<rss version="2.0"><channel><title>SecurePurdue - Handler's Log</title><link>http://www.purdue.edu/securepurdue/news/securePurdueRSS_6.xml</link><description>Collaborating to create the university of the future through IT. Service quality, powerful partnerships, and a great place to work.</description><pubDate>Wed, 25 Aug 2010 09:28:24 -0400</pubDate><generator>Cascade Server</generator><webMaster>itap@purdue.edu</webMaster><item><title>Critical Java Zero Day Exploit</title><link>http://www.purdue.edu/securepurdue/news/2012/critical-java-zero-day-exploit.cfm</link><description>A new vulnerability has been discovered that affects all versions of Java 7 (1.7) and active attacks have been confirmed.</description><pubDate>Tue, 28 Aug 2012 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/6eea1232ac1e8c3500cade5832acd722</guid></item><item><title>OSX Flashback Trojan - Detecting and Removing</title><link>http://www.purdue.edu/securepurdue/news/2012/osx-flashback-trojan---detecting-and-removing.cfm</link><description>Detecting and removing the Flashback Trojan from your Mac</description><pubDate>Tue, 10 Apr 2012 16:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/9d62eafdac1e8c36019edfc9fd6e4aab</guid></item><item><title>Phishing Email - allegedly from Purdue help desk blocked</title><link>http://www.purdue.edu/securepurdue/news/2012/phishing-email---allegedly-from-purdue-help-desk-blocked.cfm</link><description>Phishing attempt allegedly from Purdue help-desk blocked.</description><pubDate>Wed, 28 Mar 2012 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/5abb06f6ac1e8c3500d38dbcc6c3909b</guid></item><item><title>11-9-2011 Microsoft Windows win32k.sys TrueType Font Parsing Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2011/Update 11-9-2011 microsoft-windows-win32k.sys-truetype-font-parsing-vulnerability.cfm</link><description>A TrueType Font Parsing vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system.</description><pubDate>Fri, 04 Nov 2011 03:30:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/70221f49ac1e8c3500ef264533adf892</guid></item><item><title>Multiple Vulnerabilities in Adobe ColdFusion</title><link>http://www.purdue.edu/securepurdue/news/2011/multiple-vulnerabilities-in-adobe-coldfusion.cfm</link><description>Multiple vulnerabilities have been reported in Adobe ColdFusion, which can be exploited by malicious people to conduct cross-site request forgery attacks, cause a DoS (Denial of Service), and compromise a vulnerable system.</description><pubDate>Wed, 15 Jun 2011 15:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/9a2356cd80d2073500033174ca9c7778</guid></item><item><title>Bug in Blackberry causes Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2011/bug-in-blackberry-causes-vulnerability.cfm</link><description>Bug in BlackBerry Browser exposes vulnerability.</description><pubDate>Thu, 17 Mar 2011 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/c4f23a1280d2073500e34f1d72fc7fcf</guid></item><item><title>Vulnerability in MHTML Could Allow Information Disclosure</title><link>http://www.purdue.edu/securepurdue/news/2011/vulnerability-in-mhtml-could-allow-information-disclosure.cfm</link><description>There is a reported vulnerability in Windows that could allow for information disclosure via malicious scripts in MHTML pages.</description><pubDate>Mon, 31 Jan 2011 15:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/ec90da9a80d207350136b688306799ae</guid></item><item><title>Firesheep will steal your passwords!</title><link>http://www.purdue.edu/securepurdue/news/2010/firesheep-will-steal-your-passwords.cfm</link><description>A new firefox add-on will allow novice computer users to steal your Facebook, Twitter and other login information when using open Wi-Fi spots.</description><pubDate>Wed, 27 Oct 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ee3a0db280d2073601ea00240b9d7744</guid></item><item><title>MPlayer FLIC Processing Multiple Array Indexing Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2010/mplayer-flic-processing-multiple-array-indexing-vulnerabilities.cfm</link><description>MPlayer FLIC Processing Multiple Array Indexing Vulnerabilities</description><pubDate>Fri, 01 Oct 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/68e1606280d2073501b602b9db3fd8f3</guid></item><item><title>Security News and Info for 9/03/2010</title><link>http://www.purdue.edu/securepurdue/news/2010/security-news-and-info-for-9032010.cfm</link><description>Security News and Info for 9/03/2010</description><pubDate>Fri, 03 Sep 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ed5193e280d207360146817defc20e9a</guid></item><item><title>Security News for 9/02/2010</title><link>http://www.purdue.edu/securepurdue/news/2010/security-news-for-9022010.cfm</link><description>Security News and Info</description><pubDate>Fri, 03 Sep 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/d7a2aa9c80d2073501b602b99a4d8bd0</guid></item><item><title>Security Issues for 9/01/2010</title><link>http://www.purdue.edu/securepurdue/news/2010/security-issues-for-9012010.cfm</link><description>Latest Security Issuses for a wired world</description><pubDate>Thu, 02 Sep 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/d3ea136080d2073501b602b921684868</guid></item><item><title>Toy Story 3 Facebook Scam</title><link>http://www.purdue.edu/securepurdue/news/2010/Toy-Story-3-Facebook-Scam.cfm</link><description>When clicking on a message that appears to come from one of your friends, if it insists that you click "Like" before viewing the page, it will send a rude hidden message to all of your facebook friends.</description><pubDate>Tue, 03 Aug 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b74d6f80d207350028420673006688</guid></item><item><title>KOOBFACE bot via fake YouTube pages</title><link>http://www.purdue.edu/securepurdue/news/2010/KOOBFACE-bot-via-fake-YouTube-pages.cfm</link><description>Fake YouTube pages are being used by the Koobface
Bot to insert JavaScript Code.</description><pubDate>Tue, 03 Aug 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b6a67480d20735002842066c5dbc6f</guid></item><item><title>iPhone JailBreak Trojan</title><link>http://www.purdue.edu/securepurdue/news/2010/iPhone-JailBreak-Trojan.cfm</link><description>An email campaign is targeting iPhone users who might want to jailbreak their phones has been reported by BitDefender.</description><pubDate>Tue, 03 Aug 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b60c3e80d2073500284206a511c66e</guid></item><item><title>Apple iOS Security Bypass and PDF Processing Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2010/Apple-iOS-Security-Bypass-and-PDF-Processing-Vulnerability.cfm</link><description>Two vulnerabilities have been reported in Apple iOS, version 4.0.1 which may be exploited to compromise a user's system.</description><pubDate>Tue, 03 Aug 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b4ad6d80d207350028420616fd7d89</guid></item><item><title>Apple Mac OS X Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2010/Apple-Mac-OS-X-Vulnerability.cfm</link><description>A vulnerability in Apple Mac OS X due to the "webdav_mount()" function of the WebDAV kernel extension can be exploited by malicious, local users to cause a DoS (Denial of Service). </description><pubDate>Tue, 03 Aug 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b407e680d2073500284206be7aa0ac</guid></item><item><title>Quicktime Player Allows Movies To Trigger Malware Downloads</title><link>http://www.purdue.edu/securepurdue/news/2010/Quicktime-Player-Allows-Movies-To-Trigger-Malware-Downloads.cfm</link><description>Trend Micro is reporting that Quicktime Player can be used by maliscious people to deploy malware to users' systems using specially crafted movie files. When a user plays one of the files, their system is redirected to download a malware payload.</description><pubDate>Mon, 02 Aug 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b34aeb80d20735002842064ae4a151</guid></item><item><title>Wireshark Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2010/Wireshark-Vulnerabilities.cfm</link><description>There were multiple vulnerabilities reported in Wireshark with an available update.</description><pubDate>Fri, 30 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b5502080d2073500284206c967ca43</guid></item><item><title>Cisco Multiple Products TLS Session Renegotiation Plaintext Injection</title><link>http://www.purdue.edu/securepurdue/news/2010/Cisco-Multiple-Products-TLS-Session-Renegotiation-Plaintext-Injection.cfm</link><description>Cisco has acknowledged a vulnerability in multiple Cisco products</description><pubDate>Thu, 29 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b2576c80d20735002842064cf3eeeb</guid></item><item><title>APPLE-SA-2010-07-28-1 Safari 5.0.1 and Safari 4.1.1</title><link>http://www.purdue.edu/securepurdue/news/2010/APPLE-SA-2010-07-28-1-Safari-5.0.1-and-Safari-4.1.1.cfm</link><description>Apple released this advisory addressing vulnerabilities (15 unique
CVEs) in the Safari browser for Windows and Mac platforms.</description><pubDate>Thu, 29 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b1924380d20735002842062fc91f92</guid></item><item><title>Security Issues 7-27-2010</title><link>http://www.purdue.edu/securepurdue/news/2010/Security-Issues-7-27-2010.cfm</link><description>Security Issues 7-27-2010</description><pubDate>Tue, 27 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b0f8e880d20735002842063ee7022a</guid></item><item><title>Plug-in Security Checker</title><link>http://www.purdue.edu/securepurdue/news/2010/Plug-in-Security-Checker.cfm</link><description>Ever wonder if all your browser plug-ins are up-to-date and secure?  Well Windows users now can check IE, Firefox and Chrome simply by going to a website and running a scan.</description><pubDate>Tue, 20 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52af1fc080d20735002842065d22e23e</guid></item><item><title>Windows Shortcut Parsing Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2010/Windows-Shortcut-Parsing-Vulnerability.cfm</link><description>A vulnerability in Windows versions including XP, Vista, 7, Server 2003 and Server 2008 which can be utilized by maliscious parties to compromise a user's system using specially crafted shortcuts (.lnk and .pif files).</description><pubDate>Mon, 19 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/52b03ee680d207350028420628bdd675</guid></item><item><title>Security Issues 7-2-2010</title><link>http://www.purdue.edu/securepurdue/news/2010/Security-Issues-7-2-2010.cfm</link><description>Security Issues 7-2-2010</description><pubDate>Fri, 02 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a92ab97380d2073500284206a08725d0</guid></item><item><title>Security Issues 7/1</title><link>http://www.purdue.edu/securepurdue/news/2010/Security-Issues-71.cfm</link><description>Opera browser users will want to upgrade to the latest patch level 10.60. </description><pubDate>Thu, 01 Jul 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a929ba3080d2073500284206b9fcfaa6</guid></item><item><title>Adobe Updates and PCI Expectancies</title><link>http://www.purdue.edu/securepurdue/news/2010/adobe-updates-and-pci-expectancies.cfm</link><description>Adobe has released update 9.3.3 for Acrobat and Reader.  Users are suggested to upgrade as soon as possible to patch vulnerabilities that could allow for denial-of-service.</description><pubDate>Wed, 30 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/8f618dba80d2073500284206ebcf6add</guid></item><item><title>Security Issues 6-29-2010</title><link>http://www.purdue.edu/securepurdue/news/2010/security_issues_6_29_2010.cfm</link><description>Security Issues 6-29-2010</description><pubDate>Tue, 29 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/8f6cee9b80d20735002842066231f71f</guid></item><item><title>Mozilla Thunderbird Multiple Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2010/Mozilla-Thunderbird-Multiple-Vulnerabilities.cfm</link><description>Per Secunia, some vulnerabilities have been reported in Mozilla Thunderbird, which can be exploited by malicious people to compromise a user's system.</description><pubDate>Mon, 28 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/8f708f3880d207350028420696702ac0</guid></item><item><title>Apple Mac OS X Security Update Fixes Multiple Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2010/apple_mac_os_x_security_update_fixes_multiple_vulnerabilities.cfm</link><description>Per Secunia, Apple has issued security updates for Mac OS X, which fixes multiple vulnerabilities.</description><pubDate>Mon, 28 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/8f6e9fe980d2073500284206caf1dce6</guid></item><item><title>Security Issues 6/16</title><link>http://www.purdue.edu/securepurdue/news/2010/Security-Issues-616.cfm</link><description>Microsoft Windows XP &amp; 2003 Help and Support Center has been found to be vulnerable to a recent attack.  Users who visit a compromised site can be affected by malicious  malware being downloaded to the hosts machine.</description><pubDate>Wed, 16 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a92b711f80d20735002842068c0b0aca</guid></item><item><title>End of Windows 2000 &amp; XP SP 2 Support</title><link>http://www.purdue.edu/securepurdue/news/2010/End-of-Windows-2000--XP-SP-2-Support.cfm</link><description>The end is finally here for support on Windows 2000 &amp; XP SP 2.  Microsoft plans on expire support on July 13th.</description><pubDate>Tue, 15 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a92c27c680d2073500284206b76040ce</guid></item><item><title>Adobe AIR Multiple Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2010/Adobe-AIR-Multiple-Vulnerabilities.cfm</link><description>Vulnerabilities have been reported in Adobe AIR.   Malicious individuals can exploit these vulnerabilities to conduct cross-site scripting attacks or compromise a user's system.

The vulnerabilities are reported in Adobe AIR versions 1.5.3.9130 and prior.</description><pubDate>Fri, 11 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a92d213580d2073500284206de9d9267</guid></item><item><title>Description of the Microsoft Office 2008 for Mac 12.2.5 Update</title><link>http://www.purdue.edu/securepurdue/news/2010/Description-of-the-Microsoft-Office-2008-for-Mac-12.2.5-Update.cfm</link><description>Security Updates have been released for OpenOffice and MS Office 2008 for Mac.  </description><pubDate>Fri, 11 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a92dd0c480d2073500284206e60f1905</guid></item><item><title>Microsoft Cumulative Security Update for Internet Explorer</title><link>http://www.purdue.edu/securepurdue/news/2010/Microsoft-Cumulative-Security-Update-for-Internet-Explorer.cfm</link><description>While Microsoft recently patched the Vulnerability in Internet Explore which could allow for information disclosure, they have expressed concern now that the patch is public that malicious people could be reversed engineered the flaw more easily -- and that additional public exploits may begin.   Therefore, the most recent round of Windows updates has become very important to circumvent this and should be applied as soon as possible.   </description><pubDate>Thu, 10 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a92ffa8980d2073500284206088b7db9</guid></item><item><title>Microsoft Windows Help and Support Center URL Processing Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2010/Microsoft-Windows-Help-and-Support-Center-URL-Processing-Vulnerability.cfm</link><description>A vulnerability has been discovered in Microsoft Windows.   

From Secunia as sited below:

"The vulnerability is caused due to an error when processing escaped URLs through Microsoft Windows Help and Support Center (helpctr.exe). This can be exploited to bypass restrictions normally imposed by the "-FromHCP" command-line argument and pass arbitrary parameters to local help documents.</description><pubDate>Thu, 10 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a92eacea80d2073500284206d674c6bf</guid></item><item><title>Apple Safari Multiple Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2010/Apple-Safari-Multiple-Vulnerabilities.cfm</link><description>Per Secunia:  "Some vulnerabilities have been reported in Apple Safari, which can be exploited by malicious people to bypass certain security restrictions, disclose sensitive information, conduct spoofing or cross-site scripting attacks, and potentially compromise a user's system."</description><pubDate>Wed, 09 Jun 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a93093c480d2073500284206bb7f66ad</guid></item><item><title>FYI: Browser Plugin Check Site (Neat!) </title><link>http://www.purdue.edu/securepurdue/news/2010/FYI-Browser-Plugin-Check-Site-Neat-.cfm</link><description>Browser Plugin Check Site (works with Firefox 3.6+, Opera 10.5,Safari 4, Chrome 4, or IE 8)</description><pubDate>Wed, 19 May 2010 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a931aede80d2073500284206aeb4d3b9</guid></item><item><title>Windows SMB Remote Exploit</title><link>http://www.purdue.edu/securepurdue/news/2009/Windows-SMB-Remote-Exploit.cfm</link><description>Vulnerability has been discovered in Microsoft Windows 7 &amp; Sever 2008.  This is a 0-day vulnerability that can be exploited from remote by a malicious user.</description><pubDate>Fri, 13 Nov 2009 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a933034180d20735002842065758fd57</guid></item><item><title>Goodbye to Thawte, Huge Patch Tuesday, and More Adobe Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2009/Goodbye-to-Thawte,-Huge-Patch-Tuesday,-and-More-Adobe-Vulnerabilities.cfm</link><description>Thawte email services will be discontinued as of November 16th, 2009.  Current customers will receive a free year of VeriSign service.
Microsoft has posted that this months patch Tuesday will be its largest ever.
Adobe has posted vulnerabilities found in Reader and Acrobat.</description><pubDate>Fri, 09 Oct 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a934863d80d20735002842069453af56</guid></item><item><title>Hotmail Passwords Posted, New OpenSSH Version Released &amp; Samba Vulnerabilities Fixed</title><link>http://www.purdue.edu/securepurdue/news/2009/Hotmail-Passwords-Posted,-New-OpenSSH-Version-Released--Samba-Vulnerabilities-Fixed.cfm</link><description>Hotmail, Live, and MSN users are advised to change their passwords after it was found that usernames and passwords for 10,000 users were posted online.
</description><pubDate>Tue, 06 Oct 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a935d5a680d20735002842065e7bd39e</guid></item><item><title>Microsoft IIS FTP Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2009/Microsoft-IIS-FTP-Vulnerability.cfm</link><description>Vulnerability has been found in Microsoft Internet Information Services FTP server that can allow a remote attacker to potentially execute arbitrary code.   IIS FTP servers that allow anonymous users write access can potentially be affected due to a boundary error when the server processes NLST commands. </description><pubDate>Tue, 01 Sep 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a93d125a80d207350028420665ae42ae</guid></item><item><title>Linux 2.4 and 2.6 kernel vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2009/Linux-2.4-and-2.6-kernel-vulnerability.cfm</link><description>A recently discovered vulnerability in the Linux 2.4 and 2.6 kernels can allow an attacker with local user privileges to gain root access using a widely distributed exploit for a NULL pointer reference caused by incorrect proto_ops initializations. As of August 17th, the issue is still unpatched and the vulnerability affects basically all distributions of Linux running on the 2.4 or 2.6 kernels.</description><pubDate>Mon, 17 Aug 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a93de25a80d207350028420679408afa</guid></item><item><title>Mac and Windows Updates</title><link>http://www.purdue.edu/securepurdue/news/2009/Mac-and-Windows-Updates.cfm</link><description>This week saw a surge of new security updates for both Mac and Windows computers, partially due to Patch Tuesday.</description><pubDate>Fri, 14 Aug 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a93edd9880d2073500284206b8afa053</guid></item><item><title>Vulnerabilities in Mozilla Products</title><link>http://www.purdue.edu/securepurdue/news/2009/Vulnerabilities-in-Mozilla-Products.cfm</link><description>Mozilla Firefox, Thunderbird and SeaMonkey have been found to be vulnerable to an issue in which domain name certificates are dealt with between client browsers and CA servers.  The issue is currently unpatched for all products except for users of Firefox 3.5.  It is suggested to not browse untrusted sites or open emails from untrusted sources.</description><pubDate>Wed, 05 Aug 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a93fabc280d2073500284206988b1138</guid></item><item><title>Squid 3.x Multiple Denial of Service Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2009/Squid-3.x-Multiple-Denial-of-Service-Vulnerabilities.cfm</link><description>Multiple vulnerabilities exist in Squid 3.x that can allow a malicious remote user to cause a denial of service (DoS) attack.</description><pubDate>Wed, 29 Jul 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a94051b880d2073500284206168b9b9d</guid></item><item><title>July 14 Unpatched Firefox Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2009/July-14-Unpatched-Firefox-Vulnerability.cfm</link><description>A new vulnerability has been discovered in the latest version of Mozilla Firefox that can cause memory corruption and may be exploited by malicious people to compromise a user's system.</description><pubDate>Tue, 14 Jul 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a940ff7880d20735002842064415fffa</guid></item><item><title>Vulnerability updates: MS Office, Tomcat, and Internet Explorer</title><link>http://www.purdue.edu/securepurdue/news/2009/Vulnerability-updates-MS-Office,-Tomcat,-and-Internet-Explorer.cfm</link><description>Vulnerability updates: MS Office, Tomcat, and Internet Explorer</description><pubDate>Mon, 13 Jul 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a950da0a80d2073500284206a5c6e894</guid></item><item><title>Shockwave Vulnerability and Tbird update</title><link>http://www.purdue.edu/securepurdue/news/2009/Shockwave-Vulnerability-and-Tbird-update.cfm</link><description>A new vulnerability has been discovered in Adobe Shockwave player which could allow for arbitrary code execution on a machine which attempts to play a specially crafted malicious Shockwave player 10 content.
Also, a new round of Thunderbird updates have been released addressing a number of security issues. </description><pubDate>Wed, 24 Jun 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a951b86880d207350028420673212d3d</guid></item><item><title>Adobe Updates</title><link>http://www.purdue.edu/securepurdue/news/2009/Adobe-Updates.cfm</link><description>Critical vulnerabilities are found in Adobe Reader/Acrobat 9.1.1 and earlier.</description><pubDate>Thu, 11 Jun 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a95276a480d2073500284206924dffec</guid></item><item><title>IIS 6.0, ntpd, and new netbooks coming preloaded with malware</title><link>http://www.purdue.edu/securepurdue/news/2009/IIS-6.0,-ntpd,-and-new-netbooks-coming-preloaded-with-malware.cfm</link><description>New vulnerabilities have been reported for IIS 6.0 users who have WebDAV enabled. The vulnerability allows escalation of privileges if a specially crafted HTTP GET request is made to the vulnerable server. </description><pubDate>Thu, 21 May 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a953496c80d2073500284206601b1a72</guid></item><item><title>Firefox, Thunderbird, and Seamonkey Vulns</title><link>http://www.purdue.edu/securepurdue/news/2009/Firefox,-Thunderbird,-and-Seamonkey-Vulns.cfm</link><description>New as of today (April 22nd, 09) there are a fresh batch of vulnerabilities that have been discovered in Mozilla products Firefox, Thunderbird, and Seamonkey.</description><pubDate>Wed, 22 Apr 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a954142180d20735002842067c41fc4a</guid></item><item><title>MS and Oracle Patches</title><link>http://www.purdue.edu/securepurdue/news/2009/MS-and-Oracle-Patches.cfm</link><description>On Tuesday, Microsoft and Oracle released critical patches that affect multiple products.</description><pubDate>Thu, 16 Apr 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a954ef8580d2073500284206b64a028c</guid></item><item><title>SAP/Java/VMware</title><link>http://www.purdue.edu/securepurdue/news/2009/SAPJavaVMware.cfm</link><description>Critical updates for SAP, Java and VMware are now available.</description><pubDate>Tue, 14 Apr 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a955b50d80d2073500284206d14c5b4d</guid></item><item><title>Highly Critical Vulnerability in MS Powerpoint</title><link>http://www.purdue.edu/securepurdue/news/2009/Highly-Critical-Vulnerability-in-MS-Powerpoint.cfm</link><description>A newly released vulnerability in MS PowerPoint versions 2000 through 2004 for Mac and PC could allow a maliciously crafted PowerPoint file to compromise a user's system and run arbitrary code with permissions of the user.</description><pubDate>Fri, 03 Apr 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9566ca480d2073500284206fddf0cfe</guid></item><item><title>Import notice for Mac users connected to Active Directory</title><link>http://www.purdue.edu/securepurdue/news/2009/Import-notice-for-Mac-users-connected-to-Active-Directory.cfm</link><description>The security department has recently seen some cases where Active Directory accounts have been locked out due to excessive failed login attempts when a Mac that is synced to Active Directory is also listening for inbound SSH connections.</description><pubDate>Mon, 30 Mar 2009 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9572a0980d2073500284206d6c1b824</guid></item><item><title>Critical Adobe Reader/Acrobat Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2009/Critical-Adobe-ReaderAcrobat-Vulnerability.cfm</link><description>Unpatched Vulnerability in Adobe Reader and Acrobat may allow attacker to take control of users system via specially crafted document.  Affected versions include Adobe Reader/Acrobat  9 and earlier.</description><pubDate>Tue, 24 Feb 2009 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a957db1280d2073500284206534264b1</guid></item><item><title>Firefox/Thunderbird/IE 7 issues</title><link>http://www.purdue.edu/securepurdue/news/2008/FirefoxThunderbirdIE-7-issues.cfm</link><description>An out of band patch is being released by Microsoft today for the infamous IE 7 0-day vulnerability discovered last week. </description><pubDate>Wed, 17 Dec 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a958c30e80d207350028420695d7c6a0</guid></item><item><title>Critical MS Word and Excel Patches released Tuesday</title><link>http://www.purdue.edu/securepurdue/news/2008/Critical-MS-Word-and-Excel-Patches-released-Tuesday.cfm</link><description>Both MS Word and Excel had some major vulnerabilities that were patched in the most recent patch release from Microsoft. Versions affected go all the way back to MS Office 2000.</description><pubDate>Wed, 10 Dec 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a95a266580d20735002842069210818b</guid></item><item><title>Fraudulent CNN emails contain links to Trojan</title><link>http://www.purdue.edu/securepurdue/news/2008/Fraudulent-CNN-emails-contain-links-to-Trojan.cfm</link><description>Malicious emails purporting to contain personalized news links from CNN are being reported by campus users as well as across the Internet. These unsolicited emails contain links to supposed videos of recent or false news stories. Additionally, the emails use graphics from legitimate CNN pages to further make the messages appear genuine. When clicked, the links take the user to a fraudulent copy of the CNN video player site which is hosted on a malicious site. Instead of playing a video, the site prompts the user to download a Flash player update. This executable is a Trojan and contains code designed to compromise a user's computer. </description><pubDate>Fri, 08 Aug 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a95b683280d2073500284206ae60adb6</guid></item><item><title>Java updates galore</title><link>http://www.purdue.edu/securepurdue/news/2008/Java-updates-galore.cfm</link><description>Java updates galore</description><pubDate>Wed, 09 Jul 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a95c82a280d207350028420675cbf8a9</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for April 2008</title><link>http://www.purdue.edu/securepurdue/news/2008/STEAM-CIRT-Summary--Trends-for-April-2008.cfm</link><description>Monthly Summary and Trends</description><pubDate>Thu, 15 May 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a95d681d80d207350028420655675bd4</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for March 2008</title><link>http://www.purdue.edu/securepurdue/news/2008/STEAM-CIRT-Summary--Trends-for-March-2008.cfm</link><description>Monthly Summary and Trends</description><pubDate>Wed, 30 Apr 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a95e407680d2073500284206bad3a92d</guid></item><item><title>New Phishing Exploit Doesn't Ask for Credentials</title><link>http://www.purdue.edu/securepurdue/news/2008/New-Phishing-Exploit-Doesnt-Ask-for-Credentials.cfm</link><description>Over the past few days, there has been a new type of phishing e-mail spotted.  This new phishing method no longer asks for credentials and other personal information.  The new tactic is to pose as a company and ask for the end user to "renew" their digital certificate.  A link is presented in the e-mail, which when clicked on will download a keylogging Trojan onto the computer.  The Trojan is then used to steal information and/or credentials from the victim's computer.  Currently the most commonly used companies to pose as include Comerica Bank and Colonial Bank.</description><pubDate>Tue, 29 Apr 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a95f9c9380d2073500284206eca09302</guid></item><item><title>Archive Format Vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2008/Archive-Format-Vulnerabilities.cfm</link><description>Programs that handle archive formats ACE, ARJ, BZ2, CAB, GZ, LHA, RAR, TAR, ZIP and ZOO could potentially be affected by newly discovered vulnerabilities.  Various types of programs that could be affected include:  anti-virus, firewalls (software-based), encryption products (VPN, PGP), backup software, office programs, operating systems and libraries.</description><pubDate>Thu, 20 Mar 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a961386180d2073500284206dea2fca3</guid></item><item><title>New Buffer Overflow Vulnerability in CUPS CGI</title><link>http://www.purdue.edu/securepurdue/news/2008/New-Buffer-Overflow-Vulnerability-in-CUPS-CGI.cfm</link><description>CUPS (Common UNIX Printing System), which provides a standard printer interface for various Unix based operating systems, has a new vulnerability.  An unspecified error within the CUPS CGI backend, if exploited by an attacker, could cause a heap-based buffer overflow by sending a specially crafted IPP request.</description><pubDate>Thu, 20 Mar 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a960689f80d2073500284206f5dd6c2f</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for February 2008</title><link>http://www.purdue.edu/securepurdue/news/2008/STEAM-CIRT-Summary--Trends-for-February-2008.cfm</link><description>Monthly Summary and Trends February 2008</description><pubDate>Wed, 12 Mar 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9637b8b80d2073500284206c339b6b9</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for January 2008</title><link>http://www.purdue.edu/securepurdue/news/2008/STEAM-CIRT-Summary--Trends-for-January-2008.cfm</link><description>Monthly Summary and Trends</description><pubDate>Wed, 12 Mar 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a962d0e480d20735002842060ce25bca</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for December 2007</title><link>http://www.purdue.edu/securepurdue/news/2008/STEAM-CIRT-Summary--Trends-for-December-2007.cfm</link><description>Monthly Summary and Trends</description><pubDate>Wed, 12 Mar 2008 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a96217a280d207350028420604154ba3</guid></item><item><title>Symantec Backup Exec calendar control vulnerabilities discovered</title><link>http://www.purdue.edu/securepurdue/news/2008/Symantec-Backup-Exec-calendar-control-vulnerabilities-discovered.cfm</link><description>"Secunia Research has discovered some vulnerabilities in Symantec Backup Exec for Windows Servers, which can be exploited by malicious people to overwrite arbitrary files or compromise a vulnerable system."</description><pubDate>Fri, 29 Feb 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a9653bef80d2073500284206083dd7b5</guid></item><item><title>New unpatched vulnerability in VMware products found</title><link>http://www.purdue.edu/securepurdue/news/2008/New-unpatched-vulnerability-in-VMware-products-found.cfm</link><description>A new unpatched vulnerability has been found in several VMware products that would allow a user (or malicious individual) to "break out" of the guest OS/VM and read/write to the host file system.</description><pubDate>Fri, 29 Feb 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a96437ae80d20735002842066a3d24ac</guid></item><item><title>Beware Fraudulent Microsoft Security Updates</title><link>http://www.purdue.edu/securepurdue/news/2008/Beware-Fraudulent-Microsoft-Security-Updates.cfm</link><description>Purdue University cautions users to be skeptical of email messages claiming to be from Microsoft and requesting that users download a critical update. These emails appear to be fraudulent and users should NOT follow the links in the email. Users are requested to ignore the email and delete it.</description><pubDate>Wed, 06 Feb 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a966111480d207350028420604dbc5d5</guid></item><item><title>Phishing reminder and a new UPnP attack vector</title><link>http://www.purdue.edu/securepurdue/news/2008/Phishing-reminder-and-a-new-UPnP-attack-vector.cfm</link><description>Phishing reminder and a new UPnP attack vector</description><pubDate>Wed, 16 Jan 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a966ee4480d2073500284206a9da586f</guid></item><item><title>More Phishing, Quicktime, and remote controlled Trains</title><link>http://www.purdue.edu/securepurdue/news/2008/More-Phishing,-Quicktime,-and-remote-controlled-Trains.cfm</link><description>You've probably all seen the notifications that there is a current Phishing attack targeting Purdue accounts. Over the weekend we saw some minor modifications to the message which mostly just includes changes to the address it seemed to be coming from.</description><pubDate>Mon, 14 Jan 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a9681e5d80d2073500284206c9c5230f</guid></item><item><title>RealPlayer Unspecified Buffer Overflow Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2008/RealPlayer-Unspecified-Buffer-Overflow-Vulnerability.cfm</link><description>A recently found unpatched flaw in RealPlayer 11 may lead to execution of arbitrary code.</description><pubDate>Thu, 03 Jan 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a969fa5780d207350028420650b01aac</guid></item><item><title>Storm Worm Changes Its Campaign In Time For The Holidays</title><link>http://www.purdue.edu/securepurdue/news/2008/Storm-Worm-Changes-Its-Campaign-In-Time-For-The-Holidays.cfm</link><description>Arbornetworks.com is reporting about active Storm Worm domains that are currently being used with the latest round of Storm Worm emails attempting to take advantage of the holidays.</description><pubDate>Thu, 03 Jan 2008 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a968e86f80d20735002842060e1ab053</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for November 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-November-2007.cfm</link><description>November 2007 Summary and Trends</description><pubDate>Thu, 20 Dec 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a96c206b80d20735002842064f3eec0b</guid></item><item><title>Adobe Flash Player update fixes multiple vulnerabilities</title><link>http://www.purdue.edu/securepurdue/news/2007/Adobe-Flash-Player-update-fixes-multiple-vulnerabilities.cfm</link><description>Adobe Flash Player update fixes multiple vulnerabilities</description><pubDate>Thu, 20 Dec 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a96b7b5c80d2073500284206b01b62e0</guid></item><item><title>WordPress Charset SQL Injection Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/WordPress-Charset-SQL-Injection-Vulnerability.cfm</link><description>Details are emerging about a new vulnerability in WordPress. An unpatched flaw in WordPress may lead to SQL injection.</description><pubDate>Fri, 14 Dec 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a96defe580d20735002842067d0f550a</guid></item><item><title>Samba send_mailslot() Buffer Overflow Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Samba-send_mailslot-Buffer-Overflow-Vulnerability.cfm</link><description>Details are emerging about a moderately critical vulnerability in Samba. A flaw in Samba may lead to a buffer overflow resulting in execution of arbitrary code.</description><pubDate>Fri, 14 Dec 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a96d336680d207350028420618f3f8d9</guid></item><item><title>Apple Quicktime RTSP buffer overflow vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Apple-Quicktime-RTSP-buffer-overflow-vulnerability.cfm</link><description>Details are emerging about a critical exploit vulnerability in Apple's Quicktime product. An unpatched flaw in the RTSP (real-time streaming protocol) may allow remote attackers to compromise a system. </description><pubDate>Mon, 03 Dec 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a96eb3d280d207350028420632995aaf</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for October 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-October-2007.cfm</link><description>October 2007 Summary and Trends</description><pubDate>Mon, 19 Nov 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a96fb0d380d20735002842068b334e7a</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for September 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-September-2007.cfm</link><description>STEAM-CIRT Summary &amp; Trends for September 2007</description><pubDate>Fri, 26 Oct 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9706fb080d20735002842066d2b35d2</guid></item><item><title>Multiple Vulnerabilities in Firefox Prompts Mozilla to Provide Version Update</title><link>http://www.purdue.edu/securepurdue/news/2007/Multiple-Vulnerabilities-in-Firefox-Prompts-Mozilla-to-Provide-Version-Update.cfm</link><description>A variety of vulnerabilities in the popular web browser Firefox have been reported. When exploited, these vulnerabilities can lead to: disclosure of sensitive information, phishing attacks, data manipulation, and/or system compromise.</description><pubDate>Fri, 19 Oct 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9712fc880d20735002842068a687956</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for August 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-August-2007.cfm</link><description>August 2007 Summary and Trends </description><pubDate>Fri, 21 Sep 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a971e9f280d207350028420686bbf188</guid></item><item><title>Firefox "-chrome" Parameter Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Firefox--chrome-Parameter-Vulnerability.cfm</link><description>A vulnerability affecting Firefox versions previous to 2.0.0.7 is caused by the "-chrome" parameter allowing remote attackers to run code with the current user's privileges.  When exploited, the remote attacker can install malware, steal data, or simply corrupt the user's system.</description><pubDate>Wed, 19 Sep 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a972fef580d2073500284206f0a48823</guid></item><item><title>Subversion overwrites arbitrary files</title><link>http://www.purdue.edu/securepurdue/news/2007/Subversion-overwrites-arbitrary-files.cfm</link><description>For our campus users of Subversion and TortoiseSVN version control systems it is time to update.  Versions prior to the recently released 1.4.5 version have a bug that allows a directory-traversal attack on a windows system using the "..\" syntax.  This would allow a client user with write access to overwrite arbitrary system files for which he has write access privileges.</description><pubDate>Thu, 30 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a973e00c80d2073500284206833d2282</guid></item><item><title>Media Player Classic .FLI File Processing Buffer Overflow Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Media-Player-Classic-.FLI-File-Processing-Buffer-Overflow-Vulnerability.cfm</link><description>A highly critical vulnerability has been discovered in the open source media player Media Player Classic (MPC), which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error processing .FLI files (an old animation compression format). </description><pubDate>Wed, 29 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9751ecc80d2073500284206347f6b4c</guid></item><item><title>New Storm Worm Variant</title><link>http://www.purdue.edu/securepurdue/news/2007/New-Storm-Worm-Variant.cfm</link><description>The newest method that is being highly utilized to trick people into becoming storm worm infected is by sending out e-mails regarding various "club" memberships.</description><pubDate>Thu, 23 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a975f41480d2073500284206b26260c3</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for July 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-July-2007.cfm</link><description>July 2007 Summary and Trends</description><pubDate>Wed, 22 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97a82a280d20735002842069f8b5f98</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for February 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-February-2007.cfm</link><description>February 2007 Summary and Trends</description><pubDate>Wed, 22 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a979e9a180d2073500284206055e4705</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for March 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-March-2007.cfm</link><description>March 2007 Summary and Trends</description><pubDate>Wed, 22 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97932d080d20735002842068fb54061</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for April 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-April-2007.cfm</link><description>April 2007 Summary and Trends</description><pubDate>Wed, 22 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97884a080d2073500284206864098fd</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for May 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-May-2007.cfm</link><description>May 2007 Summary and Trends</description><pubDate>Wed, 22 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a977b60680d20735002842064f9a88d0</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for June 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-June-2007.cfm</link><description>June 2007 Summary and Trends</description><pubDate>Wed, 22 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a976c76280d2073500284206db8c78df</guid></item><item><title>Highly critical vulnerability found in component of Microsoft’s DirectX Media SDK</title><link>http://www.purdue.edu/securepurdue/news/2007/Highly-critical-vulnerability-found-in-component-of-Microsofts-DirectX-Media-SDK.cfm</link><description>A highly critical vulnerability has been found in the Live Picture Corporation DirectTransform FlashPix ActiveX control included in the Microsoft  DirectX Media SDK, which can be exploited by malicious people to compromise a vulnerable system.</description><pubDate>Wed, 15 Aug 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97b59fa80d2073500284206c42668b4</guid></item><item><title>Firefox Used as an Attack Vector via URI Filtering Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Firefox-Used-as-an-Attack-Vector-via-URI-Filtering-Vulnerability.cfm</link><description>Exploitation is as simple as using Firefox to visit a malicious website with a specially crafted URI (such as "mailto") containing a "%" character and ends with a specific extension, such as ".bat" or ".cmd".</description><pubDate>Mon, 30 Jul 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97c5cd680d20735002842060a13cfbc</guid></item><item><title>Java Runtime Environment Vulnerabilities Lead to Remote Compromise</title><link>http://www.purdue.edu/securepurdue/news/2007/Java-Runtime-Environment-Vulnerabilities-Lead-to-Remote-Compromise.cfm</link><description>Sun Java Runtime Environment (JRE) has a buffer overflow vulnerability in its image parsing code which could allow an untrusted applet or application to escalate its privileges.  If this happens, the applet or application could provide itself permissions to read and write local files or execute local applications which are available to the user who is running the untrusted applet or application.  All systems running Windows, Linux variants, and Solaris are considered vulnerable.</description><pubDate>Tue, 17 Jul 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97d509280d20735002842060c1d9e6d</guid></item><item><title>Mozilla Firefox "OnKeyDown" Event Focus Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Mozilla-Firefox-OnKeyDown-Event-Focus-Vulnerability.cfm</link><description>A new Firefox vulnerability is caused by a design flaw within the focus handling method of form fields. </description><pubDate>Thu, 05 Jul 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97e432980d20735002842068dbcc643</guid></item><item><title>Xvid Library version 1.1.2 Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Xvid-Library-version-1.1.2-Vulnerability.cfm</link><description>The Xvid library version 1.1.2 has a newly discovered vulnerability in the get_intra_block, get_inter_h263, and get_inter_block_mpeg functions.  This vulnerability could allow a remote attacker to execute arbitrary code on the victim's computer.</description><pubDate>Fri, 29 Jun 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9853c8c80d2073500284206f1b63619</guid></item><item><title>Security Hole in Java Web Start Could Provide Privilege Escalation</title><link>http://www.purdue.edu/securepurdue/news/2007/Security-Hole-in-Java-Web-Start-Could-Provide-Privilege-Escalation.cfm</link><description>If you use Java Web Start on your computer, now is the time to update to JRE 5.0 Update 12 or later (JDK) or JRE 1.4.2_14 or later (SDK).  An unspecified error in Java Web Start allows an untrusted application to escalate its own privileges in order to overwrite any file that is "writable" by the current user running the application.  Even further, the user's ".java.policy" file can be overwritten which allows the application to summon applets or other Java Web Start applications which could execute arbitrary code with the same privilege level as the user running the application.</description><pubDate>Fri, 29 Jun 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a97f132f80d2073500284206827b8539</guid></item><item><title>'Zlob' Trojan Finds YouTube</title><link>http://www.purdue.edu/securepurdue/news/2007/Zlob-Trojan-Finds-YouTube.cfm</link><description>If you ever browse through YouTube videos, you might want to be extra cautious.  Why?  Because attackers are infecting victims with a trojan using fake video links on the YouTube website.  The trojan initially floods victims with pornographic adware, then installs data-stealing code on the victim's computer.</description><pubDate>Fri, 22 Jun 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a986734a80d20735002842067bdb063b</guid></item><item><title>PHP coders take a look at Pixy!</title><link>http://www.purdue.edu/securepurdue/news/2007/PHP-coders-take-a-look-at-Pixy.cfm</link><description>The application, called Pixy, can automatically scan your PHP source code for Cross-site scripting and SQL injection vulnerabilities.  Pixy takes a PHP program as input, and creates a report that lists possible vulnerable points in the program, together with additional information for understanding the vulnerability.</description><pubDate>Fri, 22 Jun 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9872a2280d2073500284206a7d6bf19</guid></item><item><title>Mozilla Firefox File Type Check Vulnerability</title><link>http://www.purdue.edu/securepurdue/news/2007/Mozilla-Firefox-File-Type-Check-Vulnerability.cfm</link><description>Mozilla Firefox, a popular web browser, has a new vulnerability that is exploitable in versions 0.10 to 2.0.0.4.</description><pubDate>Thu, 21 Jun 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a9886cab80d2073500284206e3819868</guid></item><item><title>Safari Beta Vulnerabilities for Windows</title><link>http://www.purdue.edu/securepurdue/news/2007/Safari-Beta-Vulnerabilities-for-Windows.cfm</link><description>The Safari v3.0 Public Beta web browser for Windows was released on 06/11/07.  Within the first 24 hours multiple exploits were released.</description><pubDate>Mon, 18 Jun 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a989782780d2073500284206798875b8</guid></item><item><title>Microsoft Out of Cycle Patch Coming</title><link>http://www.purdue.edu/securepurdue/news/2007/Microsoft-Out-of-Cycle-Patch-Coming.cfm</link><description>This is just an FYI for those who may not be following the latest Windows 0-day vulnerability and an upcoming out of cycle patch. Last Thursday, Microsoft published a Security Advisory (935423) describing a vulnerability in Animated Cursor Handling affecting a range of Windows OS versions.  The result is that a user that visits a malicious website or reads a specially crafted HTML e-mail may automatically trigger the vulnerability and executing arbitrary code running as that user.</description><pubDate>Mon, 02 Apr 2007 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/a98b597580d20735002842068d596b4b</guid></item><item><title>Detecting Windows Intruders</title><link>http://www.purdue.edu/securepurdue/news/2007/Detecting-Windows-Intruders.cfm</link><description>CERT/CC and AUSCERT provide a thorough checklist for investigating a Windows based system for signs of intruders.</description><pubDate>Tue, 27 Feb 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a98e347e80d2073500284206d715c118</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for January 2007</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-January-2007.cfm</link><description>January 2007 Summary &amp; Trends</description><pubDate>Thu, 22 Feb 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a98edcf680d2073500284206e6516f89</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for December 2006</title><link>http://www.purdue.edu/securepurdue/news/2007/STEAM-CIRT-Summary--Trends-for-December-2006.cfm</link><description>December 2006 Summary &amp; Trends</description><pubDate>Wed, 17 Jan 2007 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/a98fbcc180d207350028420693cd2207</guid></item><item><title>STEAM-CIRT Summary &amp; Trends for November 2006 </title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary--Trends-for-November-2006-.cfm</link><description>November 2006 Summary &amp; Trends </description><pubDate>Fri, 15 Dec 2006 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/ad124bd180d2073600e1b6ace7eacda8</guid></item><item><title>STEAM-CIRT Summary and Trends for October 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary-and-Trends-for-October-2006.cfm</link><description>October 2006 Summary &amp; Trends</description><pubDate>Wed, 15 Nov 2006 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/ad13fffb80d2073600e1b6acce9941d1</guid></item><item><title>ADODB Vulnerability and MS Security Intelligence Report</title><link>http://www.purdue.edu/securepurdue/news/2006/ADODB-Vulnerability-and-MS-Security-Intelligence-Report.cfm</link><description>The Microsoft Response Center posted a note about a new DoS proof of concept against the ADODB.connection ActiveX control.  Right now, that just makes it annoying, but it could also allow execution of remote code.  US-CERT has the best summary of information about it at the moment.  You can either disable ActiveX entirely or set the kill bit for this control as a workaround for now.</description><pubDate>Mon, 30 Oct 2006 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/ad1505d980d2073600e1b6ac72d26923</guid></item><item><title>STEAM-CIRT Summary, Trends for September 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary,-Trends-for-September-2006.cfm</link><description>September 2006 Summary &amp; Trends</description><pubDate>Fri, 20 Oct 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad23742480d2073600e1b6ac0086f16e</guid></item><item><title>Newest Symantec Threat Report Published</title><link>http://www.purdue.edu/securepurdue/news/2006/Newest-Symantec-Threat-Report-Published.cfm</link><description>Symantec just released their Internet Security Threat Report which can be thought (at least by me) as a larger version of the STEAM Reports we publish.  The report notes trends and shifts in the threat landscape as reported by Symantec clients.</description><pubDate>Tue, 26 Sep 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad246bb180d2073600e1b6ac863766c4</guid></item><item><title>MS VML Exploits in the Wild</title><link>http://www.purdue.edu/securepurdue/news/2006/MS-VML-Exploits-in-the-Wild.cfm</link><description>On September 19th, Microsoft issued an advisory about a new vulnerability in their Vector Markup Language (VML) implementation.</description><pubDate>Mon, 25 Sep 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad2534aa80d2073600e1b6aca02dfa63</guid></item><item><title>STEAM-CIRT Summary, Trends for July 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary,-Trends-for-July-2006.cfm</link><description>July 2006 Summary &amp; Trends</description><pubDate>Fri, 22 Sep 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad2692c780d2073600e1b6acd3367961</guid></item><item><title>STEAM-CIRT Summary, Trends for August 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary,-Trends-for-August-2006.cfm</link><description>August 2006 Summary &amp; Trends</description><pubDate>Fri, 22 Sep 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad25e07a80d2073600e1b6ace9f01ad7</guid></item><item><title>STEAM-CIRT Summary, Trends for June 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary,-Trends-for-June-2006.cfm</link><description>June 2006 Summary &amp; Trends</description><pubDate>Tue, 25 Jul 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad273d9680d2073600e1b6ac442be95d</guid></item><item><title>Internet Explorer Twofer</title><link>http://www.purdue.edu/securepurdue/news/2006/Internet-Explorer-Twofer.cfm</link><description>The ISC  is reporting on two vulnerabilities found in Internet Explorer.</description><pubDate>Thu, 29 Jun 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad286b7f80d2073600e1b6ac153ad321</guid></item><item><title>STEAM-CIRT Summary, Trends for May 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary,-Trends-for-May-2006.cfm</link><description>May 2006 Summary &amp; Trends </description><pubDate>Wed, 28 Jun 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad2914a180d2073600e1b6ac5fa2a4e3</guid></item><item><title>Top 100 Security Tools</title><link>http://www.purdue.edu/securepurdue/news/2006/Top-100-Security-Tools.cfm</link><description>Fyodor, author of Nmap has revised his top 100 security tools list.</description><pubDate>Thu, 22 Jun 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad29eaff80d2073600e1b6ac05fc7fcf</guid></item><item><title>STEAM-CIRT Summary and Trends for April, 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Summary-and-Trends-for-April,-2006.cfm</link><description>STEAM-CIRT Summary and Trends for April, 2006</description><pubDate>Tue, 16 May 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad2ab62680d2073600e1b6ac5eee53e7</guid></item><item><title>SANS Spring 2006 Top 20 released</title><link>http://www.purdue.edu/securepurdue/news/2006/SANS-Spring-2006-Top-20-released.cfm</link><description>SANS Spring 2006 Top 20 released</description><pubDate>Tue, 02 May 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad2c9ce380d2073600e1b6ac6c48aeee</guid></item><item><title>Super Tuesday Updates, Hybrid Viruses, PeteAuth?</title><link>http://www.purdue.edu/securepurdue/news/2006/Super-Tuesday-Updates,-Hybrid-Viruses,-PeteAuth.cfm</link><description>Super Tuesday Updates, Hybrid Viruses, PeteAuth?</description><pubDate>Tue, 11 Apr 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad2daadb80d2073600e1b6aca5b89749</guid></item><item><title>STEAM-CIRT Observations and Trends Summary for March 2006</title><link>http://www.purdue.edu/securepurdue/news/2006/STEAM-CIRT-Observations-and-Trends-Summary-for-March-2006.cfm</link><description>STEAM-CIRT Observations and Trends Summary for March 2006</description><pubDate>Thu, 06 Apr 2006 01:00:00 -0400</pubDate><guid>http://www.purdue.edu/securepurdue/ad30c3d580d2073600e1b6ac6a0bdf0b</guid></item><item><title>New vulnerabilities, new rootkit</title><link>http://www.purdue.edu/securepurdue/news/2006/New-vulnerabilities,-new-rootkit.cfm</link><description>New vulnerabilities, new rootkit...</description><pubDate>Wed, 22 Mar 2006 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/ad31840580d2073600e1b6ac6a2dbc2b</guid></item><item><title>IE zero-day, phpBB troubles looming?</title><link>http://www.purdue.edu/securepurdue/news/2006/IE-zero-day,-phpBB-troubles-looming.cfm</link><description>IE zero-day, phpBB troubles looming?</description><pubDate>Sun, 19 Mar 2006 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/ad331e9480d2073600e1b6ace6b00ea0</guid></item><item><title>Want to know more about botnets?</title><link>http://www.purdue.edu/securepurdue/news/2006/Want-to-know-more-about-botnets.cfm</link><description>The Worm Blog posted this article  about  a paper on botnets from researchers at the University of Wisconsin.  If you're  unfamiliar with botnets and their uses, this is a good read for you.  </description><pubDate>Thu, 16 Mar 2006 01:00:00 -0500</pubDate><guid>http://www.purdue.edu/securepurdue/ad33ea7780d2073600e1b6acd0c67afd</guid></item></channel></rss>