Blog
Recent
January 27, 2014 19:57

VRT-2013-1001 (CVE-2013-6487): Buffer overflow in Gadu-Gadu HTTP parsing

Sourcefire Vulnerability Report VRT-2013-1001 (CVE-2013-6487): Buffer overflow in Gadu-Gadu HTTP parsing Description An exploitable remote code execution vulnerability exists in Pidgin's implementation of the Gadu Gadu protocol in the libpurple library. An attacker who can c

January 27, 2014 19:56

VRT-2013-1004 (CVE-2013-6490): Buffer overflow in SIMPLE header parsing

Sourcefire Vulnerability Report VRT-2013-1004 (CVE-2013-6490):Buffer overflow in SIMPLE header parsing Description An exploitable remote code execution vulnerability exists in Pidgin's implementation of SIP/SIMPLE message handling. An attacker who can control the Content-Len

January 27, 2014 19:56

VRT-2013-1002 (CVE-2013-6489): Buffer overflow in MXit emoticon parsing

Sourcefire Vulnerability Report VRT-2013-1002 (CVE-2013-6489): Buffer overflow in MXit emoticon parsing Description An exploitable remote code execution vulnerability exists in Pidgin's implementation of the Mxit protocol in the libpurple library. An attacker who can control

January 27, 2014 19:55

VRT-2013-1003 (CVE-2013-6486): Pidgin uses clickable links to untrusted executables

Sourcefire Vulnerability Report VRT-2013-1003: Pidgin uses clickable links to untrusted executables Description An exploitable remote code execution vulnerability exists in Pidgin's implementation of file:// URL handling. An attacker can supply a remote path which will be ev

January 27, 2014 10:00

Our coverage for the Recent Point of Sale Compromises

On December 19th, 2013, Target Corp announced that it fell victim to a very sophisticated cyber-attack that took place around the Thanksgiving holiday. This led to the theft of information pertaining to over 40 million credit and debit accounts used at their stores. As many peop

January 23, 2014 16:25

Fiesta Exploit Kit, is no party

Recently, when our Cisco TRAC team contacted us about some work that we did concerning the Fiesta Exploit Kit for an article they were writing, we were happy to work with them. As discussed in the recent Cisco Annual Security Report, exploit kits have been very pervasive in the

January 14, 2014 13:08

Microsoft Update Tuesday: January 2014, fix for the XP/2003 0-day vulnerability

The first Microsoft Update Tuesday of 2014 is here and it’s a very light month this time around. We’ve got 4 bulletins covering 6 CVEs. What’s remarkable is that there’s no Internet Explorer bulletin this month. There are also no bulletins that are marked critical, all 4 bulletin

December 10, 2013 13:36

Microsoft Update Tuesday: December 2013, some 0-day fixes

Microsoft’s final update for the year brings us 11 bulletins covering 24 CVE issues. As is customary, there is the critical IE bulletin, MS13-097. This time it covers 7 CVE issues.  As in other months, this includes a number of use-after-free issues that we’ve come to expect in

December 9, 2013 16:17

When an exploit kit is VERY simple

Ran across this "exploit kit" today.  I'm holding up my hands with air quotes: Not really sure if it is an exploit kit, as so far, it is just a landing page with applet redirection to a jar file. The GoogleDocs.jar file that is mentioned above is a simple generate