je.st
news
Tag: attackers
Samsung flaw allows attackers to bypass Android lock screen
2013-03-04 17:35:25| MobileTechNews
A potential security flaw was discovered and reported allowing an attacker to bypass the device's home screen lock.
Tags: screen
samsung
lock
bypass
Researchers warn of new Java exploit being used by attackers
2013-03-01 17:05:38| InfoWorld: Top News
A new exploit for a previously unknown and unpatched Java vulnerability is being actively used by attackers to infect computers with malware, according to researchers from security firm FireEye."We observed successful exploitation against browsers that have Java v1.6 Update 41 and Java v1.7 Update 15 installed," FireEye researchers Darien Kindlund and Yichong Lin said Thursday in a blog post.
Tags: used
java
researchers
exploit
Browser-hijacking malware talks to attackers using SPF email validation protocol
2013-01-28 22:37:29| InfoWorld: Top News
A new Trojan program that displays rogue advertisements during browsing sessions uses a DNS-based email validation protocol called the SPF (Sender Policy Framework ) in order to receive instructions from attackers without being detected, according to security researchers from Symantec.
Tags: email
protocol
talks
validation
Major flaw in Java-based Spring Framework allows remote-code execution by attackers
2013-01-17 20:16:15| InfoWorld: Top News
There's a major flaw in the Java-based Spring Framework open-source development code that allows remote-code execution by attackers against applications built with it, according to the security firm Aspect Security, which identified the flaw. "It allows attackers to inject code," says Jeff Williams, CEO at Aspect Security. The weakness is in what's called the "expression language" function in the Spring Framework development code.
Tags: major
spring
framework
execution
Java zero-day vulnerability actively exploited by attackers
2013-01-10 19:58:41| InfoWorld: Top News
An exploit for a previously unknown and currently unpatched vulnerability in Java is being used by cybercriminals to infect computers with malware, according to security researchers. An independent malware researcher who uses the online moniker Kafeine reported the existence of the exploit "in the wild" -- being actively used in attacks -- on his blog on Thursday.
Tags: java
actively
vulnerability
exploited