July 2007
Welcome to July's edition of Internet Security News, the monthly risks bulletin detailing the
latest Internet software and system vulnerabilities from NTA Monitor, a leading IT security testing
company. It provides a convenient way to keep up to date with the fast changing world of IT security;
this month's edition includes a total of 8 risk issues:
5 High, 1 Medium and 2 Informational .
Microsoft's June Patch Tuesday
(
High risk)
Six vulnerabilities were patched in Microsoft's June Patch Tuesday, four of which are classed as critical
2nd July 2007
Read More
Multiple WordPress vulnerabilities found
(
High risk)
Numerous WordPress flaws have been found, some of which can facilitate Cross-Site Scripting and SQL injection
2nd July 2007
Read More
Norton Personal Firewall buffer overflow flaw
(
High risk)
A buffer overflaw flaw has been discovered in Norton's Personal Firewall, which could be exploited by malicious people to compromise a user's system
2nd July 2007
Read More
Two Apple QuickTime vulnerabilities found
(
High risk)
Two vulnerabilities have been found in Apple's QuickTime, which if exploited, can allow malicious people to compromise a user's system
2nd July 2007
Read More
Two buffer overflow flaws found in Yahoo! Messenger
(
High risk)
Two highly critical Yahoo! Messenger flaws have been patched after proof-of-concept code was released
2nd July 2007
Read More
OpenOffice worm affects Windows, Mac and Linux
(
Medium risk)
Malware is circulating that targets OpenOffice documents and is capable of infecting Windows, Mac and Linux platforms
2nd July 2007
Read More
DIY phishing kits facilitate fake sites
(
Informational)
Nine out of ten new phishing sites in May were created using phishing kits
2nd July 2007
Read More
BBC and Yahoo! hold 'hack day' in London
(
Informational)
Web developers gathered in mid June for the first BBC/Yahoo! 'hack day'
2nd July 2007
Read More
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security
testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of
testing services including: