Saturday, August 10, 2013
Friday, August 9, 2013
Chinese Comment Crew caught taking over a fake Water Plant
Chinese Hacking Team Comment Crew caught taking over ahoneypotsimulating a Water Plant, the infinite offensive of Chinese Cyber Units linked to PLA.
Wednesday, August 7, 2013
Microsoft Security Advisory (2876146) Wireless PEAP-MS-CHAPv2 Authentication Could Allow Information Disclosure
Microsoft announced a security advisory that affects Windows Phone 8 and Windows Phone 7.8.
"To exploit this issue, an attacker controlled system could pose as a known Wi-Fi access point, causing the targeted device to automatically attempt to authenticate with the access point, and in turn allowing the attacker to intercept the victim's encrypted domain credentials. An attacker could then exploit cryptographic weaknesses in the PEAP-MS-CHAPv2 protocol to obtain the victim's domain credentials. Those credentials could then be re-used to authenticate the attacker to network resources, and the attacker could take any action that the user could take on that network resource."
Here's the link for suggested actions from Microsoft...
http://technet.microsoft.com/en-us/security/advisory/2876146
"To exploit this issue, an attacker controlled system could pose as a known Wi-Fi access point, causing the targeted device to automatically attempt to authenticate with the access point, and in turn allowing the attacker to intercept the victim's encrypted domain credentials. An attacker could then exploit cryptographic weaknesses in the PEAP-MS-CHAPv2 protocol to obtain the victim's domain credentials. Those credentials could then be re-used to authenticate the attacker to network resources, and the attacker could take any action that the user could take on that network resource."
Here's the link for suggested actions from Microsoft...
http://technet.microsoft.com/en-us/security/advisory/2876146
Tuesday, August 6, 2013
It's been a while..
I know, I know .. it's been a long time. I'll try to make this page more better this time. Lot's of new technologies out there!!!! And yes, the new site is now called 135OIC.com. :-) More to follow!
Friday, August 20, 2010
Network Solutions Parked Domains Actively Serving Malwares
The beginning of this year saw mass Web hosting compromises across numerous hosting providers; thousands of websites were compromised via vulnerabilities in shared hosting providers and as a result, were serving malware. We thought eventually everything would be cleaned up and everyone's operations would be back to normal--but it seems that didn't happen... yet.
http://blog.armorize.com/2010/08/smci-widget-by-network-solutions-still.html
http://blog.armorize.com/2010/08/smci-widget-by-network-solutions-still.html
Sunday, July 18, 2010
Microsoft Security Advisory (2286198)
General Information
Executive Summary
Microsoft is investigating reports of limited, targeted attacks exploiting a vulnerability in Windows Shell, a component of Microsoft Windows. This advisory contains information about which versions of Windows are vulnerable as well as workarounds and mitigations for this issue.
The vulnerability exists because Windows incorrectly parses shortcuts in such a way that malicious code may be executed when the user clicks the displayed icon of a specially crafted shortcut. This vulnerability is most likely to be exploited through removable drives. For systems that have AutoPlay disabled, customers would need to manually browse to the root folder of the removable disk in order for the vulnerability to be exploited. For Windows 7 systems, AutoPlay functionality for removable disks is automatically disabled.
http://www.microsoft.com/technet/security/advisory/2286198.mspx
Executive Summary
Microsoft is investigating reports of limited, targeted attacks exploiting a vulnerability in Windows Shell, a component of Microsoft Windows. This advisory contains information about which versions of Windows are vulnerable as well as workarounds and mitigations for this issue.
The vulnerability exists because Windows incorrectly parses shortcuts in such a way that malicious code may be executed when the user clicks the displayed icon of a specially crafted shortcut. This vulnerability is most likely to be exploited through removable drives. For systems that have AutoPlay disabled, customers would need to manually browse to the root folder of the removable disk in order for the vulnerability to be exploited. For Windows 7 systems, AutoPlay functionality for removable disks is automatically disabled.
http://www.microsoft.com/technet/security/advisory/2286198.mspx
Thursday, July 8, 2010
New Job Posted @ PSR Consulting - Field Technician
https://psrconsulting.net/jobs/index.php
Login and create your account
Login and create your account
Subscribe to:
Posts (Atom)
-
In 2013 Android grew to a very large number: 87%. This was its share of the global smartphone market. It also grew to an even larger one: 97...
-
OpenSSH is a freely available version of the Secure Shell (SSH) protocol family of tools for remotely controlling a computer or transferring...
-
By Bill Sizemore The Virginian-Pilot © June 4, 2009 State officials are notifying more than a half-million Virginians that their Social Secu...