The post One Exploit Should Not Ruin Your Day by Dino Dai Zovi made me think: Finally, the larger problem is that it only took one exploit to compromise these organizations. One exploit should never ruin you day. [sic] No, that is wrong. The larger problem is not that it “only took one exploit to compromise these organizations.” I see this mindset in many shops who aren’t defending enterprises on a daily basis. This point of view incorrectly focuses on exploitation as a point-in-time, “skirmish” event, disconnected from the larger battle or the ultimate campaign. The real “larger problem” is that the exploit is only part of a campaign, where the intruder never gives up. In other words, comprehensive threat removal is the problem. There is no “cleaning,” or…

Related Posts
Microsoft recently announced a new vulnerability in certain versions of its Internet Explorer web browser. If exploited, the vulnerability (CVE 2010-0249) can allow remote code execution. Announcement of this vulnerability follows on the heels of last week’s targeted zero-day attacks against a number of companies. Since we are talking about...
There’s a new threat that spreads via USB storage devices, by exploiting a previously unknown flaw in Windows shortcuts . We have added detection for the shortcut LNK exploit as Exploit:W32/WormLink.A. The shortcut file used in this case is 4.1 KB. Files associated with the trojan-dropper, backdoor, rootkit are detected as the Stuxnet family....
Well, well… looks like someone has been singing along to one of Jay Chow’s songs while coding an exploit that corresponds to a vulnerability in Internet Explorer, which was addressed in Microsoft Security Bulletin MS10-018. The exploit that targets on the Peer Object component (iepeers.dll) in IE has been found in the wild, and today...
Microsoft published a Security Advisory on Monday for a vulnerability in Internet Explorer 6 and IE7 that could allow for remote code execution. IE8 is not affected. Currently, there are no reports of this vulnerability being exploited in-the-wild. Our Exploit Shield analysts have been looking into this case and based on their initial tests, the code...
If you’re not following Mikko’s Twitter feed , you may have missed yesterday’s news that public proof of concept exploit code for the Windows shortcut (.lnk) vulnerability has been released on exploit-db.com. This further escalates the danger of the shortcut vulnerability. So far, only the authors of the Stuxnet rootkit have utilized...
I know many of us work in large, diverse organizations. The larger or more complex the organization, the more difficult it is to enforce uniform security countermeasures. The larger the population to be “secure,” the more likely exceptions will bloom. Any standard tends to devolve to the least common denominator. There are some exceptions,...
The lab is currently seeing a spam run pushing a PDF exploit. The emails look like this:
Read More →
It was with some small amusement that I read the following two press releases recently: First, from May, NetWitness® and ArcSight Partner to Provide Increased Network Visibility : NetWitness, the world leader in advanced threat detection and real-time network forensics, announced certification by ArcSight (NASD: ARST) of compliance with its Common...
A computer security professional who sold Internet Explorer exploit code to credit card hacker Albert Gonzalez was sentenced Tuesday in Boston to three years probation and a $10,000 fine. Jeremy Jethro, 29, was paid $60,000 by Gonzalez for a zero-day exploit against Microsoft’s browser, “the purpose and function of which was to …...
After reading this statement from Adobe , they seem to be using the same language that described the Google v China incident: Adobe became aware on January 2, 2010 of a computer security incident involving a sophisticated, coordinated attack against corporate network systems managed by Adobe and other companies. We are currently in contact with...
Related Tweets from Twitter
There was an error processing the Feed, if this is your page, please check the information provided in your profile.
Related News from Digg
-
McCain’s Tax Cuts Benefit the Rich Even More Than Bush
[US Elections 2008]
Examining McCain’s shifts on taxes today, the Wall Street Journal’s Martin Vaughan writes that “an apt description” for McCain’s tax proposals would be to say “that the wealthy would benefit most.” In fact, as the Cato Institute’s Chris Edwards points out, McCain’s proposals are aimed at the wealthy “even more so than Bush’s”...
1720 Diggs, 328 Comments
-
Architect Secretly Builds Epic Scavenger Hunt into NYC Apt
[Odd Stuff]
Eric Clough isn't your typical architectural designer. That's why, when given the opportunity, he secretly built an incredible scavenger hunt into a $8.5-million, 4,200-square-foot Park Avenue apartment that included ciphers, riddles, poems and a lot of hidden doors and compartments.
1889 Diggs, 178 Comments
-
APT-GET WIFE (pic)
[Linux/Unix]
A excellent geek perceptive of the way to get Married...
2913 Diggs, 356 Comments
-
xkcd presents: ZEALOUS CONFIG
[Comedy]
I'd add an apt description, but in the rush to post it on Digg, I haven't actually read it yet.
2543 Diggs, 264 Comments
-
The REAL Camera Behind Cloverfield
[Gadgets]
For those who've seen the unique monster movie Cloverfield, you know that the story is supposed to be shot by the aptly-named character "Hud" from a cheapo handheld consumer camera. Convincing the audience of that point was one of the movie's most successful angles.
2073 Diggs, 316 Comments