‘Extremely severe’ vulnerabilities in Opera browser

Opera has released version 9.63 of its browser as a “recommended security upgrade” that fixes at least seven security vulnerabilities, some with serious risk implications. The most serious of the flaws could lead to remote code execution if an Opera user is tricked into surfing to a maliciously rigged Web page.  Two of the [...]

Spammers Come A-Tweeting

Twitter, having recorded a massive 422% growth in traffic in the span of 12 months, is the current darling of Web 2.0 enthusiasts. The downside: its popularity is now also being taken advantage of for malicious purposes. No surprises there. Fake profiles are proliferating in the micro-blogging site, initially annoying legitimate users with follower [...]

Apple plugs 21 Mac OS X security holes

Apple has released a peck of patches to cover at least 21 documented security vulnerabilities affecting Mac OS X users. With its eighth security update for 2008, the company shipped fixes for flaws that could lead to remote code execution and denial-of-service attacks .  The patch batch also covers a range of serious vulnerabilities [...]

Talkback Tuesday: Apple’s AV non-announcement

I was traveling the eastern seaboard all of last week, visiting family, friends, and old work colleagues in Philadelphia, New York, and Boston, so I didn’t have much opportunity to provide feedback to what had become the most heavily discussed blog post I have yet generated.

Two weeks ago, people got all hot and bothered [...]

As attacks escalate, MS readies emergency IE patch

Microsoft is planning to ship an emergency Internet Explorer update tomorrow (December 17) to counter an escalating wave of malware attacks targeting a zero-day browser vulnerability. [ SEE: Hackers exploiting (unpatched) IE 7 flaw to launch drive-by attacks ]

The out-of-band update, which will be rated critical, follows the public discovery of password-stealing Trojans exploiting [...]