Welcome to May's edition of Internet Security News, the monthly risks bulletin detailing the latest Internet software and system vulnerabilities from NTA Monitor, a leading Internet security testing company. It provides a convenient way to keep up to date with the fast changing world of Internet security; this month's edition includes a total of 6 risk issues: 3 High, 0 Medium, 0
Low and 3 Informational.
May 2008
Multiple vulnerabilities in Safari
(High risk)
Vulnerabilities have been reported in Safari, which if exploited may lead to malicious people conducting cross-site scripting attacks or compromising a user's system
Read More
|
Oracle quarterly patches
(High risk)
Oracle's quarterly Critical Patch Update was issued on 16th April and contains 41 security fixes for multiple Oracle products
Read More
|
Microsoft Patch Tuesday
(High risk)
Microsoft identifies five critical and four important flaws in April's Patch Tuesday
Read More
|
Poor website code leads to exploitation from hackers
(Informational)
Experts say that Web designers who are making very old mistakes are potentially letting hackers hijack visitors to their own sites
Read More
|
60% of UK website tests revealed Internet encryption and cross-site scripting vulnerabilities
(Informational)
60% of web application tests performed for UK organisations showed that their websites contain weak encryption or cross-site scripting (XSS) vulnerabilities
Read More
|
HSBC uses new software to validate website
(Informational)
As phishing threats continue to increase, HSBC will begin to use software that will visually demonstrate that its websites are genuine in an attempt to help prevent customers becoming victim to these online scams
Read More
|
About NTA Monitor
This bulletin is produced as a by-product of ongoing research carried out to develop NTA Monitor's Internet security
testing service, Regular Monitor. NTA are a full-service Internet security testing company with a comprehensive range of
testing services including:
- VPN Testing
- Onsite Auditing
- Web Application Test
- War Dialling
- Wireless Infrastructure Testing
- RM Vulnerability Testing
For more information on the above services please see our
services page.