SANS ISC
Apple QuickTime potential vulnerability/backdoor, (Mon, Aug 30th)
A vulnerability/backdoor in Apple Quicktime has been announced, and we are keeping an eye on it.
Ch ...(more)...
Wireshark 1.4.0 is now available http://www.wireshark.org/download.html, (Mon, Aug 30th)
...(more)...
DLL hijacking - what are you doing ?, (Sun, Aug 29th)
In response to the heavy publication in the press about the DLL hijacking vulnerabilities, Microsoft ...(more)...
FTP Brute Password guessing attacks, (Fri, Aug 27th)
FTP brute password guessing attacks are a fairly regular occurrence at the moment. The fact that the ...(more)...
DLL hijacking vulnerabilities, (Mon, Aug 23rd)
For the last couple of days there have been a lot of discussions about a vulnerability published by ...(more)...
Adobe released security update for Shockwave player that fix several CVEs: APSB1020, (Wed, Aug 25th)
Pedro Bueno (pbueno /%%/ isc. sans ...(more)...
, (Wed, Aug 25th)
Pedro Bueno (pbueno /%%/ isc. sans ...(more)...
SCADA: A big challenge for information security professionals, (Sun, Aug 22nd)
One of the most interesting challenges of working as Chief Information Security Officer in a utilit ...(more)...
Firefox plugins to perform penetration testing activities, (Mon, Aug 23rd)
Jhaddix wrote an interesting blog posting showing some tools that can be added to firefox to perfor ...(more)...
Anatomy of a PDF exploit, (Sun, Aug 22nd)
Niels Provos has done an excellent blog post on how to exploit CVE-2010-0188:An integer overfl ...(more)...
Failure of controls...Spanair crash caused by a Trojan, (Sun, Aug 22nd)
Several readers have pointed us to an article about the preliminary report of the Spanair flight tha ...(more)...
Casper the unfriendly ghost, (Thu, Aug 19th)
We've received a couple reports lately of a bot written in Perl finding its way onto more and more U ...(more)...
Change is Good. Change is Bad. Change is Life., (Thu, Aug 19th)
In a lot of ways, our job in IT and Information Security is implementing change. But as we all ...(more)...
Adobe out-of-cycle Updates, (Wed, Aug 18th)
UPDATE
Looks like some patches have already been released. More details can be found here&n ...(more)...
Do you like Bing? So do the RogueAV guys!, (Tue, Aug 17th)
In June and July I posted two diaries (http://isc.sans ...(more)...
Blind Elephant: A New Web Application Fingerprinting Tool, (Mon, Aug 16th)
During Black Hat USA2010, Patrick Thomas presented a new web application fingerprinting tool c ...(more)...
We have reports of AVG reporting a trojan downloader on our main page and RSS feed: It is due to the code snippet we are showing in one of our diaries., (Mon, Aug 16th)
----
Raul Siles
Founder and Senior Security Analyst with Taddong
www.taddong ...(more)...

