New security patches have been released by oracle for several products to fix 78 vlnerabilities with different systems, affected applications include Oracle Database Server, Oracle Fusion Middleware, Oracle E-Business Suite, Oracle Supply Chain Products Suite ,Oracle PeopleSoft Products, Oracle JD Edwards Products ,Oracle Sun Products Suite, Oracle Virtualization and Oracle MySQL. By looking at number [...]
Posts Tagged ‘Vulnerabilities & attacks’
Adobe fixes two exploited vulnerabilities
December 19th, 2011
Mourad Ben Lakhoua If you are using Adobe product than there is new update that are going to fix two vulnerabilities can be used by attacker to control windows based system remotely. According to Symantec this bug has been exploited since the first of December by sending malicious PDF to infect users and steal sensitive information from unpatched [...]
Microsoft Windows Phone 7 is Buggy
December 13th, 2011
Mourad Ben Lakhoua Microsoft Windows Phone 7 is vulnerable to new attack where a hacker can reboot the smartphone remotely using a special SMS. Embedded devices are very attractive to hackers as they do not include standard security software and they accept remote instructions. The bug is not executed over SMS only but it is possible to run [...]
More Zero Days in SCADA Systems
October 11th, 2011
Mourad Ben Lakhoua Italian security researcher recently revealed details of several vulnerabilities in the system supervisory control and data acquisition (SCADA) from multiple vendors. Luigi Auriemma has released details and proof of concept code for 6 vulnerabilities affecting popular SCADA systems. Most of the vulnerabilities allow remote code execution, many of them are easy to use,” – says [...]
Remote DoS Vulnerabilty in Apache
August 25th, 2011
Mourad Ben Lakhoua Apache Killer a new exploit that uses a serious Apache vulnerability discovered over 54 months ago, the bug allows hacker to conduct a denial of service attack and turn any web server down. Under certain conditions Apache internally is inefficient at handling such request which ‘explode’ into many 100′s of internal requests for large byte [...]
Wireshark 1.6.1 Malformed IKE Packet DoS
July 28th, 2011
Mourad Ben Lakhoua New vulnerability have been discovered in Wireshark 1.6.1 that affects IKEv1 protocol function proto_tree_add_item() this bug allow to conduct a denial of service attack. This is not the first vulnerability that has been discovered lately in wireshark as in the 18th of April Paul Makowski working for SEI/CERT discovered vulnerability allows a remote user that [...]
60% of Adobe Reader users are Vulnerable
July 15th, 2011
Mourad Ben Lakhoua According to Avast Security Company 6 out of 10 Adobe reader users are having a vulnerable version. This because many people think that by enabling automated update on the operating system they are secures. Adobe application is one of the favorite targets for hackers as attacking vulnerable version can lead to compromise all the system [...]



Posted in
Tags:



