Welcome to April's edition of Internet Security News, the monthly risks bulletin detailing the latest Internet software and system vulnerabilities from NTA Monitor, a leading Internet security testing company. It provides a convenient way to keep up to date with the fast changing world of Internet security; this month's edition includes a total of 9 risk issues: 5 High, 1 Medium, 0
Low and 3 Informational.
April 2007
Apple patches multiple OS X vulnerabilities
(High risk)
Apple has issued a security update to patch multiple security vulnerabilities, many of which exist in products that are shipped with OS X
Read More
|
Apple QuickTime vulnerabilities
(High risk)
Multiple vulnerabilities have been found in QuickTime that can permit an attacker to compromise a user's system
Read More
|
Microsoft skipped March Patch Tuesday
(High risk)
Microsoft missed out March's Patch Tuesday, even though numerous Microsoft flaws remain unpatched
Read More
|
Mozilla issues security updates
(High risk)
Mozilla has issued a security update addressing a variety of vulnerabilities that can result in Cross-Site Scripting, spoofing and system access
Read More
|
New WordPress flaw found
(High risk)
At the beginning of March, it was discovered that an attacker had modified the download file of the latest version of blogging software WordPress
Read More
|
Trend Micro DoS flaw discovered
(Medium risk)
A vulnerability has been found in multiple Trend Micro products that if successfully exploited, could permit attackers to launch a Denial of Service (DoS) attack
Read More
|
Epassport cloned whilst still in its delivery envelope
(Informational)
An ePassport has been successfully cloned before being removed from its delivery envelope
Read More
|
Over 45 million TK Maxx customers' credit card details stolen
(Informational)
TJX, the US parent company of TK Maxx, has had over 45 million of its customers' credit and debit card details stolen
Read More
|
NTA's Annual Web Application Security Report 2007 is released
(Informational)
NTA's Annual Web Application Security Report 2007 has discovered that 90% of UK organisations' websites are insecure
Read More
|
About NTA Monitor
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security
testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of
testing services including:
- VPN Testing
- Onsite Auditing
- Web Application Test
- War Dialling
- Wireless Infrastructure Testing
- RM Vulnerability Testing
For more information on the above services please see our
services page.