30.12.2012 Views

download issue 27 here - Help Net Security

download issue 27 here - Help Net Security

download issue 27 here - Help Net Security

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

The dramatic increase of vulnerability disclosures<br />

Vulnerability disclosures are increasing dramatically, having reached record levels<br />

for the first half of 2010, according to IBM. Overall, 4,396 new vulnerabilities were<br />

documented by the X-Force team in the first half of 2010, a 36% increase over the<br />

same time period last year. 55% of all these disclosed vulnerabilities had no<br />

vendor-supplied patch at the end of the period. (www.ibm.com)<br />

Novell releases Cloud <strong>Security</strong> Service<br />

Novell announced the general availability of their Cloud <strong>Security</strong> Service,<br />

hosted in the cloud, either w<strong>here</strong> the provider hosts its application or via a Novell<br />

hosting partner. A user can log on directly or via the enterprise identity system.<br />

The service first verifies the identity and, if successful, will generate an<br />

identity token in the format needed by the SaaS provider. (www.novell.com)<br />

Microsoft releases mitigating tool for latest 0-day bug<br />

HD Moore, creator of Metasploit, revealed that some 40 Windows applications<br />

are affected by a critical vulnerability that can allow attackers to execute<br />

malicious code remotely and infect the computers with malware. Microsoft<br />

released a tool that mitigates the risk by altering the library loading behavior<br />

system-wide or for specific applications. (www.microsoft.com)<br />

www.insecuremag.com ! ! 5

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!