Apple patches Black Hat SMS attack flaw

On the heels of a Black Hat conference demo of an iPhone hijack via text messages, Apple has shipped an iPhone update with patches for the security flaw. The iPhone OS 3.0.1 update, available only via iTunes, addresses a memory corruption issue in the way the device decodes SMS (text) messages.   Apple warned that [...]

Fake ATM, skimmers found in Las Vegas hotels

A Google security researcher attending the Black Hat/DEFCON conferences in Las Vegas was victimized by a skimming device placed in an ATM at the Rio All-Suite Hotel and Casino. Chris Paget, an RFID security expert who now works on Google’s security team, said he lost $200 to a rigged ATM that also claimed several [...]

Mozilla patches ‘critical’ Firefox flaws

Mozilla has released two advisories to patch serious security flaws in its flagship Firefox Web browser. The vulnerabilities are rated “critical,” meaning they can be exploited by malicious hackers to run harmful code and install software, requiring no user interaction beyond normal browsing.   These issues were separately discussed at last week’s Black [...] [Sponsored] [...]

Compromised Websites: It Can Happen To Anyone

Compromised websites are a sad fact of life on the Internet today, and here’s proof. Last week the website of a major British music producer was compromised, and stayed that way for at least several days. The site is now clean (last checked July 31, 2009) but the lessons to be learned from it remain [...]