Previous Gnews
Patch Tuesday April – 8 Patches (5 high/critical), Windows, Excel, ISA, IE, HTTP Services MS thru MS May – 1 Patch (critical) Office Other updates, MSRT, Defender Definitions, Junk Mail Filter –MS – MS Office PowerPoint, Remote Execution
Oracle Quarterly Release, 43 bugs patched Apple / OS X Safari / 4 Public Beta Firefox ….blah blah blah monthly update of web browsers sctp_houdini.c, remote kernal exploit Charles Miller, shellcode on iPhone Divx WebPlayer, allows code execution Windows changes AutoRun in wake of ConFicker Holes / Patches
Hacking MS PoC posted to Milw0rm Adobe exploits / PoC posted to Milw0rm PIN Block cracking Cell Phone Treasure, German made Nokia 1100 –Hi-jack one time passwords for bank transactions Dallas Cops get socialed –“Ryan Caskey” rides shotgun while armed Govt. Commissions secure XP configuration –Local policy template?? Mac based bot net, iServices trojan iWork, Photoshop CS4 TippingPoint DVLabs calls out Black Security –GDI+EMF vulnerability (ms I think)
Books
Corp. Hell Oracle acquires Sun Symantec buys Mi5 DHS recruiting WhiteHats Secunia challlenges vendors for standard update API –"90 percent of vulnerabilities on Windows machines are in third-party applications.“ Yahoo drops Geocities Apple / Twitter love tirangle
WTF Pig Breeding Patented
Updates process hacker bind 10 dev begins curuncula - rootkit detection mobiusft forensics Fiddler Screenstamp Charles proxy
Interop, 27 Apr - 2 May / Las Vegas NV Layerone, 17 – 18 May / Pasadena CA MS BlueHat Spring 2008, May / Redmond WA Black Hat USA, 25 – 30 July / Las Vegas NV DefCon, 31 July – 2 Aug / Las Vegas NV
All images scavenged without permission