http://www.ghacks.net/2009/03/21/web-browser-popularity/" title="Web Browser Popularity (March 21, 2009)">Web Browser Popularity</a> (51)</li>
	<li><a href="http://www.ghacks.net/2009/06/21/web-browser-memory-usage-benchmark-gets-it-all-wrong/" title="Web Browser Memory Usage Benchmark Gets It All Wrong (June 21, 2009)">Web Browser Memory Usage Benchmark Gets It All Wrong</a> (15)</li>
	<li><a href="http://www.ghacks.net/2009/09/15/web-browser-have-impact-on-battery-life/" title="Web Browser Have Impact On Battery Life (September 15, 2009)">Web Browser Have Impact On Battery Life</a> (1)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/07/04/are-you-running-the-latest-browser-version/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>You better stop using Internet Explorer for now</title>
		<link>http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/</link>
		<comments>http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/#comments</comments>
		<pubDate>Fri, 27 Jun 2008 08:02:27 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Browsing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[opera]]></category>
		<category><![CDATA[internet explorer exploit]]></category>
		<category><![CDATA[internet-explorer]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=5126</guid>
		<description><![CDATA[A security vulnerability came to light recently that affects Internet Explorer 6, Internet Explorer 7 and even Internet Explorer 8 that can be used to record keystrokes of a user even if he is switching domains. That means that a specifically prepared website can launch some Javascript that records everything the user does afterwards including [...]]]></description>
			<content:encoded><![CDATA[<p>A security vulnerability came to light recently that affects <a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a> 6, Internet Explorer 7 and even Internet Explorer 8 that can be used to record keystrokes of a user even if he is switching domains. That means that a specifically prepared website can launch some Javascript that records everything the user does afterwards including text input which naturally means usernames and passwords as well.</p>
<p>Sounds scary ? There is no fix for this vulnerability yet other than to disable Javascript or allow it only on trusted domains. Some researchers claim that other browsers are affected as well but have failed to deliver proof for those claims yet. It would not hurt however to use the <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> add-on <a href="https://addons.mozilla.org/en-US/firefox/addon/722">No Script</a> for instance.</p>
<p>The vulnerability can be tested on this <a href="http://sirdarckcat.blogspot.com/2008/05/ghosts-for-ie8-and-ie75730.html">page</a> if you visit it with Internet Explorer. It opens a new window and records the user input on that domain. There is an <a href="http://sirdarckcat.blogspot.com/2008/05/browsers-ghost-busters.html">explanation</a> from the same researcher available.</p>
<p><span id="more-5126"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/firefox/" title="firefox" rel="tag">firefox</a>, <a href="http://www.ghacks.net/tag/internet-explorer-exploit/" title="internet explorer exploit" rel="tag">internet explorer exploit</a>, <a href="http://www.ghacks.net/tag/internet-explorer/" title="internet-explorer" rel="tag">internet-explorer</a>, <a href="http://www.ghacks.net/tag/javascript/" title="javascript" rel="tag">javascript</a>, <a href="http://www.ghacks.net/tag/opera/" title="opera" rel="tag">opera</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/07/04/are-you-running-the-latest-browser-version/" title="Are you running the latest browser version? (July 4, 2008)">Are you running the latest browser version?</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/04/04/xenocode-web-browser-sandbox/" title="Xenocode Web Browser Sandbox (April 4, 2009)">Xenocode Web Browser Sandbox</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/06/24/why-you-should-restrict-cookie-access/" title="Why you should restrict Cookie Access (June 24, 2008)">Why you should restrict Cookie Access</a> (4)</li>
	<li><a href="http://www.ghacks.net/2009/03/21/web-browser-popularity/" title="Web Browser Popularity (March 21, 2009)">Web Browser Popularity</a> (51)</li>
	<li><a href="http://www.ghacks.net/2009/06/21/web-browser-memory-usage-benchmark-gets-it-all-wrong/" title="Web Browser Memory Usage Benchmark Gets It All Wrong (June 21, 2009)">Web Browser Memory Usage Benchmark Gets It All Wrong</a> (15)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/feed/</wfw:commentRss>
		<slash:comments>18</slash:comments>
		</item>
		<item>
		<title>VLC Player Vulnerability</title>
		<link>http://www.ghacks.net/2008/03/19/vlc-player-vulnerability/</link>
		<comments>http://www.ghacks.net/2008/03/19/vlc-player-vulnerability/#comments</comments>
		<pubDate>Tue, 18 Mar 2008 23:22:13 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Music and Video]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[video players]]></category>
		<category><![CDATA[vlc]]></category>
		<category><![CDATA[vlc media player]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/03/19/vlc-player-vulnerability/</guid>
		<description><![CDATA[Torrentfreak are reporting that two vulnerabilities have been discovered in VLC Player which allow execution of arbitrary code. The second vulnerability has already been fixed in the newest version of VLC which is available for download on the developers homepage. The first vulnerability however can be exploited to cause stack-based buffer overflows when loading subtitles [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://torrentfreak.com/vlc-player-vulnerable-remote-hijack-080318/">Torrentfreak</a> are reporting that two vulnerabilities have been discovered in VLC Player which allow execution of arbitrary code. The second vulnerability has already been fixed in the newest version of VLC which is available <a href="http://www.videolan.org/vlc/">for</a> download on the developers homepage. The first vulnerability however can be exploited to cause stack-based buffer overflows when loading subtitles in VLC.</p>
<p>The solution <a href="http://secunia.com/advisories/28233/">given</a> by the security company that discovered the vulnerability is to load only subtitles from trusted source or no subtitles at all until an official fix has been posted by the developers ov VLC.</p>
<p>Another option would be to switch to another player for the time being. <a href="http://smplayer.sourceforge.net/">SMPlayer</a>, my favorite player, is another good choice which does not have this vulnerability.</p>
<p><span id="more-3553"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/video-players/" title="video players" rel="tag">video players</a>, <a href="http://www.ghacks.net/tag/vlc/" title="vlc" rel="tag">vlc</a>, <a href="http://www.ghacks.net/tag/vlc-media-player/" title="vlc media player" rel="tag">vlc media player</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/07/07/vlc-media-player-1-0-released/" title="VLC Media Player 1.0 Released (July 7, 2009)">VLC Media Player 1.0 Released</a> (9)</li>
	<li><a href="http://www.ghacks.net/2006/05/04/vlc-media-player/" title="VLC Media Player (May 4, 2006)">VLC Media Player</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/03/31/send-windows-to-nirvana-with-an-animated-cursor/" title="Send Windows to Nirvana with an animated cursor (March 31, 2007)">Send Windows to Nirvana with an animated cursor</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/" title="You better stop using Internet Explorer for now (June 27, 2008)">You better stop using Internet Explorer for now</a> (18)</li>
	<li><a href="http://www.ghacks.net/2008/05/07/yahoo-marks-dangerous-search-results/" title="Yahoo marks dangerous search results (May 7, 2008)">Yahoo marks dangerous search results</a> (4)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/03/19/vlc-player-vulnerability/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Real Player Internet Explorer vulnerability</title>
		<link>http://www.ghacks.net/2008/03/13/real-player-internet-explorer-vulnerability/</link>
		<comments>http://www.ghacks.net/2008/03/13/real-player-internet-explorer-vulnerability/#comments</comments>
		<pubDate>Thu, 13 Mar 2008 12:32:17 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Browsing]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[internet explorer vulnerability]]></category>
		<category><![CDATA[internet-explorer]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[real player]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/03/13/real-player-internet-explorer-vulnerability/</guid>
		<description><![CDATA[Internet Explorer with an installed version of Real Player beware. A vulnerability has been discovered recently which could allow remote code execution. According to Zdnet users should either switch browsers for the time until an patch is released or disabling killbits for two Active X classes. They forgot to mention the third option which would [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a> with an installed version of Real Player beware. A vulnerability <a href="http://www.zdnet.com.au/news/software/soa/RealPlayer-flaw-Stop-using-Internet-Explorer/0,130061733,339286701,00.htm?feed=rss">has</a> been discovered recently which could allow remote code execution. According to Zdnet users should either switch browsers for the time until an patch is released or disabling killbits for two Active X classes. They forgot to mention the third option which would be to uninstall Real Player (temporarily).</p>
<p>Affected are all Real Player versions running under Internet Explorer. Microsoft <a href="http://support.microsoft.com/default.aspx?scid=kb;en-us;240797&#038;sd=tech">has</a> an article up that explains Killbits and what they do. They basically prevent Active X controls from being loaded in Internet Explorer. I still would recommend to either switch to <a href="http://www.ghacks.net/tag/firefox/">Firefox</a> or <a href="http://www.ghacks.net/category/browsing/opera/">Opera</a> temporarily or uninstall Real Player for the time until a security patch has been created.</p>
<blockquote><p>Researcher Elazar Broad has posted to the Full Disclosure mailing list a so-called heap overflow vulnerability that makes it possible for an attacker to modify heap blocks after they are freed and overwrite certain registers.</p></blockquote>
<p><span id="more-3502"></span>The killbits that should be disabled are the following:</p>
<ul>
<li>2F542A2E-EDC9-4BF7-8CB1-87C9919F7F93</li>
<li>
CFCDAA03-8BE4-11CF-B84B-0020AFBBCCFA</li>
</ul>
<p>This will definitely have the effect that some Real Player functions will stop working properly.</p>

	Tags: <a href="http://www.ghacks.net/tag/internet-explorer-vulnerability/" title="internet explorer vulnerability" rel="tag">internet explorer vulnerability</a>, <a href="http://www.ghacks.net/tag/internet-explorer/" title="internet-explorer" rel="tag">internet-explorer</a>, <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/real-player/" title="real player" rel="tag">real player</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/07/28/microsoft-internet-explorer-security-update/" title="Microsoft Internet Explorer Security Update (July 28, 2009)">Microsoft Internet Explorer Security Update</a> (3)</li>
	<li><a href="http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/" title="You better stop using Internet Explorer for now (June 27, 2008)">You better stop using Internet Explorer for now</a> (18)</li>
	<li><a href="http://www.ghacks.net/2007/10/06/validation-removed-from-internet-explorer-7/" title="Validation removed from Internet Explorer 7 (October 6, 2007)">Validation removed from Internet Explorer 7</a> (5)</li>
	<li><a href="http://www.ghacks.net/2008/08/30/use-multiple-internet-explorer-versions-simultaneously/" title="Use Multiple Internet Explorer Versions Simultaneously (August 30, 2008)">Use Multiple Internet Explorer Versions Simultaneously</a> (10)</li>
	<li><a href="http://www.ghacks.net/2008/08/29/uninstall-internet-explorer-8/" title="Uninstall Internet Explorer 8 (August 29, 2008)">Uninstall Internet Explorer 8</a> (33)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/03/13/real-player-internet-explorer-vulnerability/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>DOS Vulnerability in uTorrent and Bittorrent</title>
		<link>http://www.ghacks.net/2008/01/17/dos-vulnerability-in-utorrent-and-bittorrent/</link>
		<comments>http://www.ghacks.net/2008/01/17/dos-vulnerability-in-utorrent-and-bittorrent/#comments</comments>
		<pubDate>Thu, 17 Jan 2008 20:16:16 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[P2p]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[bittorrent]]></category>
		<category><![CDATA[utorrent]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2008/01/17/dos-vulnerability-in-utorrent-and-bittorrent/</guid>
		<description><![CDATA[A vulnerability in uTorrent and Bittorrent, which is using uTorrent's core, was discovered today that effects the BitTorrent 6.0 client,
uTorrent 1.7.x, uTorrent 1.6.x and uTorrent 1.8-alpha-7834. The Denial of Service vulnerability is made possible by the way the clients handle user data.]]></description>
			<content:encoded><![CDATA[<p>A vulnerability in uTorrent and Bittorrent, which is using uTorrent&#8217;s core, was <a href="http://aluigi.altervista.org/adv/ruttorrent-adv.txt">discovered</a> today that effects the BitTorrent 6.0 client,<br />
uTorrent 1.7.x, uTorrent 1.6.x and uTorrent 1.8-alpha-7834. The Denial of Service vulnerability is made possible by the way the clients handle user data.</p>
<p>Basically said, uTorrent will crash if a user connects to it that sends a software version that is to long to be handled. This results in a crash of uTorrent. The attacker does not need to use Bittorrent at all to do that, a connection to the port that is being used by Bittorrent sending the to-long software version and a valid torrent hash is enough.</p>
<p>Code execution on the other hand is not possible. The uTorrent team reacted in less than one day and published a new version of their software <a href="http://forum.utorrent.com/viewtopic.php?id=29330">1.7.6</a> that handles the DOS vulnerability and three minor issues as well. </p>
<p><span id="more-2896"></span>While it is not very likely that someone will actually exploit the vulnerability it is still advised to update immediately.</p>
<p>via <a href="http://torrentfreak.com/bittorrent-clients-vulnerable-to-remote-dos-attack-080117/">Torrentfreak</a></p>

	Tags: <a href="http://www.ghacks.net/tag/bittorrent/" title="bittorrent" rel="tag">bittorrent</a>, <a href="http://www.ghacks.net/tag/utorrent/" title="utorrent" rel="tag">utorrent</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2009/10/27/utorrent-error-access-is-denied-windows-7/" title="uTorrent Error: Access is Denied Windows 7 (October 27, 2009)">uTorrent Error: Access is Denied Windows 7</a> (15)</li>
	<li><a href="http://www.ghacks.net/2009/01/10/utorrent-download-accelerator/" title="uTorrent Download Accelerator (January 10, 2009)">uTorrent Download Accelerator</a> (20)</li>
	<li><a href="http://www.ghacks.net/2009/08/11/utorrent-2-0-beta-released/" title="uTorrent 2.0 Beta Released (August 11, 2009)">uTorrent 2.0 Beta Released</a> (1)</li>
	<li><a href="http://www.ghacks.net/2009/05/07/utorrent-182-final/" title="uTorrent 1.8.2 Final (May 7, 2009)">uTorrent 1.8.2 Final</a> (1)</li>
	<li><a href="http://www.ghacks.net/2006/07/01/utorrent-16-final-released/" title="uTorrent 1.6 final released (July 1, 2006)">uTorrent 1.6 final released</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/01/17/dos-vulnerability-in-utorrent-and-bittorrent/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Send Windows to Nirvana with an animated cursor</title>
		<link>http://www.ghacks.net/2007/03/31/send-windows-to-nirvana-with-an-animated-cursor/</link>
		<comments>http://www.ghacks.net/2007/03/31/send-windows-to-nirvana-with-an-animated-cursor/#comments</comments>
		<pubDate>Sat, 31 Mar 2007 07:23:34 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[ani-vulnerability]]></category>
		<category><![CDATA[animated-cursor]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[vista]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[xp]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2007/03/31/send-windows-to-nirvana-with-an-animated-cursor/</guid>
		<description><![CDATA[One of the many disadvantages of every new Windows edition is the fact that the operating system becomes more and more bloated. Microsoft adds new features to Windows which could then be used to exploit the system.Instead of concentrating on fast efficient systems they produce heavy systems that look shiny but have problems under the surface. Recently a vulnerability in Windows Animated Cursor Handling was discovered. In order for this attack to be carried out, a user must either visit a Web site that contains a Web page that is used to exploit the vulnerability or view a specially crafted e-mail message or email attachment sent to them by an attacker.]]></description>
			<content:encoded><![CDATA[<p>One of the many disadvantages of every new Windows edition is the fact that the operating system becomes more and more bloated. Microsoft adds new features to Windows which could then be used to exploit the system. Instead of concentrating on fast efficient systems they produce heavy systems that look shiny but have problems under the surface. Recently a <a href="http://www.avertlabs.com/research/blog/?p=233" target="_blank">vulnerability</a> in Windows Animated Cursor Handling was discovered. In order for this attack to be carried out, a user must either visit a Web site that contains a Web page that is used to exploit the vulnerability or view a specially crafted e-mail message or email attachment sent to them by an attacker.</p>
<p>You might be interested in which Windows editions are effected and which are not. It would also be nice to know if your browsers and e-mail clients are vulnerable and can be used to exploit the system. <a href="http://www.microsoft.com/technet/security/advisory/935423.mspx" target="_blank">Vulnerable</a> are Windows Vista, Windows XP SP2 and Windows 2000 SP4. Several other Microsoft operating systems are affected as well like Windows Server 2003 but I think the first three cover most Windows editions that my readers use. Exploitation happens completely silently.</p>
<p><span id="more-1365"></span></p>
<p>Take a look at the demonstration video below. It shows how Windows Vista enters a endless Crash-Restart loop caused by a malicious ani file which was dropped on the desktop. Attacks will most likely occur over the Internet.</p>
<p><object width="425" height="350"><param name="movie" value="http://www.youtube.com/v/hf0S0Vk7j6I"></param><param name="wmode" value="transparent"></param><embed src="http://www.youtube.com/v/hf0S0Vk7j6I" type="application/x-shockwave-flash" wmode="transparent" width="425" height="350"></embed></object></p>
<p>A security company has released a <a href="http://research.eeye.com/html/alerts/zeroday/20070328.html" target="_Blank">temporary fix</a> for the solution until an official Microsoft patch gets released.</p>

	Tags: <a href="http://www.ghacks.net/tag/ani-vulnerability/" title="ani-vulnerability" rel="tag">ani-vulnerability</a>, <a href="http://www.ghacks.net/tag/animated-cursor/" title="animated-cursor" rel="tag">animated-cursor</a>, <a href="http://www.ghacks.net/tag/exploit/" title="exploit" rel="tag">exploit</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/vista/" title="vista" rel="tag">vista</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a>, <a href="http://www.ghacks.net/tag/windows/" title="Windows" rel="tag">Windows</a>, <a href="http://www.ghacks.net/tag/xp/" title="xp" rel="tag">xp</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/07/25/vista-part-3/" title="Vista Part 3 (July 25, 2008)">Vista Part 3</a> (19)</li>
	<li><a href="http://www.ghacks.net/2006/11/14/triple-boot-vista-xp-and-ubuntu/" title="Triple Boot Vista, XP and Ubuntu (November 14, 2006)">Triple Boot Vista, XP and Ubuntu</a> (5)</li>
	<li><a href="http://www.ghacks.net/2006/12/06/things-to-check-before-switching-to-vista-part-1/" title="Things to check before switching to Vista Part 1 (December 6, 2006)">Things to check before switching to Vista Part 1</a> (1)</li>
	<li><a href="http://www.ghacks.net/2007/03/18/superfast-shutdown-for-xp-and-vista/" title="Superfast Shutdown for XP and Vista (March 18, 2007)">Superfast Shutdown for XP and Vista</a> (4)</li>
	<li><a href="http://www.ghacks.net/2006/12/07/security-and-privacy-complete/" title="Security and Privacy Complete (December 7, 2006)">Security and Privacy Complete</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2007/03/31/send-windows-to-nirvana-with-an-animated-cursor/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>SQL Injection Attacks by Example</title>
		<link>http://www.ghacks.net/2006/06/06/sql-injection-attacks-by-example/</link>
		<comments>http://www.ghacks.net/2006/06/06/sql-injection-attacks-by-example/#comments</comments>
		<pubDate>Tue, 06 Jun 2006 14:17:25 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[sql]]></category>
		<category><![CDATA[sql attacks]]></category>
		<category><![CDATA[sql injection]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/2006/06/06/sql-injection-attacks-by-example/</guid>
		<description><![CDATA[SQL injection is a security vulnerability that occurs in the database layer of an application. Its source is the incorrect escaping of dynamically-generated string literals embedded in SQL statements. It is in fact an instance of a more general class of vulnerabilities that can occur whenever one programming or scripting language is embedded inside another.]]></description>
			<content:encoded><![CDATA[<p>SQL injection is a security vulnerability that occurs in the database layer of an application. Its source is the incorrect escaping of dynamically-generated string literals embedded in SQL statements. It is in fact an instance of a more general class of vulnerabilities that can occur whenever one programming or scripting language is embedded inside another.</p>
<p><a target="_blank" href="http://www.unixwiz.net/techtips/sql-injection.html"> SQL Injection Attacks by Example</a> gives you a detailed view how experts used the technique to break into a customers system.</p>
<blockquote><p>
<em>&#8220;There have been other papers on SQL injection, including some that are much more detailed, but this one shows the rationale of discovery as much as the process of exploitation.&#8221;</em>
</p></blockquote>
<p><span id="more-543"></span></p>

	Tags: <a href="http://www.ghacks.net/tag/sql/" title="sql" rel="tag">sql</a>, <a href="http://www.ghacks.net/tag/sql-attacks/" title="sql attacks" rel="tag">sql attacks</a>, <a href="http://www.ghacks.net/tag/sql-injection/" title="sql injection" rel="tag">sql injection</a>, <a href="http://www.ghacks.net/tag/vulnerability/" title="vulnerability" rel="tag">vulnerability</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2006/05/16/sql-injection-walkthrough/" title="SQL Injection Walkthrough (May 16, 2006)">SQL Injection Walkthrough</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/06/27/you-better-stop-using-internet-explorer-for-now/" title="You better stop using Internet Explorer for now (June 27, 2008)">You better stop using Internet Explorer for now</a> (18)</li>
	<li><a href="http://www.ghacks.net/2008/03/19/vlc-player-vulnerability/" title="VLC Player Vulnerability (March 19, 2008)">VLC Player Vulnerability</a> (2)</li>
	<li><a href="http://www.ghacks.net/2007/03/31/send-windows-to-nirvana-with-an-animated-cursor/" title="Send Windows to Nirvana with an animated cursor (March 31, 2007)">Send Windows to Nirvana with an animated cursor</a> (1)</li>
	<li><a href="http://www.ghacks.net/2008/03/13/real-player-internet-explorer-vulnerability/" title="Real Player Internet Explorer vulnerability (March 13, 2008)">Real Player Internet Explorer vulnerability</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2006/06/06/sql-injection-attacks-by-example/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
