Home flaw
 

Keywords :   


Tag: flaw

Critical design flaw in Active Directory could allow for a password change

2014-07-15 13:36:00| InfoWorld: Top News

Microsoft's widely used software for brokering network access has a critical design flaw, an Israeli security firm said, but Microsoft contends the issue has been long-known and defenses are in place. Aorato used public information to craft a proof-of-concept attack that shows how an attacker can change a person's network password, potentially allowing access to other sensitive systems, said Tal Be'ery, its vice president of research.

Tags: password design change directory

 

Android privacy flaw leaks location details over Wi-Fi -- even when Wi-Fi is off

2014-07-07 12:16:21| Wireless - Topix.net

Google Android smartphones and tablets have a major privacy flaw that broadcasts private location data over Wi-Fi even when the connectivity is switched off and it will take some time for Google to fix the error.

Tags: is privacy location off

 
 

Heartbleed Flaw Goes Unpatched on 300K Servers: Report

2014-06-24 01:41:44| TechNewsWorld

Two months after the Heartbleed vulnerability sent frissons of fear down the spines of IT managers everywhere, 300,000 servers still remain vulnerable, Errata Security said. When the flaw was announced in April, Errata found 600,000 servers vulnerable. "The norm is to do no patches at all for some systems, no matter how easy it is to patch," said Errata CEO Robert Graham.

Tags: report servers flaw 300k

 

Companies warned of major security flaw in Google Play apps

2014-06-20 16:07:10| InfoWorld: Top News

University researchers have found that developers often store authentication keys in the Android apps on Google Play, making it possible for criminals to steal corporate or personal data. The major security threat has cast doubt on the effectiveness of the automated scanning tools Google uses to uncover malicious code and other problems that could pose a risk to users.

Tags: play google major security

 

Android 4.4.4 fixes OpenSSL connection hijacking flaw

2014-06-20 14:09:15| InfoWorld: Top News

Less than three weeks after pushing Android 4.4.3 to users of its Nexus devices, Google released a new version of the OS that incorporates a patch for a serious vulnerability identified in the OpenSSL cryptographic library. Android 4.4.4 factory images using build version KTU84P were released for Nexus 4, 5, 7 and 10 late Thursday.

Tags: connection fixes flaw openssl

 

Sites : [10] [11] [12] [13] [14] [15] [16] [17] [18] [19] [20] [21] [22] [23] [24] [25] [26] [27] [28] [29] next »