How to Prepare for Microsoft Certifications Earning a Microsoft Certification could be the beginning or continuation of an enduring career that will include the strengthening of their technical skills, collaboration with other professionals ...

Readmore

Prometric offers vouchers of up to 25% off ... Hello people, I just received an email from Prometric informing a discount of up to 25% on Microsoft Certifications. The promotion is valid until December 31, 2009 or even last for the ...

Readmore

50% discount on Microsoft Certifications to ... Hello guys, Prometric is providing for students a 50% discount on Microsoft certifications. The promotion is valid until June 30, 2010. For more details visit the ...

Readmore

Book - Administration and Maintenance Environment ... Hello people, For those who are preparing for the exam 70-290 book Administration and Maintenance Environment Microsoft Windows Server 2003 is a great material. I recommend.

Readmore

Prometric offers vouchers of up to 25% off ... Hello people, I just received an email from Prometric informing a discount of up to 25% on Microsoft Certifications. The promotion is valid until December 31, 2009 or even last for the ...

Readmore

twitter

Twitter Facebook

Security Research Group in September promises to transform the 'Month of Bugs'

Category: Adobe , Apple , Internet Explorer , Microsoft , Mozilla , Security

Throughout the month, researchers Abysssec promise to disclose vulnerability in s software companies like Microsoft, Adobe, Mozilla and Apple.

A little-known group of security researchers promises to start from this Wednesday (1/9) a full month for the dissemination of bugs, which are responsible for vulnerabilities in software companies like Adobe, Microsoft, Mozilla, Apple and others .

But the researcher who originated the "festivals bugs" four years ago is not so optimistic about the impact that such action may have.

The "Month of Bugs Abysssec Undisclosed" (MOAUB) disclose flaws in Excel and Microsoft Internet Explorer, the control panel in web hosting cPanel web, Linux, and various other software, said in August the Abysssec Security Research in your blog.

Continue Reading

Adobe releases emergency patch for PDF reader on Thursday

Category: Adobe , Security

The latest Adobe Reader bug was disclosed by researcher Charlie Miller, during the Black Hat security conference in 2010.

Adobe has announced a security patch to fix a vulnerability considered critical for users of Adobe Reader, next Thursday (18/8).

Two weeks ago, the company has promised to fix the fault with an emergency fix outside the traditional schedule updates. However until now had not been set a specific release date.

The bug was disclosed by researcher Charlie Miller, in July, during the Black Hat security conference in 2010, when he demonstrated how a tool called BitBlaze could possible reduce the time required to identify a flaw in a system.

Miller, an analyst at Independent Security Evaluators, is well known for finding security flaws in the popular PDF viewer. In March this year, he showed how a simple tool can search control vulnerabilities and potential bugs in software.

According to Adobe, the new update will include fixes for other vulnerabilities in addition to this discovery by Mille. It will also be published a security bulletin that includes links to the update of Reader and Acrobat on the company website.

After this, the next update will be on October 12, according to the quarterly schedule.

Continue Reading

Those accessing porn sites are more prone to cyber attacks, study finds

Category: Adobe , Security

Internet users accessing pornographic sites usually do not update their software properly, making them a great target for cybercriminals, says a study by researchers at the University of Santa Barbara, the Secure Systems Lab and the Institute eurecom.

The survey's authors believe to be the first to study the risks of security for access to pornographic sites, instead of looking only for an economic bias. We analyzed thousands of websites with adult content and came to the conclusion that they are more dangerous than the internet in general.

"We found a relatively large number of these pages that use questionable methods and techniques that, at best, could be described as bleak," says the document.

According to Gilbert Wondracek of Secure Systems Lab, one of the main problems is that most of these sites is managed by companies with low profit margins, preventing investment in technology to protect your product from hackers. "And the competition is very high," he says.

More than a third of the portals pornographic material that does not contain charged by some kind of deception that tried to trick the user. One of the methods used included a sort of collector JavaScript, which hijacked the browser and made it difficult for certain window was closed.

Some had hidden links, or by pointing to one, the address to which the Internet user would be directed not appear. In the paid sites, 10.9% employ this ruse, the free rate rises to 26.2%.

"This is very problematic, since it not only leaves the user unaware of the destination address, mask malicious activity as well as cross-site scripting attacks (XSS) and cross site request forgery (CSRF)," says the study.

Dangerous activity
More than 3% of adult content portals surveyed unleashed malicious attacks, such as improper code execution, registry changes and file downloads are not required, including spyware.

To get more data on those who visit such sites, the researchers built on their own, two, three and paid services to Internet users were directed to pages created. These visitors were surveyed from Web server logs, which included information about the versions of the programs related to the browser.

Specifically, three software had special attention: the Flash Player , Adobe programs, PDF and Microsoft Office suite.

"Together, they account for seven vulnerability s in the recent past, and a criminal can buy tools that exploit these flaws and compromise the machine of visitors, "says the study.

The authors spent $ 161.84 with the three services of brokers hired to direct traffic 49 000 Internet users in Europe and the United States to their sites. Over 20,000 of these users had at least one vulnerability in your computer s and more than 5700 had more than one.

"If we were hustlers, we would have harmed thousands of Internet users," says Wondracek.

Thus, the researchers concluded that, with a small investment, you can infect thousands of machines with malicious code, and that the portals have adult content "business models based on very dubious practices."

Finally, it is important to note that around 12% of all web pages are dedicated to this type of material.

Adobe fixes bug in update tool Flash and Reader

Category: Adobe , Security

Adobe released on Wednesday (24/2) a fix for a vulnerability in critical Download Manager Windows utility used to download the two most popular products of the company, Adobe Reader and Flash Player.

Failure "potentially allows attackers to download and install unauthorized software on the users system," he acknowledged in an Adobe security bulletin.

The Israeli security researcher Aviv Raff disclosed the vulnerability last week when he said that attackers could use the Download Manager to install any executable file, including attack code.

"If you go to the Adobe website to install a security update for Flash, you will be exposed to a zero-day attack," said Raff.

The Download Manager is not the update mechanism of Reader and Flash Player - this is Adobe Updater - but who manages the transfer of files from Adobe's website.

Among other things, the manager resume interrupted downloads and queues up multiple files for download. The utility is not an Adobe product, but a modified version of getPlus +, licensed from NOS Microsystems.

Even if the Download Manager is removed from Windows when the system is restarted, Raff said he still represents damage because many machines are switched on for days and weeks before being disconnected.

"Adobe recommends users verify that the vulnerable version of Adobe Download Manager is not installed on their machines," the company said in the bulletin.

The steps that Adobe recommends that made include search the hard drive for a folder "C: \ Program Files \ NOS \" or enter "services.msc" in a Windows command line, then delete the "Helper getPlus' of list.

Users need not tamper with the Reader or Flash Player, Adobe said, as the vulnerability does not affect the programs.

Source:

pixel Adobe corrige bug em ferramenta de atualização do Flash e do Reader