<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
<title>US-CERT Current Activity</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current"/>
<link rel="self" type="application/atom+xml" hreflang="en" href="http://www.us-cert.gov/current/index.atom"/>
<updated>2009-11-06T19:01:52-05:00</updated>
<author>
<name>US-CERT</name>
<email>info@us-cert.gov</email>
<uri>http://www.us-cert.gov</uri>
</author>
<id>http://www.us-cert.gov/</id>
<subtitle>The US-CERT Current Activity web
        page is a regularly updated summary of the most frequent, high-impact types of security
        incidents currently being reported to the US-CERT.</subtitle>
<rights>Copyright 2009 Carnegie Mellon University</rights>
<entry>
<title>SSL and TLS Vulnerable to Man-in-the-middle Attacks</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#ssl_and_tls_vulnerable_to"/>
<id>http://www.us-cert.gov/current/index.html#ssl_and_tls_vulnerable_to</id>
<published>2009-11-06T19:01:52-05:00</published>
<updated>2009-11-06T19:01:52-05:00</updated>
<content type="html">          





US-CERT is aware of reports of publicly available exploit code for a vulnerability within the SSL and TLS protocols. Reports indicate that exploitation of this vulnerability may allow an attacker to conduct a man-in-the-middle attack, allowing an attacker to inject plaintext into the beginning of the application protocol stream.&lt;br&gt;&lt;br&gt;US-CERT encourages OpenSSL users and administrators to review the &lt;a href="http://www.openssl.org/source/" target="_self"&gt;OpenSSL 0.9.81&lt;/a&gt; release and apply any updates.&lt;br&gt;&lt;br&gt;US-CERT has not received any reports of active exploitation and will continue to provide additional information as it becomes available.&lt;br&gt;&lt;br&gt;








  </content>
</entry>
<entry>
<title>Microsoft Releases Advance Notification for November Security Bulletin</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#microsoft_releases_advance_notification_for28"/>
<id>http://www.us-cert.gov/current/index.html#microsoft_releases_advance_notification_for28</id>
<published>2009-11-05T16:17:12-05:00</published>
<updated>2009-11-05T16:17:12-05:00</updated>
<content type="html">          

Microsoft has issued a &lt;a href="http://www.microsoft.com/technet/security/bulletin/ms09-nov.mspx" target="_self"&gt;Security Bulletin Advance Notification&lt;/a&gt; indicating that its November release cycle will contain six bulletins, three of which will have a severity rating of Critical. The notification states that these Critical bulletins are for Microsoft Windows. There will also be three important bulletins for Microsoft Windows and Microsoft Office. Release of these bulletins is scheduled for Tuesday, November 10.&lt;br&gt;&lt;br&gt;US-CERT will provide additional information as it becomes available.




  </content>
</entry>
<entry>
<title>BlackBerry Desktop Manager Vulnerability</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#blackberry_desktop_manager_vulnerability"/>
<id>http://www.us-cert.gov/current/index.html#blackberry_desktop_manager_vulnerability</id>
<published>2009-11-05T08:45:35-05:00</published>
<updated>2009-11-05T08:45:35-05:00</updated>
<content type="html">          

Research in Motion has released Security Advisory &lt;a href="http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;amp;docType=kc&amp;amp;externalId=KB19701" target="_self"&gt;KB19701&lt;/a&gt; to address a vulnerability in BlackBerry Desktop Manager. This vulnerability may allow an attacker to execute arbitrary code.&lt;br&gt;&lt;br&gt;US-CERT encourages users to review BlackBerry Security Advisory &lt;a href="http://www.blackberry.com/btsc/search.do?cmd=displayKC&amp;amp;docType=kc&amp;amp;externalId=KB19701" target="_self"&gt;KB19701&lt;/a&gt; and apply any necessary updates.




  </content>
</entry>
<entry>
<title>Sun Releases Update 17 for Java SE 6</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#sun_releases_update_17_for"/>
<id>http://www.us-cert.gov/current/index.html#sun_releases_update_17_for</id>
<published>2009-11-04T09:04:38-05:00</published>
<updated>2009-11-04T09:04:38-05:00</updated>
<content type="html">          





Sun has released update 17 for Java SE JDK 6 and Java SE JRE 6 to address multiple vulnerabilities. The impacts of these vulnerabilities include arbitrary code execution, privilege escalation, denial of service, and information disclosure.&lt;br&gt;&lt;br&gt;US-CERT encourages users and administrators to review the Java the Java SE 6 Update 17 &lt;a href="http://java.sun.com/javase/6/webnotes/6u17.html" target="_self"&gt;release notes&lt;/a&gt; and apply any necessary &lt;a href="http://java.sun.com/javase/downloads/index.jsp" target="_self"&gt;updates&lt;/a&gt; to help mitigate the risks.








  </content>
</entry>
<entry>
<title>Adobe Releases Update for Shockwave Player</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#adobe_releases_update_for_shockwave1"/>
<id>http://www.us-cert.gov/current/index.html#adobe_releases_update_for_shockwave1</id>
<published>2009-11-04T09:04:34-05:00</published>
<updated>2009-11-04T09:04:34-05:00</updated>
<content type="html">          






Adobe has released Shockwave Player 11.5.2.602 to address multiple vulnerabilities. Exploitation of these vulnerabilities may allow an attacker to run malicious code on the user's machine.&lt;br&gt;&lt;br&gt;US-CERT encourages users and administrators to review Adobe security bulletin &lt;a href="http://www.adobe.com/support/security/bulletins/apsb09-16.html" target="_self"&gt;APSB09-16&lt;/a&gt; and update to Shockwave Player 11.5.2.602 to help mitigate the risks.&lt;br&gt;









  </content>
</entry>
<entry>
<title>Mozilla Releases Firefox 3.0.15 and Firefox 3.5.4</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#mozilla_releases_firefox_3_01"/>
<id>http://www.us-cert.gov/current/index.html#mozilla_releases_firefox_3_01</id>
<published>2009-10-28T09:13:33-04:00</published>
<updated>2009-10-28T09:13:33-04:00</updated>
<content type="html">          

Mozilla has released Firefox 3.0.15 and Firefox 3.5.4 to address multiple vulnerabilities. Exploitation of these vulnerabilities may allow an attacker to execute arbitrary code, execute arbitrary JavaScript with chrome privileges, or cause a denial-of-service condition. As described in the Mozilla Foundation Security Advisories, some of these vulnerabilities may also affect SeaMonkey.&lt;br&gt;&lt;br&gt;US-CERT encourages users to review the Mozilla Foundation security advisories for &lt;a href="http://www.mozilla.org/security/known-vulnerabilities/firefox30.html" target="_self"&gt;Firefox 3.0&lt;/a&gt; and &lt;a href="http://www.mozilla.org/security/known-vulnerabilities/firefox35.html" target="_self"&gt;Firefox 3.5&lt;/a&gt; and apply any necessary updates or workarounds to help mitigate the risks.


  </content>
</entry>
<entry>
<title>Federal Deposit Insurance Corporation Warns Public of Fraudulent Email</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#federal_deposit_insurance_corporation_warns"/>
<id>http://www.us-cert.gov/current/index.html#federal_deposit_insurance_corporation_warns</id>
<published>2009-10-27T11:59:34-04:00</published>
<updated>2009-10-27T11:59:34-04:00</updated>
<content type="html">          











The Federal Deposit Insurance Corporation (FDIC) has released information warning the public about fraudulent email messages purporting to come from the FDIC. These email messages provides a link to a fraudulent FDIC website. Users are then instructed to download their "personal FDIC Insurance File."&lt;br&gt;&lt;br&gt;More information regarding these messages can be found in the &lt;a href="http://www.fdic.gov/consumers/consumer/alerts/index.html" target="_self"&gt;Federal Deposit Insurance Corporation's Consumer Alerts&lt;/a&gt; website.&lt;br&gt;&lt;br&gt;Users are encouraged to take the following measures to protect themselves from this type of phishing scam:&lt;br&gt;&lt;ul&gt;&lt;li&gt;Do not follow unsolicited web links received in email messages.&lt;/li&gt;&lt;li&gt;Verify the website by manually typing the URL when attempting to connect to web sites recommended in an email.&lt;/li&gt;&lt;li&gt;Refer to the &lt;a href="http://www.us-cert.gov/cas/tips/ST04-014.html" target="_self"&gt;Avoiding Social Engineering and Phishing Attacks&lt;/a&gt; document for more information on social engineering attacks.&lt;/li&gt;&lt;/ul&gt;














  </content>
</entry>
<entry>
<title>BlackBerry PhoneSnoop Application Used to Spy on Users</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#blackberry_phonesnoop_application_used_to"/>
<id>http://www.us-cert.gov/current/index.html#blackberry_phonesnoop_application_used_to</id>
<published>2009-10-27T11:59:30-04:00</published>
<updated>2009-10-27T11:59:30-04:00</updated>
<content type="html">          











US-CERT is aware of public reports of a new software application called PhoneSnoop. This software allows an attacker to call a user's BlackBerry and listen to personal conversations. In order to install and setup the PhoneSnoop application, attackers must have physical access to the user's device or convince a user to install PhoneSnoop.&lt;br&gt;&lt;br&gt;US-CERT encourages users to only download BlackBerry applications from trusted sources and to password protect and lock BlackBerry devices.














  </content>
</entry>
<entry>
<title>Oracle Releases Critical Patch Update for October 2009</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#oracle_releases_critical_patch_update8"/>
<id>http://www.us-cert.gov/current/index.html#oracle_releases_critical_patch_update8</id>
<published>2009-10-20T16:04:53-04:00</published>
<updated>2009-10-20T16:04:53-04:00</updated>
<content type="html">          
Oracle has released its &lt;a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2009.html" target="_self"&gt;Critical Patch Update for October 2009&lt;/a&gt; to address 38 vulnerabilities across several products. This update contains the following security fixes:&lt;br&gt;&lt;ul&gt;&lt;li&gt;16 for the Oracle Database&lt;/li&gt;&lt;li&gt;3 for the Oracle Application Server&lt;/li&gt;&lt;li&gt;8 for the Oracle E-Business Suite and Applications&lt;/li&gt;&lt;li&gt;4 for the Oracle PeopleSoft and JD Edwards Suite&lt;/li&gt;&lt;li&gt;6 for the Oracle BEA Products Suite&lt;/li&gt;&lt;li&gt;1 for the Oracle Industry Applications Products Suite&lt;/li&gt;&lt;/ul&gt;US-CERT encourages users and administrators to review the &lt;a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpuoct2009.html" target="_self"&gt;October Critical Patch Update&lt;/a&gt; and apply any necessary updates.



  </content>
</entry>
<entry>
<title>Malware Spam Messages Related to Microsoft Outlook, SSL Certificates</title>
<link rel="alternate" type="text/html" hreflang="en" href="http://www.us-cert.gov/current/index.html#malware_circulating_via_spam_messages"/>
<id>http://www.us-cert.gov/current/index.html#malware_circulating_via_spam_messages</id>
<published>2009-10-15T17:00:05-04:00</published>
<updated>2009-10-15T17:00:05-04:00</updated>
<content type="html">          















US-CERT is aware of public reports of an increased number of spam messages related to Microsoft Outlook or SSL certificates. These messages contain a malicious file or link that claims to provide an update, but in reality, attempts to launch malware on a user's system. Typically, the messages instruct the user to click on a link to save a file or to open an attachment, either of which could infect the user's system.&lt;br&gt;&lt;br&gt;To help protect against this type of attack, US-CERT recommends that users avoid opening attachments or links contained in unsolicited email messages. Additional tips regarding email attachments can be found in the US-CERT Cyber Security Tip &lt;a href="http://www.us-cert.gov/cas/tips/ST04-010.html" target="_self"&gt;Using Caution with Email Attachments&lt;/a&gt;.



  </content>
</entry>
</feed>
