Current Activity Calendar
| January 30, 2008 - Current ActivityThis is an archived copy of current activity, if you would like to see the most recent version, please click here.Storm Worm Directing Users to Medical Spam Web Sitesadded January 30, 2008 at 03:20 pm | updated January 30, 2008 at 06:02 pm
US-CERT is aware of a variant of the Storm Worm that sends unsolicited email messages to users and attempts to evade spam filtering. When a user receives this email message, it will contain a link in the format of:
Cisco Releases Security Advisories to Address a Vulnerability in the Cisco Wireless Control Systemadded January 30, 2008 at 02:23 pm
Cisco has released Security Advisory cisco-sa-20080130-wcs to address a vulnerability in the Wireless Control System. The vulnerability exists in the Apache Tomcat URI handler and may allow a remote, unauthenticated attacker to execute arbitrary code on an affected system. GE Fanuc Product Vulnerabilitiesadded January 24, 2008 at 02:17 pm | updated January 25, 2008 at 03:52 pm
Vulnerabilities in GE Fanuc CIMPLICITY and Proficy Real-Time Information Portal could allow an attacker to execute arbitrary code, obtain user credentials, upload and execute arbitrary files, or cause a denial-of-service condition.
IBM AIX Vulnerabilitiesadded January 25, 2008 at 10:28 am
US-CERT is aware of multiple vulnerabilities affecting IBM AIX. These vulnerabilities may allow a local attacker to gain escalated privileges on an affected system, gain access to sensitive information, or alter the behavior of system software. Sun Releases Java Updateadded January 24, 2008 at 04:00 pm
US-CERT is aware that Sun has released an update to Java SE 6 containing fixes for 375 bugs. Users are encouraged to install the appropriate updates and should be aware that installing this new version of Java SE may not remove previous versions of the software. Mozilla Firefox Chrome Vulnerabilityadded January 24, 2008 at 02:12 pm
US-CERT is aware of reports of a vulnerability in Mozilla Firefox that may allow directory traversal within the chrome protocol scheme. This vulnerability could lead to information disclosure and affects users that have certain "flat" packaged add-ons installed.
Microsoft Security Bulletin Re-Releases and Revisionsadded January 24, 2008 at 02:07 pm
Microsoft has re-released the following Security Bulletins:
Cisco Releases Security Advisories to Address Vulnerabilities in PIX, ASA, and AVSadded January 23, 2008 at 03:16 pm
Cisco has released Security Advisory cisco-sa-20080123-asa and cisco-sa-20080123-avs to address vulnerabilities in the PIX 500 Series Security Appliance (PIX), 5500 Series Adaptive Security Appliance (ASA), and Application Velocity System (AVS).
SymbianOS Wormadded January 22, 2008 at 01:26 pm
US-CERT is aware of public reports of a malicious SymbianOS worm that may be spreading on mobile phone networks.
Skype Releases Security Bulletin to Address Cross Zone Scripting Vulnerabilityadded January 18, 2008 at 03:18 pm
Skype has released Security Bulletin SKYPE-SB/2008-001 to address a cross zone scripting vulnerability. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary code on an affected system. |
|||||||||||||||||||||||||||||||||||||||||||||||||
Information For
Sign Up
Reporting
DHS Threat Advisory
The threat level in the airline sector is High or Orange. Read more

Mailing Lists & Feeds
