Google Chrome hacked in 5 Minutes using 2 Bugs.. Read More!

Google Chrome is via 2 bugs completely cracked, within 5 minutes. And then again cracked by another. Both hackers knew from the sandbox to escape and run code to execute.

The hack has happened in the Pwn2Own cracking contest at CanSecWest security meeting. The first cracking is done by the French security company VUPEN. In addition, Chrome also caught by another cracker, which thus assured of $ 60,000 prize money from Google. The Chrome-maker awards a total of $ 1 million for detected and reported vulnerabilities in its web browser.

The Internet giant will reward security researchers who exploits, complete with bugs used for this purpose, disclose to software makers. In late February, Google has decided to afford his own premiums, and no longer through Pwn2Own. The reason is that cracking game no longer requires that exploits and bugs will be shared with the creator of the cracked software.

Chrome-cracker when equal VUPEN has already shown no interest in Google’s terms. The French security company sells information about discovered security holes at large corporations and governments. And software vendors who have a contract with VUPEN.

Post to Twitter

Hacker forces dutch isp KPN to bring Server Down!

A hacker has found serious vulnerabilities in a server of KPN, on which different customer databases were managed. The server is temporarily offline.

The weaknesses were discovered by chance by security and privacy expert Iliad el Matani, who reported the leak to Webwereld. He could see a configuration file that was created on March 24, 2009. The system is used by 15,000 customers, mainly SMEs, to manage their website.

Leaky old software

The server runs on an outdated version of Linux. Then an Apache server 2.0.52 installed. In this version are several serious weaknesses. The installed PHP version is badly outdated. The company uses version 4.4.9, which includes several serious weaknesses are. The latest version is 5.4.0.

Also included is version 2.11.9.5 of phpMyAdmin, a tool to manage databases. The most current version is 3.4.10.1, which the poem known vulnerabilities.

For all outdated software on the server of KPN are many leaks. On a generally accepted scale for the severity score a number of leaks 10.0. That is the maximum score.

Read more: webwereld

Post to Twitter

Hacked Dutch ISP KPN Sends Email and Password information in the same Letter,

After last week that dutch ISP KPN was hacked, they published customer information from another hack online. The company then locked two million e-mail accounts as a precaution, and called on people to change the password.

The customers who changed their password received a confirmation by mail, but may have a letter with their e-mail address and password. This combination may lead to fraud and is not good cases for KPN customers.

The ISP now recognizes that this is not the right way and promises in the newspaper’s policy to adjust. From Sunday the situation is reversed. Meanwhile, it has over half a million customers changed their password.

KPN and Security..not a good combination!

Post to Twitter

See the iMessage iPhone exploit being performed by Ross of the Verge

As we all know, iPHONES are assembled by young children in Asian country’s,  but testing these Phones for security flaws and other issues should be done by grown ups…..nice to have a Zillion (CR)apps but i prefer something secure! ( source: http://blogs.cio.com/tom_kaneshige/the_american_way_apple_iphones_made_by_children )

 

 

Post to Twitter

Malware infected between 1 million and 5 million Android phones this afternoon!

 

Discovered: 2012 January 27

Updated: 2012 January 28
Type: Trojan
Android.Counterclank is a Trojan horse for Android devices that steals information.
More information! http://blog.imperva.com/2012/01/massive-virus-hits-android.html
I just love my Blackberry’s! :-)

 

Post to Twitter

WordPress Appliance - Powered by TurnKey Linux