Security News from Developer Fusion https://www.developerfusion.com/t/security/news/ Security News from Developer Fusion http://www.rssboard.org/rss-specification en-GB Tue, 03 Jan 2012 10:16:00 GMT Critical security update for ASP.NET over holiday Microsoft publishes out-of-band security update 3 days after Christmas http://www.developerfusion.com/news/135783/critical-security-update-for-aspnet-over-holiday/ http://www.developerfusion.com/news/135783/critical-security-update-for-aspnet-over-holiday/ Tue, 03 Jan 2012 10:16:00 GMT Chris Alexander Windows Defender Offline protects against rootkits and other malware USB memory stick to the rescue http://www.developerfusion.com/news/134365/windows-defender-offline-protects-against-rootkits-and-other-malware/ http://www.developerfusion.com/news/134365/windows-defender-offline-protects-against-rootkits-and-other-malware/ Sat, 10 Dec 2011 12:04:00 GMT Chris Alexander 6% of UK desktops part of botnets Up to 20% infection rates across the EU http://www.developerfusion.com/news/134153/6-of-uk-desktops-part-of-botnets/ http://www.developerfusion.com/news/134153/6-of-uk-desktops-part-of-botnets/ Mon, 05 Dec 2011 21:57:00 GMT Chris Alexander Austrian security researcher claims circumvention of Windows 8 Secure Boot - already Could this work put paid to Microsoft's effort of securing Windows 8? http://www.developerfusion.com/news/133328/austrian-security-researcher-claims-circumvention-of-windows-8-secure-boot-already/ http://www.developerfusion.com/news/133328/austrian-security-researcher-claims-circumvention-of-windows-8-secure-boot-already/ Mon, 28 Nov 2011 16:25:00 GMT Chris Alexander Duqu malicious Word doc exploits TrueType zero-day exploit, patch incoming Fix me available for quick fixing, official update expected in next security cycle http://www.developerfusion.com/news/132333/duqu-malicious-word-doc-exploits-truetype-zeroday-exploit-patch-incoming/ http://www.developerfusion.com/news/132333/duqu-malicious-word-doc-exploits-truetype-zeroday-exploit-patch-incoming/ Wed, 09 Nov 2011 13:37:00 GMT Chris Alexander XML Encryption security vulnerability found Security standard used by countless systems found totally flawed http://www.developerfusion.com/news/131282/xml-encryption-security-vulnerability-found/ http://www.developerfusion.com/news/131282/xml-encryption-security-vulnerability-found/ Mon, 24 Oct 2011 09:27:00 GMT Chris Alexander Serious security issue in PHP 5.3.7 forces developers to advise against upgrade PHP's built-in crypto goes AWOL http://www.developerfusion.com/news/124986/serious-security-issue-in-php-537-forces-developers-to-advise-against-upgrade/ http://www.developerfusion.com/news/124986/serious-security-issue-in-php-537-forces-developers-to-advise-against-upgrade/ Tue, 30 Aug 2011 10:28:00 GMT Chris Alexander Google helps Adobe fix 80 crash and security issues in Flash player in one go 20TB of SWF and 10 days of computing result in massive bug list for Adobe http://www.developerfusion.com/news/124108/google-helps-adobe-fix-80-crash-and-security-issues-in-flash-player-in-one-go/ http://www.developerfusion.com/news/124108/google-helps-adobe-fix-80-crash-and-security-issues-in-flash-player-in-one-go/ Sat, 13 Aug 2011 16:09:00 GMT Chris Alexander Google aims to improve online security with new certificate service Developers now have extra help when verifying the authenticity of web certificates http://www.developerfusion.com/news/117291/google-aims-to-improve-online-security-with-new-certificate-service/ http://www.developerfusion.com/news/117291/google-aims-to-improve-online-security-with-new-certificate-service/ Mon, 18 Apr 2011 12:31:00 GMT Chris Alexander Gmail data loss bug causes complete data loss, calls for tape backups Google is taking days to restore data from tape after a catastrophic bug in their storage software http://www.developerfusion.com/news/112985/gmail-data-loss-bug-causes-complete-data-loss-calls-for-tape-backups/ http://www.developerfusion.com/news/112985/gmail-data-loss-bug-causes-complete-data-loss-calls-for-tape-backups/ Wed, 02 Mar 2011 11:41:00 GMT Chris Alexander Free Detection Service For Cross-Site Scripting Errors Java web developer XSS flaw detection with access remediation recommendation tool http://www.developerfusion.com/news/94430/free-detection-service-for-crosssite-scripting-errors/ http://www.developerfusion.com/news/94430/free-detection-service-for-crosssite-scripting-errors/ Mon, 07 Feb 2011 09:07:00 GMT Adrian Bridgwater Mac App Store appears, security broken Some paid apps fail to check receipts, therefore available for free http://www.developerfusion.com/news/92255/mac-app-store-appears-security-broken/ http://www.developerfusion.com/news/92255/mac-app-store-appears-security-broken/ Mon, 10 Jan 2011 11:33:00 GMT Chris Alexander Malware uploads US Government files to Belarusian server Attack vector: White House look-a-like Christmas greetings card http://www.developerfusion.com/news/92243/malware-uploads-us-government-files-to-belarusian-server/ http://www.developerfusion.com/news/92243/malware-uploads-us-government-files-to-belarusian-server/ Fri, 07 Jan 2011 12:23:00 GMT Chris Alexander Inside the Skype outage Skype spends 24 hours down as its peer to peer network crumbles http://www.developerfusion.com/news/92237/inside-the-skype-outage/ http://www.developerfusion.com/news/92237/inside-the-skype-outage/ Tue, 04 Jan 2011 18:15:00 GMT Chris Alexander Gawker hack causes internet chaos, find out how to secure your users’ passwords Catalogue of mistakes at Gawker revealed http://www.developerfusion.com/news/92151/gawker-hack-causes-internet-chaos-find-out-how-to-secure-your-users-passwords/ http://www.developerfusion.com/news/92151/gawker-hack-causes-internet-chaos-find-out-how-to-secure-your-users-passwords/ Sat, 18 Dec 2010 11:05:00 GMT Chris Alexander Unpatched vulnerability in Windows XP, Vista and 7 entirely bypasses User Account Control Exposed exploit allows any user to execute administrator code with Win32 API flaw http://www.developerfusion.com/news/91882/unpatched-vulnerability-in-windows-xp-vista-and-7-entirely-bypasses-user-account-control/ http://www.developerfusion.com/news/91882/unpatched-vulnerability-in-windows-xp-vista-and-7-entirely-bypasses-user-account-control/ Tue, 30 Nov 2010 10:13:00 GMT Chris Alexander Security report that names Chrome as most vulnerable application called out Security researchers and analysts pick apart Bit9 report http://www.developerfusion.com/news/91805/security-report-that-names-chrome-as-most-vulnerable-application-called-out/ http://www.developerfusion.com/news/91805/security-report-that-names-chrome-as-most-vulnerable-application-called-out/ Thu, 25 Nov 2010 13:43:00 GMT Chris Alexander Security release of YUI JavaScript framework protects against JavaScript and Flash injection New version addresses security bug in all versions since 2.4.0 http://www.developerfusion.com/news/91526/security-release-of-yui-javascript-framework-protects-against-javascript-and-flash-injection/ http://www.developerfusion.com/news/91526/security-release-of-yui-javascript-framework-protects-against-javascript-and-flash-injection/ Thu, 28 Oct 2010 10:36:00 GMT Chris Alexander AntiXSS 4.0 released, makes cross site attacks a thing of the past ASP.NET security tool for developers comes with requested features and speed boost http://www.developerfusion.com/news/90672/antixss-40-released-makes-cross-site-attacks-a-thing-of-the-past/ http://www.developerfusion.com/news/90672/antixss-40-released-makes-cross-site-attacks-a-thing-of-the-past/ Fri, 01 Oct 2010 11:32:00 GMT Chris Alexander Out-of-band security patch coming for Padding Oracle ASP.NET attack Microsoft to bring patches to all ASP.NET versions later today http://www.developerfusion.com/news/90271/outofband-security-patch-coming-for-padding-oracle-aspnet-attack/ http://www.developerfusion.com/news/90271/outofband-security-patch-coming-for-padding-oracle-aspnet-attack/ Tue, 28 Sep 2010 08:57:00 GMT Chris Alexander