Author Archives: Hacker Medic

3010060 – Vulnerability in Microsoft OLE Could Allow Remote Code Execution – Version: 1.1

Revision Note: V1.1 (October 30, 2014): Advisory updated to include additional acknowledgments.Summary: Microsoft is aware of a vulnerability affecting all supported releases of Microsoft Windows, excluding Windows Server 2003. The vulnerability could …

Activate Symantec’s “Disarm” Feature to Sanitize Infected PowerPoint Attachments

Block targeted attacks via email attachments with Disarm technology through Symantec Messaging Gateway.
Read more…

3009008 – Vulnerability in SSL 3.0 Could Allow Information Disclosure – Version: 2.0

Revision Note: V2.0 (October 29, 2014): Revised advisory to announce the deprecation of SSL 3.0, to clarify the workaround instructions for disabling SSL 3.0 on Windows servers and on Windows clients, and to announce the availability of a Microsoft Fix…

Golpistas se passam por executivos de empresas em campanha de spam de transferência bancária

A Symantec observou uma campanha de spam envolvendo e-mails falsos de solicitação de transferência bancária. A técnica não é nova, e teve cobertura na imprensa este ano, mas houve um aumento neste tipo de spam recentemente

Scammers pose as company execs in wire transfer spam campaign

Innocent-looking payment requests could result in financial loss for companies as finance department employees targeted with fraudulent emails.
Read more…

?????????????????DDoS???

      No Comments on ?????????????????DDoS???
攻撃者が新しいプロトコルを試し始めたことで、DDoS 増幅攻撃が増加を続けています。

攻撃者が新しいプロトコルを試し始めたことで、DDoS 増幅攻撃が増加を続けています。

Attackers circumvent patch for Windows Sandworm vulnerability

Attackers continue to take advantage of the Sandworm vulnerability by using an exploit that bypasses its patch to send compromised PowerPoint documents as email attachments.
Read more…