Mindblown: a blog about philosophy.

  • Software and OS developers should take responsibility for security

    While 51% of users say computer security should be the responsibility of the user, nearly a third of users feel it is up to software and OS developers. According to a recent poll, 51% of visitors to the VB website think that end users should be held ultimately responsible for computer security – but another…

  • Bumper Patch Tuesday short of one patch

    Excel remains vulnerable as expected fix is dropped. Microsoft has issued its monthly ‘Patch Tuesday’ set of security updates, with a larger than usual crop of patches for a variety of products, including several for the Office range and Internet Explorer browser. However, one significant patch – for a vulnerability in Excel – was withdrawn…

  • Trend vs. ClamAV patent row hots up

    Free software advocates call for boycott of Trend. With legal proceedings ongoing between Trend Micro and gateway appliance specialist Barracuda Networks , concerning Barracuda ‘s implementation of the free, open-source AV software ClamAV and Trend ‘s claims to patents on the use of anti-virus scanners to check email, a Dutch organisation promoting free and open-source…

  • Over 1 per cent of search results include malicious sites

    Google research paper confirms significant increase in number of malware-serving websites. Recent reports of increasing numbers of websites serving malicious content have been confirmed in a paper published by researchers from Google . The researchers report finding over three million URLs serving malware, as detected by at least one anti-virus program, with another three million…

  • Storm Valentines run under way

    Seasonal spam and malware barrage gets going. The expected run of ‘Storm’ spams, pushing links to their latest line of malware disguised as Valentine’s messages, has begun, with many reports of spams appearing all over the world. The Storm botnet controllers have got their timing back on track, after a previous batch of Valentine messages…

  • More PDF exploits seen in wild

    Adobe Reader and Acrobat flaws open way for further document attacks. A string of vulnerabilities in Adobe ‘s PDF viewing and editing software, disclosed late last week by Adobe and iDefense , have been exploited by malicious attacks using PDF files to launch malware. The flaws, which include several buffer overflows, a library path vulnerability…

  • Live Mail CAPTCHA system bypassed

    Spammers use botnet to register accounts on popular free webmail service. Spammers have written a program that cracks the CAPTCHAS used by the Windows Live Mail registration system. The program, thought to have been installed on a large botnet of compromised systems, enables the automated creation of email accounts which can then be used to…

  • Complex attack targets Better Business Bureau

    Sophisticated scam uses personalised mails, real site redirects. A highly sophisticated email phishing scam is using a redirection flaw in the website of the Better Business Bureau (BBB) to lead victims to install spyware. The emails making contact with potential victims are highly targeted, with personalised information and links to the genuine BBB site to…

  • Yahoo! jukebox flaw exploits in wild

    Zero day vulnerability in music system rapidly targeted. Vulnerabilities in Yahoo! Jukebox , a free music-management system provided by Yahoo! , have been exploited by in-the-wild attacks just days after flaws were first disclosed. Two separate buffer overflow issues in ActiveX controls used by the system were reported on February 2nd and 5th, and attacks…

  • FTC fines spammers over $2.5 million

    Drug pushers busted for phony claims and CAN-SPAM breaches. After a successful case brought by the US Federal Trade Commission (FTC), a pharmaceuticals firm and its head have been fined over $2.5 million and ordered to stop spamming and misrepresenting products. The company, Sili Neutraceuticals, and its boss Brian McDaid were found to have made…

Got any book recommendations?