Norman

Eight (nine) critical updates for Microsoft systems in August 2010

Aug 11th, 2010 | By

In its security bulletin summary for August 2010 Microsoft has published eight updates for critical and six updates for important vulnerabilities in its operating systems / applications. In addition to this is the out-of-band critical update published 2 August. Critical is Microsoft’s highest vulnerability rating. A summary describing briefly the vulnerabilities is available from Microsoft’s
[continue reading...]



Critical vulnerability in Adobe Reader and Acrobat

Aug 9th, 2010 | By

A critical vulnerability exists in Adobe Reader and Acrobat version 9.3.3 and earlier versions. Critical is Adobe’s highest vulnerability rating and could when exploited allow malicious native-code to execute, potentially without a user being aware. This vulnerability was announced during the Black Hat conference in USA late July this year. As of this writing no
[continue reading...]



Self-protection from malware – part II

Aug 6th, 2010 | By

Introduction  In the previous article in this series about self-protection, we discussed examples of attempts to trick you to expose yourself for malicious software. Infected web sites are currently the most used technique for propagation of malware. By increasing your own awareness of the techniques the cyber criminals use, you can avoid this exposure. Infected
[continue reading...]



Self-protection from malware – part I

Aug 5th, 2010 | By

Introduction There are several levels where you can set up protection mechanisms in order to minimize the risk of falling victim to malware. Different protection mechanisms are needed depending on which danger situation we are discussing. One useful way to look at the protection situations is like this: Personal awareness (actions prior to exposure) Protection
[continue reading...]



Exploits for .LNK vulnerability are growing fast

Jul 28th, 2010 | By

Earlier this month “VirusBlokAda” reported about StuxNet, the first exploit using the .LNK vulnerability (Windows Shortcut) in all of Microsoft operating systems. Malware may compromise any Windows operating system by exploiting the way file managers, (also 3rd party file managers like Total Commander), displays icons. Specially crafted shortcuts use this vulnerability to execute malware. W32/Stuxnet
[continue reading...]



Three critical updates for Microsoft systems in July 2010

Jul 13th, 2010 | By

In its security bulletin summary for July 2010 Microsoft has published three updates for critical and one update for important vulnerabilities in its operating systems / applications. Critical is Microsoft’s highest vulnerability rating. A summary describing briefly the vulnerabilities is available from Microsoft’s Security Bulletin Summary for July 2010. From this page you will also find
[continue reading...]



Microsoft Security Bulletins advance notification

Jul 9th, 2010 | By

Microsoft plans to release three updates for critical vulnerabilities and one update for important vulnerabilities 13 July 2010. More information in Microsoft Security Bulletin Advance Notification for July 2010.



Malware infections by telephone

Jul 8th, 2010 | By

Introduction An interesting news item has appeared in several UK-based media lately. Several end users have received phone calls from someone who present themselves as security personnel. The caller informs that the computer is infected by malware and offers to help. Varying social engineering techniques are used to persuade the recipient to allow the use
[continue reading...]



The first part of 2010 – overview of security issues

Jul 1st, 2010 | By

Introduction In this Norman report on security issues during the first half of 2010, we will go through some incidents and tendencies. We will focus on those that Norman perceives as most important in these past six months. General tendencies and trends The growth in malicious software One indicator which shows the growth in malicious software during a
[continue reading...]



Critical udates for Adobe Acrobat and Reader

Jun 30th, 2010 | By

Adobe has released updates for several critical vulnerabilities in Adobe Acrobat 9.3.2 and Reader 9.3.2 and earlier versions of these products. Critical is Adobe’s highest vulnerability rating and could when exploited allow malicious native-code to execute, potentially without a user being aware. Among the vulnerabilities addressed by these updates are the so-called PDF /LAUNCH vulnerability
[continue reading...]