MySQL User-Defined Function Buffer Overflow Vulnerability
Security Revealed
MySQL User-Defined Function Buffer Overflow Vulnerability
MySQL Remote Information Disclosure and Buffer Overflow Vulnerabilities
OpenSSL ASN.1 Structures Denial of Service Vulnerability
OpenSSL SSL_Get_Shared_Ciphers Buffer Overflow Vulnerability
OpenSSL Public Key Processing Denial of Service Vulnerability
OpenSSL SSLv2 Null Pointer Dereference Client Denial of Service Vulnerability
Call of Duty Server Callvote Map Command Remote Buffer Overflow Vulnerability
Mozilla Client Products Multiple Remote Vulnerabilities
Linux Kernel ALSA snd-page-alloc Local Proc File Information Disclosure Vulnerability
Windows Media Player ASX PlayList File Heap Overflow Vulnerability
Sun Java Runtime Environment Multiple Weaknesses
Cyrus SASL Remote Digest-MD5 Denial of Service Vulnerability
PHP Multiple Input Validation Vulnerabilities
Articles in this issue include: Does Firefox really provide more security than Internet Explorer?, Security risks associated with portable storage devices, 10 tips on protecting customer information from identity theft, Linux security – is it ready for the average user?, How to secure your wireless network, Considerations for preventing information leakage, An introduction to securing Linux with Apache, ProFTPd and Samba and Security vulnerabilities in PHP Web applications
Articles in this issue include: Information security in campus and open environments, Web applications worms – the next Internet infestation, Integrating automated patch and vulnerability management into an enterprise-wide environment, Advanced PHP security – vulnerability containment, Protecting an organization’s public information, Application security: the noveau blame game, What you need to know before migrating your applications to the Web, Clear cut cryptography and How to lock down enterprise data with infrastructure services.
Articles in this issue include: Security vulnerabilities, exploits and patches, PDA attacks: palm sized devices – PC sized threats, Adding service signatures to Nmap, CSO and CISO – perception vs. reality in the security kingdom, Unified threat management: IT security’s silver bullet?, The reality of SQL injection, 12 months of progress for the Microsoft Security Response Centre, Interview with Michal Zalewski, security researcher, OpenSSH for Macintosh and Method for forensic validation of backup tape.
Articles in this issue include: Structured traffic analysis, Access Control Lists in Tiger and Tiger Server – true permission management, Automating I.T. security audits, Biometric security, PDA attacks, part 2: airborne viruses – evolution of the latest threats, Build a custom firewall computer, Lock down your kernel with grsecurity, Interview with Sergey Ryzhikov, director of Bitrix, Best practices for database encryption solutions
Articles in this issue include: Web application firewalls primer, Review: Trustware BufferZone 1.6, Threat analysis using log data, Looking back at computer security in 2005, Writing an enterprise handheld security policy, Digital Rights Management, Revenge of the Web mob, Hardening Windows Server 2003 platforms made easy and Filtering spam server-side
Articles in this issue include: Best practices in enterprise database protection, Quantifying the cost of spyware to the enterprise, Security for websites – breaking sessions to hack into a machine, How to win friends and influence people with IT security certifications, The size of security: the evolution and history of OSSTMM operational security metrics, Interview with Kenny Paterson, Professor of Information Security at Royal Holloway, University of London, PHP and SQL security today, Apache security: Denial of Service attacks, War-driving in Germany – CeBIT 2006
Articles in this issue include: SSH port forwarding: security from two perspectives, part one, An inside job, CEO spotlight: Q and A with Patricia Sueltz at SurfControl, Server monitoring with munin and monit, Compliance vs. awareness in 2006, 2005 *nix malware evolution, Overview of quality security podcasts and coverage of Infosecurity 2006 and InfoSec World 2006.
Articles in this issue include: Payment Card Industry demystified, Skype: how safe is it?, Computer forensics vs. electronic evidence, Review: Acunetix Web Vulnerability Scanner, SSH port forwarding – security from two perspectives, part two, Log management in PCI compliance, Airscanner vulnerability summary: Windows Mobile security software
fails the test, Proactive protection: a panacea for viruses?, Introducing the MySQL Sandbox and Continuous protection of enterprise data: a comprehensive approach
Articles in this issue include: Effectiveness of security by admonition: a case study of security warnings in a web browser setting, Interview with Kurt Sauer, CSO at Skype, Web 2.0 defense with AJAX fingerprinting and filtering, Hack In The Box Security Conference 2006, Where iSCSI fits in enterprise storage networking, Recovering user passwords from cached domain records, Do portable storage solutions compromise business security?, Enterprise data security – a case study and Creating business through virtual trust: how to gain and sustain a competitive advantage using information security.
Articles in this issue include: Microsoft Windows Vista: significant security improvement?, Review: GFI Endpoint Security 3, Interview with Edward Gibson, Chief Security Advisor at Microsoft UK, Top 10 spyware of 2006, The spam problem and open source filtering solutions, Office 2007: new format and new protection/security policy, Wardriving in Paris, Interview with Joanna Rutkowska, security researcher, Climbing the security career mountain: how to get more than just a job, RSA Conference 2007 report, ROT13 is used in Windows? You’re joking! and Data security beyond PCI compliance – protecting sensitive data in a distributed environment.
Articles in this issue include: On the security of e-passports, Review: GFI LANguard Network Security Scanner 8, Critical steps to secure your virtualized environment, Interview with Howard Schmidt, President and CEO R and H Security Consulting, Quantitative look at penetration testing, Integrating ISO 17799 into your Software Development Lifecycle, Public Key Infrastructure (PKI): dead or alive?, Interview with Christen Krogh, Opera Software’s Vice President of Engineering, Super ninja privacy techniques for web application developers, Security economics, iptables – an introduction to a robust firewall, Black Hat Briefings and Training Europe 2007 and Enforcing the network security policy with digital certificates.
Articles in this issue include:
- Enterprise grade remote access
- Review: Centennial Software DeviceWall 4.6
- Solving the keylogger conundrum
- Interview with Jeremiah Grossman, CTO of WhiteHat Security
- The role of log management in operationalizing PCI compliance
- Windows security: how to act against common attack vectors
- Taking ownership of the Trusted Platform Module chip on Intel Macs
- Compliance, IT security and a clear conscience
- Key management for enterprise data encryption
- The menace within
- A closer look at the Cisco CCNP Video Mentor
- Network Access Control
+ We are having a book giveaway!
Articles in this issue include:
– Interview with Janne Uusilehto, Head of Nokia Product Security
– Social engineering social networking services: a LinkedIn example
– The case for automated log management in meeting HIPAA compliance
– Risk decision making: whose call is it?
– Interview with Zulfikar Ramzan, Senior Principal Researcher with the Advanced – Threat Research team at Symantec
– Securing VoIP networks: fraud
– PCI DSS compliance: a difficult but necessary journey
– A security focus on China outsourcing
– A multi layered approach to prevent data leakage
– Safeguard your organization with proper password management
– Interview with Ulf Mattsson, Protegrity CTO
– DEFCON 15
– File format fuzzing
– IS2ME: Information Security to Medium Enterprise
+ We are having another book giveaway!
MySQL Privilege Elevation and Security Bypass Vulnerabilities
MySQL Single Row SubSelect Remote Denial Of Service Vulnerability
Python Repr() Function Remote Code Execution Vulnerability
| M | T | W | T | F | S | S |
|---|---|---|---|---|---|---|
| « Apr | ||||||
| 1 | 2 | 3 | 4 | 5 | 6 | |
| 7 | 8 | 9 | 10 | 11 | 12 | 13 |
| 14 | 15 | 16 | 17 | 18 | 19 | 20 |
| 21 | 22 | 23 | 24 | 25 | 26 | 27 |
| 28 | 29 | 30 | 31 | |||
