![]() |
![]()
|
![]()
|
||||||
| Technology News Technology news for enterprise IT from InfoWorld |
![]() |
|
|
LinkBack | Seçenekler | Stil |
|
|
#1 (permalink) |
|
Yeni Üye
![]() |
(Linkleri Üyelerimiz Görebilir. UslanmaM Üyeliği İçin Tıklayın) - More than 2
000 unique Web sites have been rigged to exploit the:-)Linkleri Üyelerimiz Görebilir. UslanmaM Üyeliği İçin Tıklayın according to security vendor Websense Inc.Linkleri Üyelerimiz Görebilir. UslanmaM Üyeliği İçin Tıklayın Those Web sites are either hosting exploit code or are redirecting Internet users to sites with bad code Linkleri Üyelerimiz Görebilir. UslanmaM Üyeliği İçin Tıklayın reported Monday.The number of Web sites engineered to exploit the problem has jumped considerably since the vulnerability was publicly disclosed by Microsoft on March 29. It will likely continue to rise until aaaaaes are applied across corporate and consumer PCs said Ross Paul senior product manager for Websense.Hackers are hoping to catch some of the millions of unaaaaaed machines. "What we've seen is that exploits tend to be used as long as they are effective " Paul said.Last week Microsoft broke from its regular aaaaaing routine and:-)Linkleri Üyelerimiz Görebilir. UslanmaM Üyeliği İçin Tıklayın:-)due to the danger of the vulnerability which occurs in the way Windows processes .ani or Animated Cursor files which allow Web sites to replace the regular cursor with cartoonish alternatives.The flaw affects nearly all versions of Microsoft's Windows OS and is the third zero-day flaw that Microsoft has aaaaaed out of schedule since January 2006. Companies tend to aaaaa their machines on fixed schedules and may not immediately apply a aaaaa when it's released Paul said. Home users may automatically receive the aaaaa if they are using Windows XP Service Pack 2 but users of older Windows OSes will not.That's especially dangerous since the .ani problem doesn't require user interaction for a machine to be infected said Graham Cluley senior technology consultant at Sophos PLC. Merely viewing a Web site engineered to exploit the vulnerability with an unaaaaaed machine can result in an infection.As a result security analysts are generally recommending to apply the aaaaa even though Microsoft said Friday they were fixing Linkleri Üyelerimiz Görebilir. UslanmaM Üyeliği İçin Tıklayın."We are recommending this is a aaaaa you really need to install now " Cluley said.Websense said that attackers from Eastern Europe and China appear to be at the heart of the efforts. Groups in the Asia-Pacific region and China are exploiting the vulnerability mainly on machines located in Asia in order to gain credentials for popular online games such as Lineage Websense said.A second group in Eastern Europe which has been known to use other vulnernabilities in Microsoft's software to install malicious software on machines "have also added the .ani attacks to their arsenal " Websense said. Those attacks are directed at servers and users in the U.S.The motivation of the Eastern European group appears to be collecting banking details using form-grabbing software or aaaloggers Websense said. The group has also been known to try to use exploits to install bogus anti-spyware programs.One technique used by the hackers is to find a vulnerable Web server and cause its viewers to be redirected to another Web site that will exploit their machine using the .ani problem Paul said.The hackers are also planting iframes -- hidden windows that can allow code such as JavaScript to run -- to activate an exploit. Paul predicts there may be more to come: "I don't think we've seen the last of this." :-) Linkleri Üyelerimiz Görebilir. UslanmaM Üyeliği İçin Tıklayın |
|
|
|
![]() |
| Konuyu Toplam 1 Üye okuyor. (0 Kayıtlı üye ve 1 Misafir) | |
| Seçenekler | |
| Stil | |
|
|
Benzer Konular
|
||||
| Konu | Konuyu Başlatan | UslanmaM | Cevaplar | Son Mesaj |
| U.S.: EU missile sites no aid vs. Russia (AP) | USLANMAM | World News | 0 | 03-14-2007 08:00 PM |
| Mozilla issues fix for Firefox, SeaMonaaa flaw | USLANMAM | Technology News | 0 | 03-06-2007 09:30 PM |
| 'Turaaa' worm looks for Solaris Telnet flaw | USLANMAM | Technology News | 0 | 03-01-2007 07:50 PM |
| Turaaa Feels Regret Over Efforts Of Armenian Lobbies To Exploit Political Development | USLANMAM | English News | 0 | 12-27-2006 02:50 PM |
| Bedavaya İnternet Security,Hem de Kalitelisinden : AOL® Safety and Security Center 1 | ABYSS | Orjinal Sitelerinden Programlar | 0 | 11-25-2006 09:06 PM |
