Vulnerability in Microsoft OLE Could Allow Remote Code Execution – Version: 1.1

Revision Note: V1.1 (October 30, 2014): Advisory updated to include additional acknowledgments.Summary: Microsoft is aware of a vulnerability affecting all supported releases of Microsoft Windows, excluding Windows Server 2003. The vulnerability could …

3010060 – Vulnerability in Microsoft OLE Could Allow Remote Code Execution – Version: 1.1

Revision Note: V1.1 (October 30, 2014): Advisory updated to include additional acknowledgments.Summary: Microsoft is aware of a vulnerability affecting all supported releases of Microsoft Windows, excluding Windows Server 2003. The vulnerability could …

Activate Symantec’s “Disarm” Feature to Sanitize Infected PowerPoint Attachments

Block targeted attacks via email attachments with Disarm technology through Symantec Messaging Gateway.
Read more…

Look-alike Avast Online Security extension deceives users on Google Play

We have been recently notified about a suspicious browser extension for Google Chrome. Suspicious because it was called “Avast Free Antivirus 2014″, while our browser extension is called Avast Online Security. You can see the fake extension along with our official ones in Chrome Web Store printscreen below. The extension looks professional featuring printscreens of […]

3009008 – Vulnerability in SSL 3.0 Could Allow Information Disclosure – Version: 2.0

Revision Note: V2.0 (October 29, 2014): Revised advisory to announce the deprecation of SSL 3.0, to clarify the workaround instructions for disabling SSL 3.0 on Windows servers and on Windows clients, and to announce the availability of a Microsoft Fix…

Golpistas se passam por executivos de empresas em campanha de spam de transferência bancária

A Symantec observou uma campanha de spam envolvendo e-mails falsos de solicitação de transferência bancária. A técnica não é nova, e teve cobertura na imprensa este ano, mas houve um aumento neste tipo de spam recentemente

Scammers pose as company execs in wire transfer spam campaign

Innocent-looking payment requests could result in financial loss for companies as finance department employees targeted with fraudulent emails.
Read more…