Articles in the Security Category
Security »
AntiFun The AntiFun tool is used to protect a system from Funlove infection coming over a network. The AntiFun tool will prevent the FunLove virus from creating the dropper executable to System directory. It will not prevent any other files on the system from being infected. Download: ftp://ftp.f-secure.com/anti-virus/tools/antifun.zip Readme: ftp://ftp.f-secure.com/anti-virus/tools/antifun.txt
AntiSirc The purpose of the tool is to help the removal of the Sircam worm. The removal process is rather complex and assumes deletion of …
Security »
Check a website’s reputation even before you click on a link or before you enter a website.Stay safe,stay secure.
Security »
Youngster and “Old”sters may be tempted to play around electrical equipment and fallen wires but the results can be deadly
Security »
Learn how to protect yourself online while mobile banking.
Security »
Proof of Concept: Google Chrome 0.2.149.27 on Windows XP SP2 (Open Calculator) http://security.bkis.vn/Proof-Of-Concept/PoC-XPSP2.html With other Windows non-XP SP2: http://security.bkis.vn/Proof-Of-Concept/PoC-Crash.html Details: · Type of Issue : Buffer Overflow. · Affected Software : Google Chrome 0.2.149.27. · Exploitation Environment : Google Chrome on Windows XP SP2. · Impact: Remote code execution. · Rating : Critical. · Description : …
Security »
Attackers can use social-engineering or other techniques to trick an unsuspecting user into downloading a malicious file… Read more >>>
Security »
clamav: Crash with crafted chm, CVE-2008-1389
References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1389 http://int21.de/cve/CVE-2008-1389-clamav-chd.html http://www.int21.de/cve/cve-2008-1389-samples.tar.bz2 https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1089
Description
A fuzzing test showed weakness in the chm parser of clamav, which can possibly be exploited. The clamav team has disabled the chm module in older versions though freshclam updates and has released 0.94 with a fixed parser.
The clamav team has not mentioned this issue in the release notes of 0.94, which is very bad security …









