- +
IT people, places and things that matter 24 December, 2007 07:23:06
For their ability to draw your attention, these 10 people, places and things stand out as newsmakers that matterWhat makes a top newsmaker? Sometimes a company generates lots of buzz by doing particularly innovative things, or someone with a catalyzing personality gains notoriety. Other times a hot new product or a spectacular disaster gets the attention of the masses.
Click here for case studies, whitepapers and other useful vendor content Newsletter Subscription
A hacker has posted attack code that exploits critical flaws in the Safari and Internet Explorer Web browsers.
The source code, along with a demo of the attack, was posted Sunday on a computer security blog. It can be used to run unauthorized software on a victim's machine, and could be used by criminals in Web-based computer attacks, security experts say.
Now that there is a public example of the attack code, Safari users running the Windows operating system should be concerned, said Eric Schultze, chief technical officer at Shavlik Technologies. "This is a bad thing. If you've got Safari, you're in trouble," he said.
The Safari bug, originally disclosed on May 15 by security researcher Nitesh Dhanjani, allows attackers to litter a victim's desktop with executable files, an attack known as "carpet bombing."
Two weeks later, security researcher Aviv Raff said that if this flaw is exploited in combination with bugs in Windows and Internet Explorer, attackers can run unauthorized software on a victim's computer.
Apple has reportedly said that it has no plans to patch the Safari flaw, but Microsoft released a security advisory on the problem on May 30, a sign that it may be working on a patch.
Microsoft's advisory says that the vulnerability has to do with the way Windows handles desktop executables and recommends that Windows users "restrict use of Safari as a Web browser until an appropriate update is available from Microsoft and/or Apple."
The attack affects all versions of Windows XP and Vista, Microsoft said in its advisory.
Apple could not be reached for comment on this story. Microsoft Security Response Team members were in meetings and unable to comment on this issue, a spokesman with the company's public relations agency said.
ARN Member Login
When an IT disaster occurs, how handy it would be to push a button and start again as if nothing had happened.
Discover and learn more about CA XOSoft today.
Viva la Verticals! Key to Vendor Growth is Through Vertical Market Opportunities, Says IDC 05 September, 2008 11:05:00
F-Secure delivers fastest protection in the online world 04 September, 2008 16:50:00
NETGEAR expands ProSafe team as business-class products take off in SME market 04 September, 2008 16:27:00
Rogue security apps dominate Fortinet's Aug 2008 IT threat report 04 September, 2008 16:00:00
Adaptec Intelligent Power Management Reduces Storage Power Consumption Up to 70 Percent 04 September, 2008 11:28:00
V/Line and Oakton use Microsoft SQL Server 2008 to develop an Executive HR Dashboard
With the help of Oakton, V/Line - Victoria's regional public transport provider - utilised Microsoft SQL Server 2008 to develop an Executive HR Dashboard report.











