OS X Lion updated: 10.7.4 fixes FileVault vulnerability
Fire up Software Update if you're using Lion, and be prepared to have your passwords protected by encryption, as they should be. After a nasty error in 10.7.3, fixed in the just-out 10.7.4 update, I'm hoping Apple learned a lesson.
The update al...
Office for Mac 14.2.2 rollup patch now available
Microsoft today announced the availability of the Office for Mac 2011 14.2.2 Update. According to Microsoft, "this update fixes extremely important issues and also helps improve security. It includes fixes for vulnerabilities that an attacker can ...
iOS 5.1.1 patches URL spoofing flaw, two other security vulnerabilities
The iOS 5.1.1 update released on Monday doesn't just fix a handful of feature bugs—it also patches a security flaw that allowed an attacker to display the URL of one site...
OS X plain text password flaw has been around for 3 months and counting
A security flaw in the most recent version of OS X Lion, 10.7.3, can allow anyone with access to system logs to gather passwords to decrypt legacy FileVault home directories or...
Emergency Flash update fixes security bug being used to hijack PCs
Adobe has released an emergency update for its Flash Player that fixes a security bug that's being actively exploited to hijack Windows computers running the ubiquitous software.
The "object confusion vulnerability" resides ...
Malicious apps hosted in Google store turn Android phones into zombies
Google has been caught hosting more than a dozen malicious titles in its official Android app market. Some had been downloaded tens of thousands of times and turn smartphones into zombies...
Android users targeted in drive-by download attacks
Almost a dozen sites are actively targeting Android users with malware that could gain access to corporate networks and other protected systems, security researchers said. They note it's the first time...
Release of exploit code puts Oracle Database users at risk of attack
Oracle has declined to patch a critical vulnerability in its flagship database product, leaving customers vulnerable to attacks that siphon confidential information from corporate servers and execute malware on backend ......
Flashback bots search Twitter for controllers, hit Snow Leopard hardest
Malware investigators for the Russian antivirus company Dr. Web report that the latest version of Flashback, the backdoor malware targeting Macs through a Java exploit, is using Twitter as a backup command and control ne...



