je.st
news
Tag: flaw
Critical design flaw in Active Directory could allow for a password change
2014-07-15 13:36:00| InfoWorld: Top News
Microsoft's widely used software for brokering network access has a critical design flaw, an Israeli security firm said, but Microsoft contends the issue has been long-known and defenses are in place. Aorato used public information to craft a proof-of-concept attack that shows how an attacker can change a person's network password, potentially allowing access to other sensitive systems, said Tal Be'ery, its vice president of research.
Tags: password
design
change
directory
Android privacy flaw leaks location details over Wi-Fi -- even when Wi-Fi is off
2014-07-07 12:16:21| Wireless - Topix.net
Google Android smartphones and tablets have a major privacy flaw that broadcasts private location data over Wi-Fi even when the connectivity is switched off and it will take some time for Google to fix the error.
Heartbleed Flaw Goes Unpatched on 300K Servers: Report
2014-06-24 01:41:44| TechNewsWorld
Two months after the Heartbleed vulnerability sent frissons of fear down the spines of IT managers everywhere, 300,000 servers still remain vulnerable, Errata Security said. When the flaw was announced in April, Errata found 600,000 servers vulnerable. "The norm is to do no patches at all for some systems, no matter how easy it is to patch," said Errata CEO Robert Graham.
Tags: report
servers
flaw
300k
Companies warned of major security flaw in Google Play apps
2014-06-20 16:07:10| InfoWorld: Top News
University researchers have found that developers often store authentication keys in the Android apps on Google Play, making it possible for criminals to steal corporate or personal data. The major security threat has cast doubt on the effectiveness of the automated scanning tools Google uses to uncover malicious code and other problems that could pose a risk to users.
Tags: play
google
major
security
Android 4.4.4 fixes OpenSSL connection hijacking flaw
2014-06-20 14:09:15| InfoWorld: Top News
Less than three weeks after pushing Android 4.4.3 to users of its Nexus devices, Google released a new version of the OS that incorporates a patch for a serious vulnerability identified in the OpenSSL cryptographic library. Android 4.4.4 factory images using build version KTU84P were released for Nexus 4, 5, 7 and 10 late Thursday.
Tags: connection
fixes
flaw
openssl
Sites : [10] [11] [12] [13] [14] [15] [16] [17] [18] [19] [20] [21] [22] [23] [24] [25] [26] [27] [28] [29] next »