<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Hero &#187; Mail</title>
	<atom:link href="http://sechero.com/tag/mail/feed/" rel="self" type="application/rss+xml" />
	<link>http://sechero.com</link>
	<description>If it's about security, you heard it here first</description>
	<lastBuildDate>Mon, 12 Jul 2010 23:27:38 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>out of box scanner</title>
		<link>http://sechero.com/out-of-box-scanner/</link>
		<comments>http://sechero.com/out-of-box-scanner/#comments</comments>
		<pubDate>Sat, 05 Dec 2009 19:44:26 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=21025</guid>
		<description><![CDATA[Re: out of box scanner Posted by Nathan Grandbois on Dec 04 John Bennett wrote: John, You might want to take a look at the WASC list here: http://projects.webappsec.org/Web-Application-Security-Scanner-List The thread is still under discussion on the webappsec mailing list. _nathan URL: http://seclists.org/pen-test/2009/Dec/5]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/pen-test/2009/Dec/5">Re: out of box scanner</a></h1>
<p>Posted by Nathan Grandbois on Dec 04</p>
<p>John Bennett wrote:</p>
<p>John,</p>
<p>You might want to take a look at the WASC list here:</p>
<p><a href="http://projects.webappsec.org/Web-Application-Security-Scanner-List" rel="nofollow">http://projects.webappsec.org/Web-Application-Security-Scanner-List</a></p>
<p>The thread is still under discussion on the webappsec mailing list.</p>
<p>_nathan
<p>URL: <a href="http://seclists.org/pen-test/2009/Dec/5">http://seclists.org/pen-test/2009/Dec/5</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/out-of-box-scanner/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>insecure elements in https protected pages</title>
		<link>http://sechero.com/insecure-elements-in-https-protected-pages/</link>
		<comments>http://sechero.com/insecure-elements-in-https-protected-pages/#comments</comments>
		<pubDate>Mon, 19 Oct 2009 01:45:25 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20977</guid>
		<description><![CDATA[insecure elements in https protected pages Posted by Mohammad Hosein on Oct 18 in a certain web application e.g gmail there are times the whole communication is secured by ssl and sometimes &#34;there are insecure elements&#34; that raise questions . i&#8217;m not a web professional . how to find these insecure elements ? and how [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Oct/251">insecure elements in https protected pages</a></h1>
<p>Posted by Mohammad Hosein on Oct 18</p>
<p>in a certain web application e.g gmail there are times the whole</p>
<p>communication is secured by ssl and sometimes &quot;there are insecure elements&quot;</p>
<p>that raise questions . i&#8217;m not a web professional . how to find these</p>
<p>insecure elements ? and how to evaluate if these elements are the results of</p>
<p>a successful man in the middle attack or not ?</p>
<p>regards
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Oct/251">http://seclists.org/fulldisclosure/2009/Oct/251</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/insecure-elements-in-https-protected-pages/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>3339 (email_and_web_security_appliance)</title>
		<link>http://sechero.com/3339-email_and_web_security_appliance/</link>
		<comments>http://sechero.com/3339-email_and_web_security_appliance/#comments</comments>
		<pubDate>Sat, 26 Sep 2009 17:56:40 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20955</guid>
		<description><![CDATA[CVE-2009-3339 (email_and_web_security_appliance) Unspecified vulnerability in McAfee Email and Web Security Appliance 5.1 VMtrial allows remote attackers to read arbitrary files via unknown vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.9 through 8.11. NOTE: as of 20090917, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3339">CVE-2009-3339 (email_and_web_security_appliance)</a></h1>
<p>Unspecified vulnerability in McAfee Email and Web Security Appliance 5.1 VMtrial allows remote attackers to read arbitrary files via unknown vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.9 through 8.11.  NOTE: as of 20090917, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
<p>URL: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3339">http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-3339</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/3339-email_and_web_security_appliance/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>computer crime statistics</title>
		<link>http://sechero.com/computer-crime-statistics/</link>
		<comments>http://sechero.com/computer-crime-statistics/#comments</comments>
		<pubDate>Mon, 27 Jul 2009 21:48:29 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20936</guid>
		<description><![CDATA[RE: computer crime statistics &#60;!&#8211; Envelope-to: email@address Delivery-date: Mon, 27 Jul 2009 22:22:29 +0100 Received: from outgoing.securityfocus.com ([205.206.231.27] helo=outgoing3.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1MVXeP-0004ru-8D for email@address; Mon, 27 Jul 2009 22:22:29 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing3.securityfocus.com (Postfix) with QMQP id 7CBE42371F8; Mon, 27 Jul 2009 15:19:13 -0600 (MDT) Mailing-List: [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://lists.rootsecure.net/?p=view&amp;l=bugtraq&amp;m=88325">RE: computer crime statistics</a></h1>
<p>&lt;!&#8211;<br />
Envelope-to: email@address<br />
Delivery-date: Mon, 27 Jul 2009 22:22:29 +0100<br />
Received: from <a href="http://outgoing.securityfocus.com" title="http://outgoing.securityfocus.com" target="_blank">outgoing.securityfocus.com</a> ([205.206.231.27] helo=outgoing3.securityfocus.com)<br />
by <a href="http://lt.network5.net" title="http://lt.network5.net" target="_blank">lt.network5.net</a> with esmtp (Exim 4.43)<br />
id 1MVXeP-0004ru-8D<br />
for email@address; Mon, 27 Jul 2009 22:22:29 +0100<br />
Received: from <a href="http://lists2.securityfocus.com" title="http://lists2.securityfocus.com" target="_blank">lists2.securityfocus.com</a> (<a href="http://lists2.securityfocus.com" title="http://lists2.securityfocus.com" target="_blank">lists2.securityfocus.com</a> [205.206.231.20])<br />
by <a href="http://outgoing3.securityfocus.com" title="http://outgoing3.securityfocus.com" target="_blank">outgoing3.securityfocus.com</a> (Postfix) with QMQP<br />
id 7CBE42371F8; Mon, 27 Jul 2009 15:19:13 -0600 (MDT)<br />
Mailing-List: contact &lt;a<br />
  href=&#8221;mailto:bugtraq-help@securityfocus.com&#8221;&gt;bugtraq-help@securityfocus.com</a>; run by ezmlm<br />
Precedence: bulk<br />
List-Id: &amp;lt;bugtraq.list-id.securityfocus.com&amp;gt;<br />
List-Post: &amp;lt;mailto:bugtraq@securityfocus.com&amp;gt;<br />
List-Help: &amp;lt;mailto:bugtraq-help@securityfocus.com&amp;gt;<br />
List-Unsubscribe: &amp;lt;mailto:bugtraq-unsubscribe@securityfocus.com&amp;gt;<br />
List-Subscribe: &amp;lt;mailto:bugtraq-subscribe@securityfocus.com&amp;gt;<br />
Delivered-To: mailing list &lt;a<br />
  href=&#8221;mailto:bugtraq@securityfocus.com&#8221;&gt;bugtraq@securityfocus.com</a><br />
Delivered-To: moderator for &lt;a<br />
  href=&#8221;mailto:bugtraq@securityfocus.com&#8221;&gt;bugtraq@securityfocus.com</a><br />
Received: (qmail 10596 invoked from network); 27 Jul 2009 21:15:21 -0000<br />
Content-class: urn:content-classes:message<br />
MIME-Version: 1.0<br />
Subject: RE: computer crime statistics<br />
X-MimeOLE: Produced By Microsoft Exchange V6.5<br />
Date: Mon, 27 Jul 2009 15:15:13 -0600<br />
Content-Type: multipart/signed;<br />
micalg=SHA1;<br />
protocol=&amp;quot;application/x-pkcs7-signature&amp;quot;;<br />
boundary=&amp;quot;&#8212;-=_NextPart_000_057C_01CA0ECD.09DC2F70&amp;quot;<br />
Message-ID: &amp;lt;631BA9640B7F2246936CD03153E2F92E20F909@Libmail2.ualibrary.ualberta.ca&amp;gt;<br />
In-Reply-To: &amp;lt;001a01ca0dfa$d7dde8b0$8799ba10$@com&amp;gt;<br />
X-MS-Has-Attach: yes<br />
X-MS-TNEF-Correlator:<br />
Thread-Topic: computer crime statistics<br />
Thread-Index: AcoN+oX+xKj011IHRImdAYPfW8fNdQAADRdwAEEC6NA=<br />
References: &amp;lt;001a01ca0dfa$d7dde8b0$8799ba10$@com&amp;gt;<br />
From: &amp;quot;McDonnell, Michael&amp;quot; &amp;lt;michael.mcdonnell@ualberta.ca&amp;gt;<br />
To: &amp;quot;Choon Ming&amp;quot; &amp;lt;choonming2002@gmail.com&amp;gt;,<br />
&amp;lt;bugtraq@securityfocus.com&amp;gt;,<br />
&amp;lt;full-disclosure-bounces@lists.grok.org.uk&amp;gt;<br />
X-IMAPbase: 1176125385 9714<br />
Status: O<br />
X-UID: 9714<br />
Content-Length: 5925<br />
X-Keywords:</p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/computer-crime-statistics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SQLi Vulnerability Scanners</title>
		<link>http://sechero.com/sqli-vulnerability-scanners/</link>
		<comments>http://sechero.com/sqli-vulnerability-scanners/#comments</comments>
		<pubDate>Mon, 27 Jul 2009 08:48:25 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20924</guid>
		<description><![CDATA[Re: SQLi Vulnerability Scanners Posted by Taras on Jul 26 On Fri, 17 Jul 2009 13:17:10 -0300 Ulises2k &#60;ulises2k_at_gmail&#46;com&#62; wrote: &#62; Try this: &#62; &#62; GUI &#62; http://w3af.sf.net W3AF has also perfect console UI and furthermore it has SQLmap integration. URL: http://seclists.org/pen-test/2009/Jul/0097.html]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/pen-test/2009/Jul/0097.html">Re: SQLi Vulnerability Scanners</a></h1>
<p>Posted by Taras on Jul 26
<p></p>
<p>
On Fri, 17 Jul 2009 13:17:10 -0300</p>
<p>
Ulises2k &lt;ulises2k_at_gmail&#46;com&gt; wrote:</p>
<p></p>
<p>&gt; Try this:</p>
<p>
&gt;</p>
<p>
&gt; GUI</p>
<p>
&gt; <a href="http://w3af.sf.net">http://w3af.sf.net</a></p>
<p>
W3AF has also perfect console UI and furthermore it has SQLmap integration.</p>
<p></p>
<p>
<p>URL: <a href="http://seclists.org/pen-test/2009/Jul/0097.html">http://seclists.org/pen-test/2009/Jul/0097.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/sqli-vulnerability-scanners/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>n3td3v honored at blackhat 2009 USA &#8211; best security intrusion specialist</title>
		<link>http://sechero.com/n3td3v-honored-at-blackhat-2009-usa-best-security-intrusion-specialist/</link>
		<comments>http://sechero.com/n3td3v-honored-at-blackhat-2009-usa-best-security-intrusion-specialist/#comments</comments>
		<pubDate>Sun, 26 Jul 2009 23:48:25 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20921</guid>
		<description><![CDATA[n3td3v honored at blackhat 2009 USA &#8211; best security intrusion specialist Posted by antisecav_at_hushmail.com on Jul 26 ATTENTION n3tD3v (www.twitter.com/n3td3v): Thank you for all your help with the antisec movement. We hope your grant with the intelligence community goes well! This is Alex Jones, from Infowars, Over and out. URL: http://seclists.org/fulldisclosure/2009/Jul/0408.html]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Jul/0408.html">n3td3v honored at blackhat 2009 USA &#8211; best security intrusion specialist</a></h1>
<p>Posted by antisecav_at_hushmail.com on Jul 26
<p></p>
<p>
ATTENTION n3tD3v (<a href="http://www.twitter.com/n3td3v" title="http://www.twitter.com/n3td3v" target="_blank">www.twitter.com/n3td3v</a>):</p>
<p></p>
<p>
<p>Thank you for all your help with the antisec movement.</p>
<p></p>
<p>We hope your grant with the intelligence community goes well!</p>
<p></p>
<p>
<p>This is Alex Jones, from Infowars,</p>
<p></p>
<p>Over and out.</p>
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Jul/0408.html">http://seclists.org/fulldisclosure/2009/Jul/0408.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/n3td3v-honored-at-blackhat-2009-usa-best-security-intrusion-specialist/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>antisec and n3td3v responsible for Matasano hacking</title>
		<link>http://sechero.com/antisec-and-n3td3v-responsible-for-matasano-hacking/</link>
		<comments>http://sechero.com/antisec-and-n3td3v-responsible-for-matasano-hacking/#comments</comments>
		<pubDate>Sun, 26 Jul 2009 02:49:04 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20914</guid>
		<description><![CDATA[Breaking: antisec and n3td3v responsible for Matasano hacking Posted by antisecav_at_hushmail.com on Jul 25 GREAT BRITAIN &#8211; n3td3v/antisec is proud to announce official partnership with antisec (&#34;the scene&#34;) In England, we care about intelligence. There is no better way to do intelligence then to compromise computers. We are clearly superior at security. We eat up [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Jul/0405.html">Breaking: antisec and n3td3v responsible for Matasano hacking</a></h1>
<p>Posted by antisecav_at_hushmail.com on Jul 25
<p></p>
<p>
GREAT BRITAIN &#8211; n3td3v/antisec is proud to announce official</p>
<p>
partnership with antisec (&quot;the scene&quot;)</p>
<p></p>
<p>In England, we care about intelligence. There is no better way to</p>
<p>
do intelligence then to compromise computers. We are clearly</p>
<p>
superior at security.</p>
<p></p>
<p>We eat up the competition&#8230;.
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Jul/0405.html">http://seclists.org/fulldisclosure/2009/Jul/0405.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/antisec-and-n3td3v-responsible-for-matasano-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IXXO Cart! Standalone and Joomla Component SQL Injection</title>
		<link>http://sechero.com/ixxo-cart-standalone-and-joomla-component-sql-injection/</link>
		<comments>http://sechero.com/ixxo-cart-standalone-and-joomla-component-sql-injection/#comments</comments>
		<pubDate>Sun, 26 Jul 2009 01:48:24 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Database]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20911</guid>
		<description><![CDATA[Re: IXXO Cart! Standalone and Joomla Component SQL Injection Posted by YEHG Group on Jul 26 Thanks, I&#8217;ll update the database of http://www.owasp.org/index.php/Category:OWASP_Joomla_Vulnerability_Scanner_Project On Sat, Jul 25, 2009 at 3:57 PM, SmOk3&#60;smok3f00_at_gmail&#46;com&#62; wrote: &#62; Original advisory at: &#62; &#8230; URL: http://seclists.org/fulldisclosure/2009/Jul/0394.html]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Jul/0394.html">Re:  IXXO Cart! Standalone and Joomla Component SQL Injection</a></h1>
<p>Posted by YEHG Group on Jul 26
<p></p>
<p>
Thanks, I&#8217;ll update the database of</p>
<p>
<a href="http://www.owasp.org/index.php/Category:OWASP_Joomla_Vulnerability_Scanner_Project">http://www.owasp.org/index.php/Category:OWASP_Joomla_Vulnerability_Scanner_Project</a></p>
<p></p>
<p>On Sat, Jul 25, 2009 at 3:57 PM, SmOk3&lt;smok3f00_at_gmail&#46;com&gt; wrote:</p>
<p>
&gt; Original advisory at:</p>
<p>
&gt; &#8230;
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Jul/0394.html">http://seclists.org/fulldisclosure/2009/Jul/0394.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/ixxo-cart-standalone-and-joomla-component-sql-injection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>AntiSec is DEAD</title>
		<link>http://sechero.com/antisec-is-dead/</link>
		<comments>http://sechero.com/antisec-is-dead/#comments</comments>
		<pubDate>Sat, 25 Jul 2009 15:48:26 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20908</guid>
		<description><![CDATA[Re: AntiSec is DEAD Posted by srshaxsir_at_hushmail.com on Jul 25 You are an idiot. anti-sec never threatened to show any 0day, it is against the point you moron.. unless you believe anyone that signs his email with &#8216;anti-sec&#8217;. We are still online, we are still auditing and hacking your code on a daily basis, you [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Jul/0390.html">Re:  AntiSec is DEAD</a></h1>
<p>Posted by srshaxsir_at_hushmail.com on Jul 25
<p></p>
<p></p>
<p>You are an idiot.</p>
<p></p>
<p>anti-sec never threatened to show any 0day, it is against the point</p>
<p>
you moron.. unless you believe anyone that signs his email with</p>
<p>
&#8216;anti-sec&#8217;.</p>
<p></p>
<p>We are still online, we are still auditing and hacking your code on</p>
<p>
a daily basis, you just won&#8217;t know about it anymore until you&#8230;
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Jul/0390.html">http://seclists.org/fulldisclosure/2009/Jul/0390.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/antisec-is-dead/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Adobe Reader / Acrobat and Flash Remote Code Execution</title>
		<link>http://sechero.com/adobe-reader-acrobat-and-flash-remote-code-execution/</link>
		<comments>http://sechero.com/adobe-reader-acrobat-and-flash-remote-code-execution/#comments</comments>
		<pubDate>Fri, 24 Jul 2009 02:48:07 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20895</guid>
		<description><![CDATA[Adobe Reader / Acrobat and Flash Remote Code Execution Summary: Fortinet&#8217;s FortiGuard Global Security Research Team investigates a vulnerability in multiple Adobe products through SWF. Impact: Remote Code Execution. Affected Software: Adobe Reader and Acrobat 9.1.2 and earlier 9.x versions Adobe Flash Player 9.0.159.0 and 10.0.22.87 and earlier 9.x and 10.x versions Solutions: The FortiGuard [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.fortiguardcenter.com/advisory/FGA-2009-29.html">Adobe Reader / Acrobat and Flash Remote Code Execution</a></h1>
<p><b>Summary:</b></p>
<p>Fortinet&#8217;s FortiGuard Global Security Research Team investigates a vulnerability in multiple Adobe products through SWF.</p>
<p><b>Impact:</b></p>
<p>Remote Code Execution.</p>
<p><b>Affected Software:</b>
<ul>
<li>Adobe Reader and Acrobat 9.1.2 and earlier 9.x versions</li>
<li>Adobe Flash Player 9.0.159.0 and 10.0.22.87 and earlier 9.x and 10.x versions</li>
</ul>
<p><b>Solutions:</b>
<ul>
<li>The FortiGuard Global Security Research Team released a signature &#8220;Adobe.Products.SWF.Remote.Code.Execution&#8221;, which covers this specific vulnerability.</li>
<li>Apply the suggested workaround <a href="http://www.adobe.com/support/security/advisories/apsa09-03.html">from Adobe</a></li>
</ul>
<p>The FortiGuard Global Security Research Team continues to monitor attacks against this vulnerability.</p>
<p>Fortinet customers who subscribe to Fortinetˇ¦s intrusion prevention (IPS) service should be protected against this remote code execution vulnerability. Fortinetˇ¦s IPS service is one component of FortiGuard Subscription Services, which also offer comprehensive solutions such as antivirus, Web content filtering and antispam capabilities. These services enable protection against threats on both application and network layers. FortiGuard Services are continuously updated by the FortiGuard Global Security Research Team, which enables Fortinet to deliver a combination of multi-layered security intelligence and true zero-day protection from new and emerging threats. These updates are delivered to all FortiGate, FortiMail and FortiClient products. Fortinet strictly follows responsible disclosure guidelines to ensure optimum protection during a threat&#8217;s lifecycle. </p>
<p><b>References:</b>
<ul>
<li>Adobe Security Advisory: <a href="http://www.adobe.com/support/security/advisories/apsa09-03.html">APSA09-03</a></li>
<li>Adobe PSIRT: <a href="http://blogs.adobe.com/psirt/2009/07/potential_adobe_reader_and_fla.html">http://blogs.adobe.com/psirt/2009/07/potential_adobe_reader_and_fla.html</a></li>
<li>CVE ID: <a href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2009-1862">CVE-2009-1862</a></li>
<li>Bugtraq ID: <a href="http://www.securityfocus.com/bid/35759">35759</a></li>
</ul>
<p>
<p>URL: <a href="http://www.fortiguardcenter.com/advisory/FGA-2009-29.html">http://www.fortiguardcenter.com/advisory/FGA-2009-29.html</a></p>
<p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/adobe-reader-acrobat-and-flash-remote-code-execution/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Major spam campaign abusing Yahoo Groups</title>
		<link>http://sechero.com/major-spam-campaign-abusing-yahoo-groups/</link>
		<comments>http://sechero.com/major-spam-campaign-abusing-yahoo-groups/#comments</comments>
		<pubDate>Thu, 23 Jul 2009 21:48:11 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Proxy]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20890</guid>
		<description><![CDATA[Major spam campaign abusing Yahoo Groups About one million spam emails per hour are being sent to Yahoo Groups and other free web services, including Google Groups and LiveJournal, containing bogus pharmaceutical advertising content. URL: http://feedproxy.google.com/~r/SCMagazineHome/~3/Hhgm3VDE7z4/]]></description>
			<content:encoded><![CDATA[<h1><a href="http://feedproxy.google.com/~r/SCMagazineHome/~3/Hhgm3VDE7z4/">Major spam campaign abusing Yahoo Groups</a></h1>
<p>About one million spam emails per hour are being sent to Yahoo Groups and other free web services, including Google Groups and LiveJournal, containing bogus pharmaceutical advertising content.</p>
<p><a href="http://feedads.g.doubleclick.net/~a/v4f8Bqq_tK_qZKZiMHPIkC3j4vo/0/da"><img border="0" src="http://feedads.g.doubleclick.net/~a/v4f8Bqq_tK_qZKZiMHPIkC3j4vo/0/di" /></a></p>
<p><a href="http://feedads.g.doubleclick.net/~a/v4f8Bqq_tK_qZKZiMHPIkC3j4vo/1/da"><img border="0" src="http://feedads.g.doubleclick.net/~a/v4f8Bqq_tK_qZKZiMHPIkC3j4vo/1/di" /></a></p>
<p><img height="1" src="http://feeds.feedburner.com/~r/SCMagazineHome/~4/Hhgm3VDE7z4" width="1" />
<p>URL: <a href="http://feedproxy.google.com/~r/SCMagazineHome/~3/Hhgm3VDE7z4/">http://feedproxy.google.com/~r/SCMagazineHome/~3/Hhgm3VDE7z4/</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/major-spam-campaign-abusing-yahoo-groups/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Troll exploit of mailing lists and newsgroups</title>
		<link>http://sechero.com/troll-exploit-of-mailing-lists-and-newsgroups/</link>
		<comments>http://sechero.com/troll-exploit-of-mailing-lists-and-newsgroups/#comments</comments>
		<pubDate>Thu, 23 Jul 2009 02:48:02 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20876</guid>
		<description><![CDATA[Re: [Mailing list Vulnerability] Troll exploit of mailing lists and newsgroups Posted by Stephen Menard on Jul 22 Your Clock&#8217;s off DOH! time for a beer Received: from lists.grok.org.uk (localhost [127.0.0.1]) &#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;by lists.grok.org.uk (Postfix) with ESMTP id CB44E1CB; &#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;Wed, 22 Jul 2009 15:45:17 +0100 (BST) &#8230; URL: http://seclists.org/fulldisclosure/2009/Jul/0350.html]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Jul/0350.html">Re:  [Mailing list Vulnerability] Troll exploit of mailing lists and newsgroups</a></h1>
<p>Posted by Stephen Menard on Jul 22
<p></p>
<p>
Your Clock&#8217;s off</p>
<p>
DOH! time for a beer</p>
<p></p>
<p>Received: from <a href="http://lists.grok.org" title="http://lists.grok.org" target="_blank">lists.grok.org</a>.uk (localhost [127.0.0.1])</p>
<p>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;by <a href="http://lists.grok.org" title="http://lists.grok.org" target="_blank">lists.grok.org</a>.uk (Postfix) with ESMTP id CB44E1CB;</p>
<p>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Wed, 22 Jul 2009 15:45:17 +0100 (BST)</p>
<p>&#8230;
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Jul/0350.html">http://seclists.org/fulldisclosure/2009/Jul/0350.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/troll-exploit-of-mailing-lists-and-newsgroups/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Oral arguments in FISA Amendments Act lawsuit</title>
		<link>http://sechero.com/oral-arguments-in-fisa-amendments-act-lawsuit/</link>
		<comments>http://sechero.com/oral-arguments-in-fisa-amendments-act-lawsuit/#comments</comments>
		<pubDate>Wed, 22 Jul 2009 18:47:57 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20868</guid>
		<description><![CDATA[Oral arguments in FISA Amendments Act lawsuit The American Civil Liberties Union was in court today for oral arguments in its landmark challenge to the unconstitutional FISA Amendments Act (FAA), which gives the government virtually unchecked power to intercept Americans&#8217; international e-mails and telephone calls. The ACLU filed a lawsuit to stop the government from [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.pogowasright.org/?p=2088">Oral arguments in FISA Amendments Act lawsuit</a></h1>
<p>The American Civil Liberties Union was in court today for oral arguments in its landmark challenge to the unconstitutional FISA Amendments Act (FAA), which gives the government virtually unchecked power to intercept Americans&#8217; international e-mails and telephone calls. The ACLU filed a lawsuit to stop the government from spying under &#8230;
<p>URL: <a href="http://www.pogowasright.org/?p=2088">http://www.pogowasright.org/?p=2088</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/oral-arguments-in-fisa-amendments-act-lawsuit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>sec</title>
		<link>http://sechero.com/sec/</link>
		<comments>http://sechero.com/sec/#comments</comments>
		<pubDate>Tue, 21 Jul 2009 06:47:42 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20841</guid>
		<description><![CDATA[Re: http:cms.netrix.hu &#8211; hacked by anti-sec Posted by Kema Druma on Jul 21 OMG, WTF is this. ANTI-SEC has successfully pwnd a useless website using lulzy sql injection from milw0rm.com. u assholes, get a name like &#34;SHITHOLE&#34; and post ur shit somewhere else and stop polluting anti-sec and the anti-sec movement and security mailing list [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://seclists.org/fulldisclosure/2009/Jul/0295.html">Re:  http:cms.netrix.hu &#8211; hacked by anti-sec</a></h1>
<p>Posted by Kema Druma on Jul 21
<p></p>
<p>
OMG, WTF is this.</p>
<p>
ANTI-SEC has successfully pwnd a useless website using lulzy sql</p>
<p>
injection from <a href="http://milw0rm.com" title="http://milw0rm.com" target="_blank">milw0rm.com</a>.</p>
<p>
u assholes, get a name like &quot;SHITHOLE&quot; and post ur shit somewhere else</p>
<p>
and stop polluting anti-sec and the anti-sec movement and</p>
<p>
security mailing list FFS.</p>
<p>
GO DIE&#8230;
<p>URL: <a href="http://seclists.org/fulldisclosure/2009/Jul/0295.html">http://seclists.org/fulldisclosure/2009/Jul/0295.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/sec/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>4117</title>
		<link>http://sechero.com/4117/</link>
		<comments>http://sechero.com/4117/#comments</comments>
		<pubDate>Sat, 30 May 2009 13:49:38 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[AdWare]]></category>
		<category><![CDATA[Downloader]]></category>
		<category><![CDATA[Fake]]></category>
		<category><![CDATA[Lab]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[Win32]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[4117 PDF/Exploit.Pidief.ONG, VBS/TrojanDownloader.Small.L (6), Win32/Adware.BHO.GBP (2), Win32/Adware.BHO.NCG (2), Win32/Adware.GooochiBiz (4), Win32/Adware.WSearch, Win32/Agent.NXT (2), Win32/AutoRun.Agent.NP, Win32/AutoRun.Delf.BY, Win32/Delf.PFS, Win32/FlyStudio.NML, Win32/FlyStudio.NMM (5), Win32/Hupigon, Win32/Hupigon.NPE, Win32/KillAV.NDV (2), Win32/Koutodoor.AF (3), Win32/Koutodoor.G, Win32/Peerfrag.AG, Win32/Poison.NBC (2), Win32/PSW.Agent.NLP (2), Win32/PSW.OnLineGames.NMP (2), Win32/PSW.OnLineGames.NMY (3), Win32/PSW.OnLineGames.NNM, Win32/PSW.OnLineGames.NSU (2), Win32/PSW.OnLineGames.OKE, Win32/PSW.WOW.DZI, Win32/PSWTool.MailPassView.151 (4), Win32/Rootkit.Agent.NLY, Win32/Rustock.NIH, Win32/Rustock.NIK (3), Win32/Spy.Banker.AFFJ, Win32/Spy.Banker.QLG (4), Win32/TrojanDownloader.Bredolab.AA (2), Win32/TrojanDownloader.FakeAlert.AAX, Win32/TrojanDownloader.FakeAlert.ABV, Win32/TrojanDownloader.FakeAlert.ACU, Win32/TrojanDownloader.FakeAlert.ACV [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.eset.com/joomla/index.php?option=com_content&amp;task=view&amp;id=6089&amp;Itemid=26">4117</a></h1>
</p>
<p>PDF/Exploit.Pidief.ONG, VBS/TrojanDownloader.Small.L (6), Win32/Adware.BHO.GBP (2), Win32/Adware.BHO.NCG (2), Win32/Adware.GooochiBiz (4), Win32/Adware.WSearch, Win32/Agent.NXT (2), Win32/AutoRun.Agent.NP, Win32/AutoRun.Delf.BY, Win32/Delf.PFS, Win32/FlyStudio.NML, Win32/FlyStudio.NMM (5), Win32/Hupigon, Win32/Hupigon.NPE, Win32/KillAV.NDV (2), Win32/Koutodoor.AF (3), Win32/Koutodoor.G, Win32/Peerfrag.AG, Win32/Poison.NBC (2), Win32/PSW.Agent.NLP (2), Win32/PSW.OnLineGames.NMP (2), Win32/PSW.OnLineGames.NMY (3), Win32/PSW.OnLineGames.NNM, Win32/PSW.OnLineGames.NSU (2), Win32/PSW.OnLineGames.OKE, Win32/PSW.WOW.DZI, Win32/PSWTool.MailPassView.151 (4), Win32/Rootkit.Agent.NLY, Win32/Rustock.NIH, Win32/Rustock.NIK (3), Win32/Spy.Banker.AFFJ, Win32/Spy.Banker.QLG (4), Win32/TrojanDownloader.Bredolab.AA (2), Win32/TrojanDownloader.FakeAlert.AAX, Win32/TrojanDownloader.FakeAlert.ABV, Win32/TrojanDownloader.FakeAlert.ACU, Win32/TrojanDownloader.FakeAlert.ACV (2), Win32/TrojanDownloader.Zlob.CZJ, Win32/TrojanDropperDelf.NNM (2), Win32/TrojanDropper.VB.NHZ (2), Win32/Wigon.KU (2), Win32/Wigon.KY
<p>URL: <a href="http://www.eset.com/joomla/index.php?option=com_content&amp;task=view&amp;id=6089&amp;Itemid=26">http://www.eset.com/joomla/index.php?option=com_content&amp;task=view&amp;id=6089&amp;Itemid=26</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/4117/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

