Get up-to-the-minute news and opinions, plus access to a wide assortment of IT security resources that will keep you current and informed.

Keep me logged in Forgot your password?

Please wait...

Please wait...

 Drive-by Download

WordPress gets updated for security issues

April 23, 2012

WordPress installations received a security upgrade on Friday to patch a number of vulnerabilities.
 

Report: Top-ranking websites serve malware, too

April 03, 2012

Visiting a well-trafficked, seemingly trusted website won't necessarily save web surfers from getting malware installed on their computers, according to security firm Barracuda Networks.
 

WordPress attacks try to infect users with dangerous rootkit

February 01, 2012

Automated attackers are trawling the web for vulnerable WordPress blogs so they can silently redirect users to dangerous exploits. So far, however, the number of victims is in the hundreds.
 

Internet Explorer fixes get top billing in Microsoft update

October 11, 2011

Microsoft on Tuesday released eight fixes to address 23 vulnerabilities that lie across its software and operating system components.
 

MySQL.com hacked to distribute malware

September 26, 2011

Visitors to MySQL.com on Monday were greeted with a drive-by download that attempted to silently install malware on their machine.
 

Flash exploits might signal APT activity

June 17, 2011

An Adobe Flash vulnerability that was fixed this week is being leveraged in widespread but targeted drive-by downloads and spear phishing attacks.
 

New Google Chrome version notifies of unpatched plug-ins

April 01, 2011

Google's latest version of Chrome warns users if they are attempting to run a plug-in that is out of date.
 

Ten years of evolving threats: A look back at the impact of notable malicious wares of the past decade

Derek Manky, project manager, Fortinet Fortiguard Labs November 15, 2010

As security firm Fortinet celebrates 10 years in business, Fortiguard Labs took a look at the 10 most intriguing threats during the past decade and showed how their feature sets have evolved, Darwin-like, over time.
 

Active exploits targeting Apple QuickTime 0-day

September 08, 2010

Attackers are now actively exploiting a recently published zero-day vulnerability in Apple QuickTime, security firm Websense disclosed Tuesday.
 

Up to five million parked domains served malware widget

August 16, 2010

An estimated hundreds of thousands to millions of Network Solutions parked domains were actively serving malware to visitors due to an infected widget, according to researchers at a security firm.
 

Report: Some 1.3 million malicious ads served daily

May 18, 2010

An estimated 1.3 million malicious advertisements, or malvertisements, are served to websites each day, according to data gathered by web security firm Dasient. Malvertisements are disguised as legitimate ads and delivered via ad networks to well-known websites. Users can be hit simply by visiting the target website, as 59 percent of malvertisements aim to spread via drive-by download. About 41 percent of malvertisements propagate rogue anti-virus programs, according to Dasient. Additionally, users are twice as likely of getting infected by a malvertisement during the weekend, and the average lifespan of one is 7.3 days. — AM
 

Lada Gaga, Rihanna lyrics sites used to foist Java exploit

April 14, 2010

Soon after a zero-day Sun Java vulnerability was revealed, attackers are launching exploits on the web with their first stop a song lyrics site.