Have you ever wondered why there is an increase traffic on port 2976 and port 8555? It is a bot outbreak exploiting SYM06-010. First, the code is release to the public. Then kiddies put the code into their bot and then spread. It does work I added the source code to my test bot and tested on vmware with old symantec in it.
Some interested link http://lists.sans.org/pipermail/unisog/2006-November/026960.html
Less than one month after the release of Windows Vista to Business Customers, and new exploit has been discovered.
Read more: http://stuff.techwhack.com/archives/2006/12/24/first-exploit-windows-vista/
If you think the password protection on your MS Word
file is keeping it safe from prying eyes, you’re wrong.
The time it takes to crack password-protected Microsoft
Office files has tumbled from a 25-day average to a
matter of seconds, thanks to a decades-old code-cracking
technique that until recently was not viable.
Read more.
This is a nice movie tutorial.
http://irongeek.com/i.php?page=videos/passive-os-fingerprinting
One of the common things folks stumble across
my site in search of is information on cracking
local Windows 2000/XP passwords. I’ve created
quite a bit of content on the subject over the
years, and if you want a broader understanding
of the topic please visit these resources:
Read more.
Security researchers have discovered a new type of
rootkit they believe will greatly increase the difficulty
of detecting and removing malicious code.
The rootkit in question, called Backdoor.Rustock.A by
Symantec and Mailbot.AZ by F-Secure, uses advanced techniques
to avoid detection by most rootkit detectors.
Read more.
There’s no doubt that Gmail spam filters are more
effective that Hotmail or Yahoo Mail spam guard.
Yet junk email senders have discovered a new
workaround to fool the GMail spam filter.
Read more.
Microsoft is adding a brand-new feature to Windows Vista
to allow businesses to load ActiveX controls on systems
running without admin privileges.
The new feature, called ActiveX Installer Service, will
be fitted into the next public release of Vista to provide
a way for enterprises to cope with the UAC (User Account Control)
security mechanism.
Read more.
Computer experts from the University of Cambridge
claim not only to have breached the Great Firewall
of China, but have found a way to use the firewall
to launch denial-of-service attacks against specific
Internet Protocol addresses in the country.
Read more.