Forum     

Go Back   Digit Technology Discussion Forum > News > Technology News
Register FAQ Calendar Mark Forums Read

Technology News News from the world of technology that our members stumble across. NOTE: Sources to be mentioned at the beginning of each post.


Closed Thread
 
LinkBack Thread Tools Display Modes
Old 23-12-2007, 07:14 PM   #1 (permalink)
is NOT a PC/Mac
 
debsuvra's Avatar
 
Join Date: Sep 2006
Location: Pondicherry
Posts: 974
Exclamation Serious Flash vulns menace tens of thousands websites


Researchers from Google have documented serious vulnerabilities in Adobe Flash content which leave tens of thousands of websites susceptible to attacks that steal the personal details of visitors.
The security bugs reside in Flash applets, the ubiquitous building blocks for movies and graphics that animate sites across the web. Also known as SWF files, they are vulnerable to attacks in which malicious strings are injected into the legitimate code through a technique known as cross-site scripting, or XSS. Currently there are no patches for the vulnerabilities, which are found in sites operated by financial institutions, government agencies and other organizations.

The vulnerabilities are laid out in the book Hacking Exposed Web 2.0: Web 2.0 Security Secrets and Solutions. It is due to hit store shelves soon, but is already in the hands of many security professionals. The book's authors, who work for penetration testing firm iSEC Partners as well as for Google, say a web search reveals more than 500,000 vulnerable applets on major corporate, government and media sites.
"Lots of people are vulnerable, and right now there are no protections available other than to remove those SWFs and wait for the authoring tools and/or Flash player to be updated," says Alex Stamos, one of the book's authors. "In the mean time, people will have to think: 'What kind of flash am I using on my site,' and manually test for vulnerabilities."

Check the SOURCE
debsuvra is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 25-12-2007, 10:46 AM   #2 (permalink)
!! RecuZant By Birth !!
 
naveen_reloaded's Avatar
 
Join Date: May 2005
Location: In Everyone`s Heart
Posts: 2,985
Default Re: Serious Flash vulns menace tens of thousands websites

Dont worry nothing is perfect and especially in the world of software..
__________________
Know My Thoughts..
Visit my Blog @ www.Urssiva.com
Visit My Tech Blog @ www.CloudTechnica.com
naveen_reloaded is offline  
Old 26-12-2007, 01:01 AM   #3 (permalink)
is NOT a PC/Mac
 
debsuvra's Avatar
 
Join Date: Sep 2006
Location: Pondicherry
Posts: 974
Default Re: Serious Flash vulns menace tens of thousands websites

Quote:
Originally Posted by naveen_reloaded
Dont worry nothing is perfect and especially in the world of software..
Yeah you are right abt that!
debsuvra is offline  
Old 27-12-2007, 04:25 PM   #4 (permalink)
ax3
Cool as a CUCUMBAR ! ! !
 
ax3's Avatar
 
Join Date: Dec 2003
Posts: 5,052
Default Re: Serious Flash vulns menace tens of thousands websites

@naveen_reloaded ..... same here .......
__________________
... W H O T ...
ax3 is offline  
Old 27-12-2007, 04:36 PM   #5 (permalink)
-----ATi-----
 
nvidia's Avatar
 
Join Date: May 2007
Location: Bangalore
Posts: 2,322
Default Re: Serious Flash vulns menace tens of thousands websites

OMG! Thanks for the info
__________________
http://twitter.com/akshayms
nvidia is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
flash contents on websites pranavrahul QnA (read only) 7 18-12-2006 05:18 PM
Download thousands of pictures with a few mouse clicks! overclocker QnA (read only) 10 30-11-2006 07:41 PM
flash websites cannot be opened!! dittualex QnA (read only) 7 18-12-2005 06:15 PM
password menace mukul Software Q&A 2 11-09-2005 10:35 AM
vcd menace-dangerous mukul QnA (read only) 7 01-06-2005 06:11 PM

 
Latest Threads
- by chris
- by icebags
- by Tenida

Advertisement




All times are GMT +5.5. The time now is 01:14 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2