Current Activity Calendar
| July 01, 2008 - Current ActivityThis is an archived copy of current activity, if you would like to see the most recent version, please click here.Apple Releases Security Updatesadded July 1, 2008 at 09:30 am
Apple has released Mac OS X v10.5.4, Security Update 2008-004, and Safari 3.1.2 for Mac OS X 10.4.11 to address multiple vulnerabilities. These vulnerabilities affect a number of applications. These vulnerabilities may allow an attacker to execute arbitrary code, bypass security restrictions, or cause a denial-of-service condition. Microsoft Releases Security Advisoryadded June 30, 2008 at 07:26 pm
Microsoft has released a Security Advisory to address public reports of the Microsoft Windows Server Update Services failing to properly deploy updates within certain environments. Environments that rely on this service for updates may be unable to deploy updates to client systems, some of which may be security related. Cisco Releases Security Advisoryadded June 30, 2008 at 10:57 am
Cisco has released a Security Advisory to address multiple vulnerabilities in the Unified Communications Manager. The first vulnerability is due to improper handling of malformed data in the Computer Telephony Integration Manager service. Exploitation of this vulnerability may allow an attacker to cause a denial-of-service condition. The second vulnerability is due to improper access restrictions in the Real-Time Information Server Data Collector process. This vulnerability may allow an attacker to bypass security restrictions and obtain sensitive information which may be used for further attacks. Microsoft Internet Explorer 6 Cross-Domain Vulnerabilityadded June 26, 2008 at 11:36 am
US-CERT is aware of publicly available proof-of-concept code for a new vulnerability in Microsoft Internet Explorer 6. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary script in the context of another domain. This could allow an attacker to take a variety of actions, including stealing cookies, hijacking a web session, or stealing authentication credentials. At this time, Internet Explorer 7 does not appear to be affected by this issue. Microsoft Releases Security Advisoryadded June 24, 2008 at 06:23 pm
Microsoft has released a Security Advisory to alert users of a recent increase in SQL injection attacks targeting websites using Microsoft ASP and ASP.NET. These attacks target websites that have inadequate secure coding practices for accessing and manipulating data stored in relational databases. If an attack is successful, an attacker may be able to compromise the website and inject arbitrary content or obtain sensitive data. Any user visiting the compromised site may be unknowingly redirected to a malicious website that could attempt install malicious code onto the system. Adobe Releases Security Bulletinadded June 24, 2008 at 09:40 am
Adobe has released a Security Update for Adobe Reader and Acrobat 8.1.2 to address a vulnerability that may allow a remote attacker to execute arbitrary code or cause a denial-of-service condition. The Security Bulletin also indicates there are reports of active exploitation. Critical Vulnerability in Microsoft Bluetooth Stackadded June 20, 2008 at 09:20 am
Microsoft has released an update to a previously released security bulletin affecting the Bluetooth stack in Windows. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary code. This vulnerability is addressed in Microsoft Security Bulletin MS08-030. Apple Releases Safari v3.1.2 for Windowsadded June 20, 2008 at 09:20 am
Apple has released Safari v3.1.2 for Windows to address multiple vulnerabilities. These vulnerabilities include the following:
New Phishing/Storm Worm Variant Spreadingadded June 19, 2008 at 02:52 pm
US-CERT has received reports of new phishing activity, some of which has been linked to Storm Worm. The latest activity is centered around messages related to the recent earthquake in China and the upcoming Olympic Games. This Trojan is spread via an unsolicited email message that contains a link to a malicious website. This website contains a video that, when opened, may run the executable file "beijing.exe" to infect the user's system with malicious code.
Cisco Releases Security Advisoryadded June 19, 2008 at 08:28 am
Cisco has released a Security Advisory to address a vulnerability in several of their Intrusion Prevention System platforms. This vulnerability is caused by an unspecified error in the handling of Jumbo Ethernet frames received on a Gigabit network interface configured for inline mode. Exploitation of this vulnerability may allow a remote attacker to trigger a kernel panic and cause a denial-of-service condition or bypass security restrictions. |
|||||||||||||||||||||||||||||||||||||||||||||||||
Information For
Sign Up
Reporting
DHS Threat Advisory
The threat level in the airline sector is High or Orange. Read more

Mailing Lists & Feeds
