| |
 |
 |
 |
 |
 |
 |
Welcome to the AusCERT web log, where AusCERT will informally discuss current activity and interesting developments in the area of information security, Internet security and computer network attacks.
This is a channel for the timely release of unstructured information which may not be suited to our standard bulletins or other publications. A trade off of providing timely information is that it may be unverified or contain inaccuracies. However, if the accuracy of information changes or new information comes to light about an issue, we will always endeavour to update our web log.
We welcome comments and corrections of any of the information contained in the blog. Please contact auscert@auscert.org.au to provide feedback.
AusCERT Week in Review for 26th November 2010
- As another relatively slow week of vulnerabilities goes by, I'm sure you're all looking forward to relaxing and unwinding over the weekend. That being said, as security professionals we should never become complacent and let our guard down, as there were still a number of new vulnerabilities discovered and important patches to apply this week.
(26/11/2010)
AusCERT Week in Review for 19th November 2010
- It's been a fairly slow week, however there are still some important updates and patches that need to be applied nonetheless.
(19/11/2010)
AusCERT Week in Review for 12th November 2010
- It's been a relatively busy week, and in case you were a little too busy stressing about your newly increased mortgages with the recent rate rise, there were a number of stand-out updates that you should probably know about!
(12/11/2010)
The fortnight in review - seeing into the future
- Someone mentioned to me a while ago that we always start the week in review with "This week ..." so just to be rebellious I will start with next week.
(05/11/2010)
AusCERT Week in Review for 29th October 2010
- Another busy week is coming to an end, and of course no shortage of vulnerabilities and updates.
(29/10/2010)
AusCERT Week in Review for 22nd October 2010
- AusCERT2011 Call for Papers open and vulnerabilities of the week.
(22/10/2010)
The storm rolls in...
- The patch storm came, it saw, it conquered
(15/10/2010)
Stormclouds on the horizon
- A quiet week but a possible storm ahead
(08/10/2010)
Just another week...
- It's been a typical week in the world of vulnerabilities, but there were a number of updates of note.
(01/10/2010)
What is Return-Oriented Programming?
- Return-Oriented Programming enables an attacker to use non-malicious code maliciously by combining short snippets of benign code already present in the system. But lets take a closer look...
(29/09/2010)
Sabotage of a specific process, in a specific plant -- the Stuxnet goal
-
(27/09/2010)
Iran confirms Stuxnet affected PCs used in nuclear power plant
-
(27/09/2010)
Flash flooding
- Smattering of vuls.
(24/09/2010)
OpenX - website revenue, or website regret?
- A couple of weeks ago we mentioned that we had been receiving a number of reports regarding malware being distributed via advertising networks, or advertising providers. It appears that this particular vector for attack has been increasing over the last twelve months or so as a method of mass infection, affecting hundreds or more websites simultaneously.
(23/09/2010)
Microsoft Adobe and some other Fruit
-
(17/09/2010)
Microsoft September 2010 bulletins
- A compilation of Microsoft bulletins redistributed by AusCERT on September 15
(15/09/2010)
Vulnerabilities vs Garden Weeds
- This week has been full of vulnerabilities (much like the weeds in my
garden). I guess it is time to get out the weed kill...
(10/09/2010)
New Quicktime, iTunes, Chrome, Cisco BGP update and more...
- It's been an interesting week all round with numerous vulnerabilities announced and updates released. Of interest this week were updates from Apple, Google, phpMyAdmin and Cisco.
(03/09/2010)
They just keep coming...
- It's been quite a busy week for vulnerabilities and updates this week, with numerous vendors going public with their vulnerabilities.
(27/08/2010)
Nasty PDFs and Backups go *splat*...
- Well as the end of the week draws close, it has been fairly slow as far as vulnerabilities are concerned.
(20/08/2010)
Microsoft, Apple, Ad Servers and more!
- This week has again been quite busy patch-wise, keeping system admins on their toes getting their products updated.
(13/08/2010)
Microsoft August 2010 bulletins
- A compilation of Microsoft bulletins redistributed by AusCERT on August 11
(12/08/2010)
Vulnerabilities... one of the universal constants
- It's been another busy week for both vendors and vulnerabilities. Administrators everywhere have been busy applying updates for software and hardware from Microsoft, Cisco, Hewlett-Packard and many more.
(06/08/2010)
Browser vulnerabilities abound...
- It's been a relatively busy week for vulnerabilities, and of course it's not unusual for vulnerabilities to be found in web browsers.
(30/07/2010)
NoScript 2.0 is out
- NoScript 2.0 is now available
(29/07/2010)
Malware variants are exploiting the Windows Shell vulnerability
- F-Secure has reported exploitation of the Microsoft Windows Shell vulnerability by other malware variants.
(28/07/2010)
Hard-hitting vuls...
-
(23/07/2010)
Safari Autofill vulnerability
- There's an information disclosure vulnerability in Apple Safari.
(23/07/2010)
Malware targeting Siemens SCADA
- A zero day vulnerability in Microsoft Windows Shell is being actively exploited by malware to target Siemens SCADA products.
(20/07/2010)
Talking about the weather
- Along with the end of another week comes the warming glow of the office
camp fire. Those nice soft crackling noises, nice warm heat, and that
wonderful smell of burning electronics.
(16/07/2010)
Time to recover before the next wave.
- A quiet week passes, but busy times ahead.
(09/07/2010)
Browsing a little safer?
- Another reasonably quiet week, with the most noteworthy of issues for most people unsurprisingly involving browsers.
(02/07/2010)
All quiet on the western front... well, ok... not really
- While it's been a busy week for politics with the announcement of Australia's
first female Prime Minister, it's been reasonably quiet week on the
vulnerability front.
(25/06/2010)
Australian House of Representatives cybercrime report released
-
(22/06/2010)
The steady flow of security patches
- Almost sounds like rain
(18/06/2010)
Previous 1, 2, 3, 4, 5, 6 ... 10, 11, 12 Next
denotes AusCERT member only content.
|
|
 |
 |
 |
 |
 |
 |
|