Welcome to March's edition of Internet Security News, the monthly risks bulletin detailing the latest Internet software and system vulnerabilities from NTA Monitor, a leading Internet security testing company. It provides a convenient way to keep up to date with the fast changing world of Internet security; this month's edition includes a total of 8 risk issues: 4 High, 0 Medium, 0
Low and 4 Informational.
March 2007
Adobe heap corruption flaw 'critical'
(High risk)
A vulnerability caused by an unspecified PDF processing error in Adobe Reader 6.x and 7.x can potentially be exploited by malicious people to compromise a user's system
Read More
|
Critical buffer overflow Trend Micro flaw discovered
(High risk)
A critical flaw found in Trend Micro can be exploited in both Windows and Linux systems and could be used to gain access to machines, cause Denial of Service attacks and allow attackers total control of affected systems
Read More
|
Firefox flaws could make local files externally vulnerable
(High risk)
Two flaws recently discovered in Firefox could permit locally saved files to be accessed by hackers
Read More
|
Six of one and half a dozen of the other - Microsoft's latest patches
(High risk)
Microsoft issued 12 updates in its latest bulletin - six are critical and six important
Read More
|
Nationwide fined almost £1 million over stolen laptop
(Informational)
Nationwide Building Society has been fined £980,000 by the Financial Services Authority (FSA) after its security was found to be inefficient following the theft of a corporate laptop
Read More
|
No smoke without fire
(Informational)
A total ban on smoking is fast approaching in all UK workplaces and NTA Monitor believes that this may leave companies vulnerable to a growing security threat - gaining corporate information via social techniques
Read More
|
PayPal introduces security tokens
(Informational)
PayPal is introducing security tokens in an effort to improve its security and minimise the effectiveness of phishing attacks
Read More
|
Weak passwords help hackers
(Informational)
A researcher at the University of Maryland left four Linux machines online that had weak passwords, and made some interesting discoveries
Read More
|
About NTA Monitor
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security
testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of
testing services including:
- VPN Testing
- Onsite Auditing
- Web Application Test
- War Dialling
- Wireless Infrastructure Testing
- RM Vulnerability Testing
For more information on the above services please see our
services page.