Paris Hilton’s official web site serving malware

The official web site of Paris Hilton (parishilton.com) has been embedded with a malicious iFrame, automatically exposing visitors to client-side vulnerabilities and banker malware, according to researchers from ScanSafe. Upon closer analysis, it appears that the site has been infected on the 8th of January, Thursday, becoming the very latest legitimate site whose use [...]

RIM warns of BlackBerry PDF processing vulnerabilities

Hackers can use booby-trapped PDF attachments sent to BlackBerry devices to launch malicious code execution attacks, according to warnings issued by Research in Motion (RIM). The company shipped patches this week to address a pair of critical vulnerabilities affecting its enterprise product line. The vulnerabilities are due to the improper processing of PDF files [...]

Scammers Attempt to Score Through the FIFA World Cup

Spammers are really quick on the draw in terms of their schemes. They have already come up with a scam related to the South Africa FIFA World Cup, to be held a year and a half from now. The spammed messages come as a notification to the recipients, telling them that they have won [...]

AVG snaps up Sana Security

One of the last stand-alone host-based intrusion detection product vendors has been picked up by an anti-virus firm. The Redwood City-based HIPS vendor Sana Security has been acquired by the popular AV vendor AVG for an undisclosed sum.  What is HIPS you may ask?  Think of it as a firewall for the operating system kernel [...]

Privacy flaw haunts Apple Safari RSS reader

There’s a major privacy problem with the RSS reader built into Apple’s Safari browser. According to an alert from Brian Mastenbrook, there is a serious Safari vulnerability that allows a malicious web site to read files on a user’s hard drive without user intervention. Mastenbrook warns:

This can be used to gain access to sensitive [...]