• Home
  • Et Cetera

Infosecurity.US

Oracle Releases Three Enterprise Linux Patches Addressing samba, rsh, httpd Issues

Oracle Releases Three Enterprise Linux Patches Addressing samba, rsh, httpd Issues

By Marc Handelman on July 13th, 2009

Oracle Corporation (NasdaqGS: ORCL) has announced (just before the weekend) availability of three important updates to the database  and business software giant’s Enterprise Linux distribution (specifically packages address issues with rsh, httpd and samba).  Oracle Enterprise Linux is a variant of RED HAT, INC.’s (NYSE: RHT)  Red Hat Enterprise Linux open source based operating system. [...]

No Comments | Read full story »

  • MustRead
  • Features
  • Humor
  • Infosecurity
  • Genius
  • Heroes
  • Video
  • Web Security

Social Security, Predictive Analysis and You

News of successful predictive analysis of United States Social Security Agency Social Security Numbers has come to light (via the always on-target writing of Brian Krebs, via his SecurityFix blog at The Washington Post. Essentially, it’s now possible to guess many, if not all, of a specific individuals’ SSN utilizing freely available public data. Uh [...]

Other posts in MustRead

  • Mitnick Security Re-Direct Incident Reported
  • ATM Security Researcher Censored
  • Beckstrom Moves Into ICANN Presidency, Can He Clean It Up?
  • Consumer Backlash Pummels Nokia Siemens Networks, Lawful Intercept Claimed
  • False Twitter Email Invitations Possess Pernicious Payload

Google The New Borg?

Google User Tracking Now Confirmed…Is It Evil?
Google Inc. (NasdaqGS: GOOG) has announced the search giants’ tracking of individual web browsing habits (through the company’s DoubleClick cookie insertion) to facilitate AdSense pattern matching and delivery of targeting placements. As is to be expected, privacy advocates are enraged, and in response, the company is offering a Mozilla [...]

Other posts in Features

  • Estonian Cyber Defence Centre Of Excellence Call For Papers
  • Obama Twitter Account Hacked – Update: Twitter Crack Culprit Discovered
  • Arab Hackers Target Israeli Websites
  • WorldBank Slaps SATYAM’s Wrist…No Soup For You
  • Danchev: Islamic Cyber Jihadist Group Terminated

Dilbert: Bonus

Other posts in Humor

  • Dinosaur Comics: T-Rex Rap
  • XKCD: 2038
  • Wondermark: Sweep
  • Catbert: Evil HR Director
  • Dilbert: Government Contract

Microsoft Releases July Security Patch Smorgasbord, Critical Vulnerabilities Addressed

Microsoft Corporation (NasdaqGS: MSFT) has released its ubiquitous Advance Notification for the software giant’s typical monthly Patch Tuesday operating system and application security patchfest . Slated for 2009/07/14 TUE, the announcement, as in the past, has a wide ranging affect on a variety of Microsoft, as well as third party products. Affected software includes versions [...]

Other posts in Infosecurity

  • Evron: Why North Korean DDOS Attacks Aren’t Cyberwarfare…
  • Masked Passwords Debate Redux
  • Social Security, Predictive Analysis and You
  • Luxembourg Crypto Team Proffers Theoretical AES Cracks
  • URL Shortening XSS Vulnerability Reported

Annual Repost – Remembering Alan Shepard, Jr., Rear Admiral USN [Retired]

Excerpted and edited from an original post I published last year on 2008/05/05:
Lest We Forget: On this date, in 1961, the late, great, Alan B. Shepard, Jr. (Rear Admiral, United States Navy, Retired), became our First Astronaut, after serving our country in the Pacific during World War II. Talk about a career…. Read his Official [...]

Other posts in Genius

  • Genius: Barbara Liskov, Ph.D., Named Winner Of 2008 ACM A.M. Turing Award
  • Genius: ACM President Appointed Dame Commander of the Order of the British Empire
  • Widenius: Bug Ridden MySQL 5.1 GA Released
  • Genius: Walter Kitundu – 2008 MacArthur Foundation Fellow
  • Genius: Whitfield Diffie, Ph.D.

In Tribute – Canada, United States, United Kingdom, Free French, Free Poles, Kingdom of Norway Armed Forces D-DAY 6 June 1944

Perhaps Remembering The Events Of Sixty-Four Years Ago, This Week , Will Permit A Modicum Of Recollection Of Why, In Truth, We Are Free.

Other posts in Heroes

  • United States Memorial Day 2009 – Honoring Those That Have Fallen
  • Annual Repost – Remembering Alan Shepard, Jr., Rear Admiral USN [Retired]
  • National Medal Of Honor Day
  • President Abraham Lincoln
  • Reverend Martin Luther King, Jr.

Genius: Luis von Ahn

Infosecurity.US continues our popular Genius Series with a focus on Luis von Ahn, Ph.D., MacArthur Foundation Fellowship award winner, and Professor of Computer Science at Carnegie Mellon University. A short bio from the MacArthur Foundation appears after the page jump, along with a video.

Other posts in Video

  • VMware Releases Fusion Update
  • ENISA Releases Quarterly Review
  • Video: First Chinese Spacewalk
  • Database Security Superheroes
  • Why We Pay Attention To Aviv Raff

Apple Updates Safari Browser

News, overnight, of Apple Inc.’s (NasdaqGS: AAPL) Safari update, now at 4.0.2. The update addresses MITRE CVE IDs: CVE-2009-1724 and CVE-ID: CVE-2009-1725 (both WebKit security issues). More information, direct from One Infinite Loop, appears after the jump.

Other posts in Web Security

  • A Clear® Failure …
  • Fine, Handcrafted Persian DDOS
  • False Twitter Email Invitations Possess Pernicious Payload
  • Oracle Unleashes Update Beast With 16 Individual OEL Patches (Updated)
  • Oracle Updates OEL, Important iSCSI Bug Fix

Dilbert: Bonus

By Marc Handelman on July 13th, 2009 | No Comments »

Dilbert.com

Categories: Brilliant, Dilbert, Humor
Tags: Brilliant, Dilbert, Humor

Oracle Releases Three Enterprise Linux Patches Addressing samba, rsh, httpd Issues

By Marc Handelman on July 13th, 2009 | No Comments »

Durer, Forshortening Woodcut

Oracle Corporation (NasdaqGS: ORCL) has announced (just before the weekend) availability of three important updates to the database  and business software giant’s Enterprise Linux distribution (specifically packages address issues with rsh, httpd and samba).  Oracle Enterprise Linux is a variant of RED HAT, INC.’s (NYSE: RHT)  Red Hat Enterprise Linux open source based operating system. Additional information, inclusive of the release notes and requisite linkage appears, after the jump. Read More »

Categories: Oracle Corporation, Oracle Enterprise Linux
Tags: Features, Open Source Security, Oracle Corporation, Oracle Enterprise Linux, Red Hat Enterprise Linux

Microsoft Releases July Security Patch Smorgasbord, Critical Vulnerabilities Addressed

By Marc Handelman on July 10th, 2009 | No Comments »

street_side_signage

Microsoft Corporation (NasdaqGS: MSFT) has released its ubiquitous Advance Notification for the software giant’s typical monthly Patch Tuesday operating system and application security patchfest . Slated for 2009/07/14 TUE, the announcement, as in the past, has a wide ranging affect on a variety of Microsoft, as well as third party products. Affected software includes versions of Microsoft Windows, Publisher, ISA and other products. Included in planned patch activity is mitigation for at least three highly critical vulnerabilities, of which, two are under reportedly heavy, active attack (IE and DirectShow) More information related to the announcement appears after the jump.

Read More »

Categories: Code Cruft, Infosecurity, Internet Explorer 7, Internet Explorer 8, Microsoft Security Advisory, Microsoft Windows, Weakest Link
Tags: Code Cruft, Microsoft Corporation, Microsoft Internet Security and Acceleration Server, Microsoft Office, Microsoft Security Bulletin, Microsoft Windows

Dinosaur Comics: T-Rex Rap

By comeex on July 10th, 2009 | No Comments »

Categories: Brilliant, Dinosaur Comics, Humor
Tags: Brilliant, Dinosaur Comics, Humor, T-Rex

Evron: Why North Korean DDOS Attacks Aren’t Cyberwarfare…

By Marc Handelman on July 10th, 2009 | No Comments »

WooHooo (with apologies to Slim Pickens)

In an outstanding thought piece, Gadi Evron, via the HackedOff blog at DarkReading explains, quite eloquently, why the currently reported North Korean attributed DDoS scanrios are NOT cyberwarfare. Except, of course,  in the minds of certain media types… A short snippet, including linkage, appears after the jump.

Read More »

Categories: Infosecurity
Tags: Cyber-warfare, Denial-of-service attack, Federal government of the United States, Information Warfare, North Korea

XKCD: 2038

By comeex on July 10th, 2009 | No Comments »

2038

Categories: Brilliant, Humor, UNIX, XKCD
Tags: 2038, 64 Bit, Brilliant, Humor, UNIX, XKCD

Masked Passwords Debate Redux

By Marc Handelman on July 10th, 2009 | No Comments »

Hackman

The great Masked Password Debate is apparently raging on… Bruce Schneier, the highly respected Chief Security Technology Officer of BT Counterpane Security (his blog is always a MustRead) has clarified his statements regarding the utilization of the masked password/shoulder surfing debacle. More information via El Reg, appears after the jump.

From The Register: “Schneier says he was ‘probably wrong’ on masked passwords“

Security expert Bruce Schneier has said that he probably made a mistake when he backed a usability expert’s plea to website operators to stop masking passwords as users type because it does not improve security and makes sites harder to use.

Usability guru Jakob Nielsen said last month that sites should show most passwords in clear text as users type them. Nielsen is the web’s most famous usability expert. OUT-LAW put his observations to Schneier, a widely-respected expert on IT security. He backed Nielsen’s view.

  • Stop Password Masking (Jakob Nielsen’s Alertbox) (useit.com)
  • Password masking considered harmful? (nonnotablenatterings.blogspot.com)
  • Should Passwords Be Masked in Online Forms? (blogstorm.co.uk)
  • Nielsen Recommends Not Masking Passwords (it.slashdot.org)
  • Stop masking passwords (kottke.org)
  • Rediscovering Jakob Nielsen (37signals.com)
  • How Safe Are Your Passwords? (littlegreenfootballs.com)
Reblog this post [with Zemanta]

Categories: Common Sense, Data Security, Infosecurity
Tags: Bruce Schneier, Cleartext, Features, Obfuscation, Password, Shoulder Surfing, Usability

Wondermark: Sweep

By comeex on July 9th, 2009 | No Comments »

Wondermark.com/531

Categories: Brilliant, Humor, Wondermark
Tags: Brilliant, Elephants, Humor, Wondermark

Apple Updates Safari Browser

By Marc Handelman on July 9th, 2009 | No Comments »

Safari

News, overnight, of Apple Inc.’s (NasdaqGS: AAPL) Safari update, now at 4.0.2. The update addresses MITRE CVE IDs: CVE-2009-1724 and CVE-ID: CVE-2009-1725 (both WebKit security issues). More information, direct from One Infinite Loop, appears after the jump. Read More »

Categories: Apple Inc., Browser Security, MAC OSX, MAC OSX Security, Web Security
Tags: Apple, Browser Security, Mac OS X, Safari, Safari 4, WebKit

Catbert: Evil HR Director

By comeex on July 9th, 2009 | No Comments »

Dilbert.com

Categories: Brilliant, Catbert, Dilbert, Humor
Tags: Brilliant, Catbert, Dilbert, HR Evils, Humor

  • Tags
  • Bookmarks
  • Latest
  • Random

Humor Features Brilliant Network Security Data Security XKCD Common Sense Dilbert Dinosaur Comics Information Security Microsoft Oracle Corporation Open Source Oracle Enterprise Linux Cybercrime Web Security wondermark.com Operating system Microsoft Windows National Security Cryptography Software Patches Database Security Web Browser Security Red Hat Wondermark Security MustRead Red Hat Enterprise Linux Mozilla Firefox Malware Cybercrime Vectors Code Cruft What Were They Thinking Heroes Apple Mac OS X Oracle LINUX Microsoft Corporation Google Anti-Virus Oracle Security ICANN Twitter

  • Apple
  • BSD
  • Closson
  • Debian
  • Finnigan
  • Hoff
  • Insecure
  • MSRC
  • NSA SEL
  • openSUSE
  • RedHat
  • SANS
  • Schneier
  • Security Eunoia
  • Securosis
  • Shimel
  • Dilbert: Bonus
  • Oracle Releases Three Enterprise Linux Patches Addressing samba, rsh, httpd Issues
  • Microsoft Releases July Security Patch Smorgasbord, Critical Vulnerabilities Addressed
  • Dinosaur Comics: T-Rex Rap
  • Evron: Why North Korean DDOS Attacks Aren’t Cyberwarfare…
  • XKCD: 2038
  • Masked Passwords Debate Redux
  • Wondermark: Sweep
  • Apple Updates Safari Browser
  • Catbert: Evil HR Director
  • Weekend Off…iPhone Tinker
  • Newcastle University Researchers: Microsoft CAPTCHA Defeated
  • Rogue SysAdmin Receives Early Holiday Gift – One Year Jail Term
  • WordPress 2.6.3 XSS RSS Feed Generator Vulnerability Revealed. Mitigated.
  • Best Western: 10 Guests Suffered Data Loss, Not 8 Million.
  • SecurityFocus Interviews Mozilla Security Team
  • Evron: Social Nets, Security and Citizen Journalism
  • XKCD: 2008 Christmas Special
  • 2008 ISSA Awards Nominations
  • The NSA Open Source Project – TOKENEER
Subscribe

Twitter: Follow Me KnotOriginal: fine art to hang on your body and walls SANS FriendFeed: Subscribe

Yes, I’m Ready To Help The American Red Cross SANS Security Reading Room Featured Blog - Blogs.com Member - Security Bloggers Network

Featured Video

RSS Security Bloggers Network

  • Sourcefire VRT firebreathing pig 2009/07/13 Nigel Houghton
  • Flaw in Microsoft Office Web Components could allow remote compromise 2009/07/13 Steve Ragan
  • Interesting Information Security Bits for 07/13/2009 2009/07/13 kriggins
  • Internet Storm center to yellow : refix your windows office (exploits and attacks underway) [belsec] 2009/07/13 Belgian Security Blognetwork
  • 45.000 belgian EID cards broken [belsec] 2009/07/13 Belgian Security Blognetwork
  • Use the Right Words! [/dev/random] 2009/07/13 Belgian Security Blognetwork
  • Threat level high: Microsoft vulnerabilities ITW 2009/07/13 Tom Kelchner
  • W32.Ackantta.G@mm mass-mailing worm 2009/07/13 Kellep A. Charles, CISA, CISSP, NSA-IAM

RSS Cryptography

  • ZRTP Voice-over-IP encryption scheme 2009/07/13
  • New Elliptic Curve Cryptography Record 2009/07/12
  • Multi-precision integer arithmetic using C++ 2009/07/10
  • Government honours veterans of Bletchley Park at last 2009/07/10
  • Homomorphic Encryption Breakthrough 2009/07/09
  • Thales Offer for nCipher Targets Customer Base 2009/07/09
  • Understanding Crypto Performance in Embedded Systems: Part 1 2009/07/08

RSS SANS ISC

  • Vulnerability in Microsoft Office Web Components Control Could Allow Remote Code Execution, (Mon, Jul 13th) 2009/07/13
  • Security Update available for Wyse Device Manager, (Mon, Jul 13th) 2009/07/13
  • * Infocon raised to yellow for Excel Web Components ActiveX vulnerability, (Mon, Jul 13th) 2009/07/13

RSS Oracle

  • The Catch and Release…of my Dream Candidate by Heather Parrot 2009/07/13
  • Mix metrics for July 13, 2009 2009/07/13
  • SoaSuite 11g Launched 2009/07/13
  • Inertia and Separation Anxiety Drive Design 2009/07/13
  • Check to Make Sure My New Record Doesn’t Already Exist 2009/07/13
  • OBIEE Enable508 2009/07/13
  • Testing the new Oracle video player 2009/07/13

RSS MySQL

  • Introducing the MySQL Librarian 2009/07/13
  • The New MySQL Server Release Model 2009/06/25
  • MySQL Developer, meet “Quan” (aka the MySQL Query Analyzer) 2009/05/14
  • Why Move to MySQL from Microsoft SQL Server? 2009/05/03
  • A Quick Look at MySQL 5.4 2009/04/20
  • Developing Database Applications Using MySQL Connector/C++ 2009/04/14
  • Installing MySQL Connector/C++ from Source 2009/04/14

RSS Linux

  • Microsoft Introduces a New Version of Silverlight - TMCnet 2009/07/13
  • A Great HDD Partition Util, Now With Firefox - Tom's Guide 2009/07/13
  • Why is Acer Still Launching a Netbook with XP and Android? - jkOnTheRun 2009/07/13
  • Microsoft pushes Windows Embedded for Smartbooks, ARM-powered devices - Liliputing 2009/07/13
  • Why Is OpenSolaris Gathering Dust on a Shelf at Oracle? - PC World 2009/07/13

RSS MAC OSX

  • Vintage Mac Jewelry Brings New Life to Dead Computers 2009/07/13 Nicole Martinelli
  • How to Get Free Coffee with Your iPhone 2009/07/13 Lonnie Lazar
  • iPod Put Through Washing Machine, Plays On 2009/07/13 Nicole Martinelli
  • Opinion: Understanding the Apple Rumor Mill is a Matter of Trust 2009/07/13 Lonnie Lazar
  • Gadget Deals: Jensen iPod Music System, RCA Digital Camcorder and Mac Family Box Set 2009/07/13 Ed Sutherland
  • Peek-a-Boo: Racy iPhone Apps OK’d By Apple Abound on iTunes 2009/07/10 Nicole Martinelli
  • iPod Coached Actors in Rom Com “500 Days of Summer” 2009/07/10 Nicole Martinelli

RSS Microsoft

  • Microsoft Security Advisory 973472 Released 2009/07/13 MSRCTEAM
  • Questions about Timing and Microsoft Security Advisory 972890 2009/07/09 MSRCTEAM
  • July 2009 Advance Notification 2009/07/08 MSRCTEAM
  • Microsoft Security Advisory 972890 Released 2009/07/06 MSRCTEAM
  • Security Bulletin Webcast Video, Questions and Answers – June 2009 2009/06/12 MSRCTEAM
  • June 2009 Bulletin Release 2009/06/09 MSRCTEAM
  • June 2009 Advance Notification 2009/06/04 MSRCTEAM

RSS Network

  • New UC system set to integrate with Exchange 2009/07/13
  • Emulex rejects Broadcom's final buyout bid 2009/07/09
  • CompuServe closes after 30 years 2009/07/07
  • Broadband tax not enough to cover fibre rollout 2009/07/06
  • Bay Networks could come back from the dead 2009/07/01
  • Cisco looks to offer virtual voice 2009/06/30
  • Regus opens rentable telepresence office suite 2009/06/30

GoogleTechישראל


  • TheCom


  • סקר TIM: כ-13 אחוז גולשים מהסלולרי
    ynet ידיעות אחרונות
    בישראל כ-4.3 מיליון גולשים באינטרנט. 90 אחוזים גולשים ממחשבים נייחים, 13 אחוז גולשים מהסלולר, כך עולה מסקר TIM שנערך ביוני האחרון בישראל כיום כ- 4.3 מיליון משתמשי אינטרנט בגילאי 13 ומעלה, ומספר השעות המדווח של גלישה ביום ממוצע עומד על כ- 3.5 שעות לגולש - כך עולה מסקר TIM של מכון TNS טלסקר, שנערך ביוני האחרון. על פי האומדן, במהלך השנה החולפת הצטרפו למניין הגולשים כרבע מליון גולשים חדשים, ומספר הגולשים טיפס מ-4.01 מיליון ביוני 2008 ל-4.27 מיליון ביוני 2009, כולל אוכלוסייה יהודית וערבית בגילאי 13 ומעלה. ...

Daily Posts

July 2009
S M T W T F S
« Jun    
 1234
567891011
12131415161718
19202122232425
262728293031  
Creative Commons License
The Infosecurity.US Blog is licensed under a Creative Commons Attribution-Share Alike 3.0 United States License.

Find the best blogs at Blogs.com.

Creative Commons Attribution-Share Alike 3.0 U.S. License ©2009 Infosecurity.US

Subscribe