The new Internet Explorer 8 zero-day exploit that was confirmed by Microsoft on Friday is being blamed as the cause of attacks that have created malware infections on a number of websites. More...
Microsoft has now released a "Fix It" patch for the exploit that was discovered last week in its Internet Explorer 6, 7 and 8 versions and is still working on a full update for those browsers. More...
Microsoft has finally responded to the claims that arose yesterday that said there was a flaw with Internet Explorer that would allow your mouse to be tracked. More...
A flaw that was discovered and disclosed to Microsoft in October has been revealed that allows anyone to track your mouse movements and Microsoft has refused to fix the issue. More...
Microsoft has finally patched an exploit that would turn an illegal copy of Windows 8 into a legal copy by downloading the free Windows Media Center add-on from Microsoft. More...
A security company called VUPEN claims to have found a zero day exploit in Windows 8 and Internet Explorer 10 and is selling that information to companies. Microsoft has no comment yet. More...
A new Sophos study claims that Microsoft's Bing search engine has twice as many 'poison links' as Google, with image searches in particular being plagued by Blackhole exploits and malware. More...
A security researcher has discovered another zero-day security exploit in Java, one that affects pretty much every Java version across every browser - putting around one billion computers at risk More...
Samsung has confirmed that a Galaxy S III updated to the latest software version is not vulnerable to the USSD TEL code remote wipe exploit. No word was given regarding other TouchWiz devices More...
An exploit has been video recorded which showcases ISOs for Metal Gear Solid: Peace Walker and Shining Blade loading and running on Sony's newest handheld console, the PlayStation Vita. More...
Google faces an investigation from the Federal Trade Commission over an exploit they manipulated with Safari's cookies, allowing them to track users who did not give permission to be tracked. More...
An Illinois woman has filed a lawsuit against LinkedIn after its password breach, citing the company's incorrect claims about its level of protection for users. More...
Both Microsoft and Google have sent out advisories warning users of an IE zero-day exploit that's being used to hijack Gmail accounts, with Google claiming these attacks are "state-sponsored" More...
A Windows hack allows a user with access to a computer to configure it to run applications on top of the login screen with administrator rights and is virtually undetectable. More...
Microsoft has confirmed that it has fixed an password reset exploit in Hotmail after the problem had apparently already been discovered by hackers earlier this month. More...
Chinese hackers have released the road map to creating an exploit code designed to go after a Windows remote desktop protocol flaw that Microsoft issued a patch for this week. More...
A web browser exploit that caused a flood of pornographic and violent images to be posted on the News Feeds of a number of Facebook users has now been stopped, according to the company. More...
A new vulnerability in OS X Lion has been discovered that allows you to bypass a password if authenticating using LDAP; Apple has reportedly confirmed the bugs existence. More...
According to Indian security expert Rishi Narang, popular business networking site LinkedIn has security vulnerabilities that could lead to unauthorized account access without a password. This vulnerability it just the latest in a huge string... More...
Mobile security is quickly becoming a hot topic as iOS and other platforms came under fire for tracking users' location, although that was quickly patched by Apple. Now, reports from the Register state that 99%... More...
No stranger to security scares, Adobe is once again at the center of a new potential threat to the company's Flash software for just about every platform; Windows, Linux, Mac and Android (as well as... More...
On the second day of the pwn2own competition in Vancouver B.C., hackers took to their devices and showed off what they have secretly been working on. After a successful first day, where we saw Safari... More...
Facebook has a plethora of personal information that when any exploit, no matter how small, surfaces, it can become a huge security risk. A new exploit has surfaced that allows anyone to access any photo... More...
Facebook is the holder of more personal data than most people will want to admit or feel comfortable sharing, so when an exploit hits the popular service, users should take notice. The newest exploit attacks... More...
As the cat and mouse game between Apple and the jailbreaking community continues, another exploit has been discovered that will jailbreak the iPhone 4, iPod touch 4 and iPad. The exploit was found within the... More...
A bug in Facebook's login system reveals your full name and profile picture, no matter how high your privacy settings are set. As spotted by The Register, it's a wonder why no one has noticed... More...
Apple released another update for the iPod touch, iPhone 3G, 3GS and 4 today, patching two security holes in the operating system. iOS 3.2.2 for the iPad has also been released.
The update patches a security... More...
Apple has reportedly readied a fix for an exploit uncovered yesterday which could potentially allow hackers to gain un-permitted access to devices running Apple's mobile operating system, iOS.
Apple said yesterday that it was "investigating" the... More...
Microsoft issued a security bulletin on Friday to warn customers of a 0-day exploit involving the Windows Shell.
The vulnerability is caused due to an error in Windows Shell when parsing shortcuts (.lnk). The flaw can... More...
Gawker Media has uncovered a major security breach at AT&T exposing iPad owners including dozens of CEOs, military officials, and top politicians.
Gawker were handed an exclusive email list based on a collection of early-adopter iPad... More...
A new vulnerability has been revealed today that can access your data on your iPhone, even when your phone is in a locked and un-jailbroken state. PIN codes to protect users from accessing your... More...
Microsoft said on Tuesday that it is investigating a publicly reported vulnerability in the Windows Canonical Display Driver (cdd.dll) affecting 64-bit versions of Windows 7 and Windows Server 2008 R2.
The flaw resides in the Canonical... More...
As Neowin reported earlier this week, WordPress blogs were compromised on what was originally thought to be GoDaddy servers. Neowin spoke exclusively with Todd Redfoot, a security expert at GoDaddy, who explained the exploit.
GoDaddy reassures... More...
After Sony released firmware 3.21 and, to the chagrin of users all over the globe, disabled the option to install a third-party OS on on the system, Geohot vowed to return the functionality to the... More...
The only thing blocking a PDF file written by security researcher Didier Stevens from harming your system is a warning dialog. With some slight tweaking of the warning, and some crafty social engineering, your system... More...
Microsoft has posted a new warning about an exploit that affects its Internet Explorer browser. The zero-day vulnerability, which is already being exploited in the wild, allows for malicious users to install malware on... More...
Energizer is known for their batteries and not for their software. So, if you have installed the software for the Energizer Duo battery charger to monitor the charging level of your batteries, remove the... More...
Only a week after the release of Google Buzz, hackers have already found an exploit that allows someone to compromise a user's Google Buzz account, according to ha.ckers.org. The exploit actually lay inside the Google... More...
Today, in Washington D.C., a convergence of industry specialist have gathered to release the Top 25 Programming Errors and to also announce the establishment of common contract language that does not hold buyers... More...
A computer security expert believes that nine in every ten Oracle databases are vulnerable to an attack that would give hackers access and control over sensitive corporate and government database systems, without the need for... More...
Only a day after the recent out-of-band Internet Explorer vulnerability patch, a new un-patched Internet Explorer flaw could leave thousands of users at risk.
The new attack uses smaller un-patched vulnerabilities in Internet Explorer, small... More...
Many people may remember Charlie Miller from last year's event where he successfully hacked a MacBook and was able to take control over it within seconds, walking away with the MacBook and the grand prize.... More...
Trend Micro has warned that attackers are already exploiting a bug in IE 7 that was patched by Microsoft in the Security update last week with critical status. Trend Micro researchers have spotted a small-scale... More...
Security researchers took 2 hours to reverse engineer yesterdays release of a critical patch for the Windows operating system. According to The New York Times, developers of the Immunity security testing tool wrote an exploit... More...
This week at the Black Hat Security Conference two security researchers will discuss their findings which could completely bring Windows Vista to its knees. Mark Dowd of IBM Internet Security Systems (ISS) and Alexander Sotirov,... More...
Web designers making very old mistakes are letting malicious hackers hijack visitors to their sites, say experts. Many of the loopholes left in the code created for websites have been known about for almost a... More...
Within hours of yesterday's assassination of former Pakistani Prime Minister Benazir Bhutto, malware makers exploited the breaking news to dupe users into downloading attack code, security researchers said Friday. Searches for news about Bhutto's killing... More...
A US-based security researcher has published a single piece of code that can remotely compromise both PCs and Macs as long as they are running Apple's QuickTime media player. The exploit is at least the... More...
Security researchers are warning that exploit code has been published that can take advantage of an extremely critical security flaw in a protocol supported by Apple QuickTime. Apple QuickTime versions 7.2 and 7.3 on Windows... More...
Google user accounts are vulnerable to cross-site scripting attacks through a dangerous Firefox exploit, which is still in the wild some 10 days after its discovery. A client or server-side exploit can be inserted into... More...