ADOBE SHOCKWAVER REMOTE CODE EXECUTION UPDATE |
2010-05-12 | Rob VandenBrink | Adobe Shockwave Update |
ADOBE |
2021-12-28/a> | Russ McRee | LotL Classifier tests for shells, exfil, and miners |
2018-11-21/a> | Johannes Ullrich | Critical Vulnerability in Flash Player |
2016-10-26/a> | Johannes Ullrich | Critical Flash Player Update APSB16-36 |
2016-09-13/a> | Rob VandenBrink | Apple iOS 10 and 10.0.1 Released |
2016-06-17/a> | Johannes Ullrich | Critical Adobe Flash Update. Patch Now |
2016-05-12/a> | Xavier Mertens | Adobe Released Updates to Fix Critical Vulnerability |
2016-03-08/a> | Rick Wanner | Critical Adobe Updates - March 2016 |
2016-02-09/a> | Johannes Ullrich | Adobe Patch Tuesday - February 2016 |
2015-12-28/a> | Rick Wanner | Adobe Flash and Adobe AIR Updates - https://helpx.adobe.com/security/products/flash-player/apsb16-01.html |
2015-10-16/a> | Alex Stanford | Adobe Flash Update |
2015-10-13/a> | Alex Stanford | Adobe Updates Acrobat and Adobe Reader |
2015-10-09/a> | Guy Bruneau | Adobe Acrobat and Reader Pre-Announcement |
2015-09-19/a> | Didier Stevens | Don't launch that file Adobe Reader! |
2015-07-27/a> | Daniel Wesemann | Angler's best friends |
2015-07-14/a> | Johannes Ullrich | Adobe Updates Flash Player, Shockwave and PDF Reader |
2015-07-12/a> | Rick Wanner | Another Adobe Flash Zero Day http://www.kb.cert.org/vuls/id/338736 |
2015-06-23/a> | Kevin Shortt | Adobe Flash Player Update - https://helpx.adobe.com/security/products/flash-player/apsb15-14.html |
2015-02-05/a> | Johannes Ullrich | Adobe Flash Player Update Released, Fixing CVE 2015-0313 |
2015-02-02/a> | Stephen Hall | New Adobe Flash Vulnerability - CVE-2015-0313 |
2015-01-26/a> | Russ McRee | Adobe updates Security Advisory for Adobe Flash Player, Infocon returns to green |
2015-01-23/a> | Adrien de Beaupre | Infocon change to yellow for Adobe Flash issues |
2014-11-11/a> | Johannes Ullrich | Adobe Flash Update |
2014-10-14/a> | Johannes Ullrich | Adobe October 2014 Bulletins for Flash Player and Coldfusion |
2014-08-12/a> | Adrien de Beaupre | Adobe updates for 2014/08 |
2014-04-28/a> | Russ McRee | Adobe Security Bulletin: Security updates available for Adobe Flash Player http://adobe.ly/QVjO72 |
2014-04-08/a> | Rick Wanner | Security Updates available for Adobe Flash Player - http://helpx.adobe.com/security/products/flash-player/apsb14-09.html |
2014-03-13/a> | Daniel Wesemann | Adobe Shockwave Player critical update: http://helpx.adobe.com/security/products/shockwave/apsb14-10.html |
2014-03-11/a> | Johannes Ullrich | Adobe Updates: Flash Player |
2014-02-20/a> | Stephen Hall | Abobe out of band patch announcement (APSB14-07) |
2014-02-11/a> | Johannes Ullrich | Adobe February 2014 Patch Tuesday |
2014-02-04/a> | Johannes Ullrich | Adobe Flash Player Emergency Patch |
2014-01-14/a> | Johannes Ullrich | Adobe Patch Tuesday January 2014 |
2013-12-21/a> | Daniel Wesemann | Adobe phishing underway |
2013-12-10/a> | Rob VandenBrink | Adobe Updates today as well. |
2013-11-22/a> | Rick Wanner | Tales of Password Reuse |
2013-10-09/a> | Johannes Ullrich | Other Patch Tuesday Updates (Adobe, Apple) |
2013-10-05/a> | Richard Porter | Adobe Breach Notification, Notifications? |
2013-10-04/a> | Johannes Ullrich | The Adobe Breach FAQ |
2013-10-03/a> | Johannes Ullrich | October Patch Tuesday Preview (CVE-2013-3893 patch coming!) |
2013-09-10/a> | Swa Frantzen | Adobe September 2013 Black Tuesday Overview |
2013-07-09/a> | Swa Frantzen | Adobe July 2013 Black Tuesday Overview |
2013-06-11/a> | Swa Frantzen | Adobe June 2013 Black Tuesday Overview |
2013-05-14/a> | Swa Frantzen | Adobe May 2013 Black Tuesday Overview |
2013-05-10/a> | Johannes Ullrich | Microsoft and Adobe Patch Tuesday Pre-Release |
2013-05-09/a> | John Bambenek | Adobe Releases 0-day Security Advisory for Coldfusion, Exploit Code Available. Advisory here: http://www.adobe.com/support/security/advisories/apsa13-03.html |
2013-05-08/a> | Johannes Ullrich | "De Flashing" the ISC Web Site and Flash XSS issues |
2013-04-09/a> | Swa Frantzen | Adobe April 2013 Black Tuesday Overview |
2013-03-12/a> | Swa Frantzen | Adobe March 2013 Black Tueday |
2013-02-27/a> | Adam Swanger | Adobe Flash Player Security Update - http://www.adobe.com/support/security/bulletins/apsb13-08.html |
2013-02-20/a> | Johannes Ullrich | Update Palooza |
2013-02-17/a> | Guy Bruneau | Adobe Acrobat and Reader Security Update Planned this Week |
2013-02-13/a> | Swa Frantzen | More adobe reader and acrobat (PDF) trouble |
2013-02-07/a> | John Bambenek | Adobe Releases Patches for 0-day Vulnerability in Flash Player for Windows and Mac, Upgrade now: http://www.adobe.com/support/security/bulletins/apsb13-04.html |
2013-01-09/a> | Rob VandenBrink | Security Updates for Adobe Reader / Acrobat - http://www.adobe.com/support/security/bulletins/apsb13-02.html |
2013-01-09/a> | Rob VandenBrink | Security Updates for Adobe Flash - http://www.adobe.com/support/security/bulletins/apsb13-01.html |
2013-01-08/a> | Richard Porter | Adobe Security Bulletins http://blogs.adobe.com/psirt/2013/01/adobe-security-bulletins-posted-4.html |
2013-01-04/a> | Daniel Wesemann | Patch pre-notification from Adobe and Microsoft |
2012-11-08/a> | Daniel Wesemann | Adobe Patches |
2012-10-09/a> | Johannes Ullrich | Adobe Flash Player update http://www.adobe.com/support/security/bulletins/apsb12-22.html |
2012-08-21/a> | Adrien de Beaupre | YYABCAFU - Yes Yet Another Bleeping Critical Adobe Flash Update |
2012-08-14/a> | Rick Wanner | Adobe Security Bulletins - http://blogs.adobe.com/psirt/2012/08/adobe-security-bulletins-posted-2.html |
2012-06-12/a> | Swa Frantzen | Adobe June 2012 Black Tuesday patches |
2012-05-25/a> | Guy Bruneau | Technical Analysis of Flash Player CVE-2012-0779 |
2012-05-12/a> | Tony Carothers | Adobe Update to Vulnerabilities |
2012-05-04/a> | Guy Bruneau | Adobe Security Flash Update |
2012-04-10/a> | Swa Frantzen | Adobe April 2012 Black Tuesday Update |
2012-04-06/a> | Johannes Ullrich | Adobe Patch Tuesday Prerelease (Reader/Acrobat) http://www.adobe.com/support/security/bulletins/apsb12-08.html |
2012-03-28/a> | Kevin Shortt | Adobe Flash Player APSB12-07 - 28 March 2012 |
2012-03-05/a> | Johannes Ullrich | Adobe Flash Player Security Update |
2012-02-16/a> | Johannes Ullrich | Adobe Flash Player Update |
2012-02-14/a> | Johannes Ullrich | Adobe Shockwave Player and RoboHelp for Word Patches |
2012-01-10/a> | Adrien de Beaupre | Adobe January 2012 Black Tuesday overview |
2011-12-13/a> | Johannes Ullrich | December 2011 Adobe Black Tuesday |
2011-12-08/a> | Adrien de Beaupre | Newest Adobe Flash 11.1.102.55 and Previous 0 Day Exploit |
2011-12-07/a> | Lenny Zeltser | Adobe Acrobat Latest Zero-Day Vulnerability Fix Coming to All Platforms by January 10 |
2011-11-11/a> | Rick Wanner | Adobe Air updated to 3.1.0.4880 |
2011-11-08/a> | Swa Frantzen | Abobe November 2011 Black Tuesday Overview |
2011-10-05/a> | Johannes Ullrich | Adobe SSL Certificate Problem (fixed) |
2011-10-01/a> | Mark Hofman | Adobe Photoshop for Windows Vulnerability (CVE-2011-2443) |
2011-09-21/a> | Swa Frantzen | Emergency patch expected for Flash Player |
2011-09-21/a> | Guy Bruneau | Adobe Release Flash Player 10.3.183.10 available at http://get.adobe.com/flashplayer/ |
2011-09-09/a> | Guy Bruneau | Adobe plan to release critical security updates next Tuesday for Acrobat and Reader http://www.adobe.com/support/security/bulletins/apsb11-24.html |
2011-09-09/a> | Guy Bruneau | Adobe Publish its List of Trusted Root Certificate - http://www.adobe.com/security/approved-trust-list.html |
2011-08-26/a> | Daniel Wesemann | Adobe Flash stability update to 10.3.183.7. See http://forums.adobe.com/message/3883150 |
2011-08-09/a> | Swa Frantzen | Adobe August 2011 Black Tuesday Overview |
2011-06-30/a> | Guy Bruneau | Adobe Release Flash Player 10.3.181.34 available at http://get.adobe.com/flashplayer/ |
2011-06-14/a> | Swa Frantzen | Adobe releases patches |
2011-06-06/a> | Johannes Ullrich | Adobe releases Flash Player patch on a Sunday to combat latest 0day http://www.adobe.com/support/security/bulletins/apsb11-13.html |
2011-05-12/a> | Chris Mohan | Security updates available for Flash Player, RoboHelp, Audition, and Flash Media Server |
2011-04-21/a> | Guy Bruneau | Adobe Reader and Acrobat Security Updates |
2011-04-14/a> | Johannes Ullrich | Update to Adobe Flash 0-day: Patch will be out soon |
2011-04-11/a> | Johannes Ullrich | Yet another Adobe Flash/Reader/Acrobat 0 day |
2011-03-22/a> | Kevin Shortt | Adobe Reader/Acrobat Security Update - http://www.adobe.com/support/security/bulletins/apsb11-06.html |
2011-03-14/a> | Bojan Zdrnja | Adobe Flash 0-day being used in targeted attacks |
2011-03-02/a> | Chris Mohan | Updates: Firefox 3.6.14/3.5.17, Thunderbird 3.1.8, Adobe Flash v10.2.152.32 & WireShark 1.4.4 |
2011-02-09/a> | Mark Hofman | Adobe Patches (shockwave, Flash, Reader & Coldfusion) |
2011-01-06/a> | Johannes Ullrich | Flash Local-with-filesystem Sandbox Bypass |
2010-11-22/a> | Lenny Zeltser | Adobe Acrobat Spam Going Strong - More to Come? |
2010-11-19/a> | Jason Lam | Adobe Reader X - Sandbox |
2010-11-04/a> | Johannes Ullrich | Today's Adobe Patches and Vulnerablities |
2010-10-28/a> | Manuel Humberto Santander Pelaez | CVE-2010-3654 - New dangerous 0-day authplay library adobe products vulnerability |
2010-10-06/a> | Robert Danford | Adobe updates: http://www.adobe.com/support/security/bulletins/apsb10-21.html |
2010-09-14/a> | Adrien de Beaupre | Adobe Flash v10.1.82.76 and earlier vulnerability in-the-wild |
2010-09-13/a> | Manuel Humberto Santander Pelaez | Enhanced Mitigation Experience Toolkit can block Adobe 0-day exploit |
2010-09-13/a> | Manuel Humberto Santander Pelaez | Adobe SING table parsing exploit (CVE-2010-2883) in the wild |
2010-09-12/a> | Manuel Humberto Santander Pelaez | Adobe Acrobat pushstring Memory Corruption paper |
2010-09-08/a> | John Bambenek | Adobe Acrobat/Reader 0-day in Wild, Adobe Issues Advisory |
2010-08-25/a> | Pedro Bueno | Adobe released security update for Shockwave player that fix several CVEs: APSB1020 |
2010-08-19/a> | Rob VandenBrink | Don points us to multiple Adobe updates (Reader and Acrobat 9.3.4 among them) ==> http://www.adobe.com/support/downloads/new.jsp |
2010-08-18/a> | Guy Bruneau | Adobe out-of-cycle Updates |
2010-08-10/a> | Jason Lam | Adobe critical security updates |
2010-08-05/a> | Manuel Humberto Santander Pelaez | Adobe Acrobat Font Parsing Integer Overflow Vulnerability |
2010-07-21/a> | Adrien de Beaupre | Adobe Reader Protected Mode |
2010-06-29/a> | donald smith | Adobe Reader 9.3.3/8.2.3 addressing CVE-2010-1297 |
2010-06-16/a> | Kevin Shortt | Adobe Flash Player 10.1 - Security Update Available |
2010-06-09/a> | Deborah Hale | Adobe POC in the Wild |
2010-06-09/a> | Deborah Hale | Best Practice to Prevent PDF Attacks |
2010-06-05/a> | Guy Bruneau | Security Advisory for Flash Player, Adobe Reader and Acrobat |
2010-05-12/a> | Rob VandenBrink | Adobe Shockwave Update |
2010-04-13/a> | Adrien de Beaupre | Security update available for Adobe Reader and Acrobat |
2010-04-09/a> | Mark Hofman | Adobe launch issue response/work around. |
2010-03-31/a> | Johannes Ullrich | PDF Arbitrary Code Execution - vulnerable by design. |
2010-02-16/a> | Robert Danford | Adobe Updates: http://www.adobe.com/support/security/bulletins/apsb10-07.html http://www.adobe.com/support/security/bulletins/apsb10-06.html |
2010-02-12/a> | G. N. White | Adobe Flash Player 10.0.45.2 and AIR 1.5.3.9130 released to correct vulnerability CVE-2010-0186 Details: http://www.adobe.com/support/security/bulletins/apsb10-06.html |
2010-02-02/a> | Guy Bruneau | Adobe ColdFusion Information Disclosure |
2010-01-21/a> | Chris Carboni | Security Update Available for Shockwave Player |
2010-01-14/a> | Bojan Zdrnja | PDF Babushka |
2010-01-12/a> | Johannes Ullrich | Microsoft Advices XP Users to Uninstall Flash Player 6 |
2010-01-12/a> | Johannes Ullrich | Pre-Announced Adobe Reader and Acrobat Patch Found! |
2010-01-07/a> | Daniel Wesemann | Static analysis of malicious PDFs |
2010-01-07/a> | Daniel Wesemann | Static analysis of malicous PDFs (Part #2) |
2009-12-15/a> | Johannes Ullrich | Adobe 0-day in the wild - again |
2009-12-09/a> | Swa Frantzen | Adobe flash player and air patched |
2009-12-03/a> | Mark Hofman | Next week will be a big patch week - Adobe is also releasing patches "Adobe is planning to release an update for Adobe Flash Player 10.0.32.18 and earlier versions, and an update to Adobe AIR 1.5.2 and earlier versions, to resolve critical security issues |
2009-11-03/a> | Bojan Zdrnja | Adobe released Shockwave Player 11.5.2.602 which fixes several critical security vulnerabilities |
2009-10-13/a> | Daniel Wesemann | Adobe Reader and Acrobat - Black Tuesday continues |
2009-10-08/a> | Johannes Ullrich | New Adobe Vulnerability Exploited in Targeted Attacks |
2009-08-18/a> | Deborah Hale | Security Bulletin for ColdFusion and JRun |
2009-07-31/a> | Deborah Hale | Adobe Patch is out |
2009-07-22/a> | Bojan Zdrnja | YA0D (Yet Another 0-Day) in Adobe Flash player |
2009-06-24/a> | Kyle Haugsness | Adobe Shockwave Player Update |
2009-06-09/a> | Swa Frantzen | Adobe June Black Tuesday upgrades |
2009-05-24/a> | Raul Siles | Analyzing malicious PDF documents |
2009-05-22/a> | Mark Hofman | Patching and Adobe |
2009-05-12/a> | Swa Frantzen | Adobe Acrobat (reader) patches released |
2009-05-01/a> | Adrien de Beaupre | Adobe Flash Media Server privilege escalation security bulletin |
2009-04-29/a> | Jason Lam | Two Adobe 0-day vulnerabilities |
2009-04-20/a> | Jason Lam | Digital Content on TV |
2009-03-18/a> | Adrien de Beaupre | Adobe Security Bulletin Adobe Reader and Acrobat |
2009-03-10/a> | Swa Frantzen | Adobe Acrobat 9.1 released |
2009-02-25/a> | Andre Ludwig | Adobe Acrobat pdf 0-day exploit, No JavaScript needed! |
2009-02-25/a> | Andre Ludwig | Adobe flash player patch |
2009-02-25/a> | Andre Ludwig | Preview/Iphone/Linux pdf issues |
2008-12-05/a> | Daniel Wesemann | Been updatin' your Flash player lately? |
2008-11-17/a> | Jim Clausing | Critical update to Adobe AIR |
2008-11-11/a> | Swa Frantzen | Acrobat continued activity in the wild |
2008-11-06/a> | Joel Esler | More Adobe Updates |
2008-10-15/a> | Mari Nichols | Adobe Flash 10 Released |
2008-07-17/a> | Mari Nichols | Adobe Reader 9 Released |
2008-07-11/a> | Raul Siles | How to Determine if Adobe Acrobat or Reader 8.1.2 Security Update 1 is Installed? |
2008-05-27/a> | Adrien de Beaupre | Adobe flash player vuln |
2008-05-12/a> | Scott Fendley | Adobe Releases Security Updates |
2008-04-09/a> | Raul Siles | Critical vulnerabilities in Adobe Flash Player |
2008-03-20/a> | Joel Esler | Potential Vulnerability in Flash CS3 Professional, Flash Professional 8 and Flash Basic 8? |
2008-03-12/a> | Joel Esler | Adobe security updates |
2006-11-29/a> | Toby Kohlenberg | New Adobe vulnerability |
2006-11-14/a> | Jim Clausing | MS06-069: Adobe Flash Player |
2006-11-14/a> | Swa Frantzen | Adobe Flash update available |
2006-09-12/a> | Swa Frantzen | Adobe Flash player upgrade time |
SHOCKWAVER |
2010-05-12/a> | Rob VandenBrink | Adobe Shockwave Update |
REMOTE |
2024-06-17/a> | Xavier Mertens | New NetSupport Campaign Delivered Through MSIX Packages |
2022-10-07/a> | Xavier Mertens | Critical Fortinet Vulnerability Ahead |
2021-05-14/a> | Xavier Mertens | "Open" Access to Industrial Systems Interface is Also Far From Zero |
2021-02-13/a> | Guy Bruneau | vSphere Replication updates address a command injection vulnerability (CVE-2021-21976) - https://www.vmware.com/security/advisories/VMSA-2021-0001.html |
2020-09-29/a> | Xavier Mertens | Managing Remote Access for Partners & Contractors |
2020-08-22/a> | Guy Bruneau | Remote Desktop (TCP/3389) and Telnet (TCP/23), What might they have in Common? |
2019-09-24/a> | Xavier Mertens | Huge Amount of remotewebaccess.com Sites Found in Certificate Transparency Logs |
2017-11-25/a> | Guy Bruneau | Exim Remote Code Exploit |
2015-10-12/a> | Guy Bruneau | Critical Vulnerability in Multiple Cisco Products - Apache Struts 2 Command Execution http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20131023-struts2 |
2013-09-18/a> | Rob VandenBrink | Cisco DCNM Update Released |
2013-02-16/a> | Lorna Hutcheson | Fedora RedHat Vulnerabilty Released |
2012-08-22/a> | Adrien de Beaupre | Apple Remote Desktop update fixes no encryption issue |
2012-03-16/a> | Russ McRee | MS12-020 RDP vulnerabilities: Patch, Mitigate, Detect |
2011-11-28/a> | Tom Liston | A Puzzlement... |
2011-11-19/a> | Pedro Bueno | Dragon Research Group (DRG) announced the white paper entitled "VNC: Threats and Countermeasures" : https://dragonresearchgroup.org/insight/vnc-tac.html |
2011-08-11/a> | Guy Bruneau | BlackBerry Enterprise Server Critical Update |
2010-12-19/a> | Raul Siles | Intel's new processors have a remote kill switch (Anti-Theft 3.0) |
2010-10-19/a> | Rob VandenBrink | Cyber Security Awareness Month - Day 19 - Remote Access Tools |
2010-10-19/a> | Rob VandenBrink | Cyber Security Awareness Month - Day 19 - Remote User VPN Tunnels - to Split or not to Split? |
2010-10-19/a> | Rob VandenBrink | Cyber Security Awareness Month - Day 19 - Remote User VPN Access – Are things getting too easy, or too hard? |
2010-10-19/a> | Rob VandenBrink | Cyber Security Awareness Month - Day 19 - VPN and Remote Access Tools |
2010-05-12/a> | Rob VandenBrink | Adobe Shockwave Update |
2010-03-15/a> | Adrien de Beaupre | Spamassassin Milter Plugin Remote Root Attack |
2010-03-10/a> | Rob VandenBrink | Microsoft Security Advisory 981374 - Remote Code Execution Vulnerability for IE6 and IE7 |
2010-02-02/a> | Guy Bruneau | Cisco Secure Desktop Remote XSS Vulnerability |
2009-11-14/a> | Adrien de Beaupre | Microsoft advisory for Windows 7 / Windows Server 2008 R2 Remote SMB DoS Exploit released |
2009-11-12/a> | Rob VandenBrink | Windows 7 / Windows Server 2008 Remote SMB Exploit |
2008-05-06/a> | Marcus Sachs | Industrial Control Systems Vulnerability |
2008-03-13/a> | Jason Lam | Remote File Include spoof!? |
2006-11-20/a> | Joel Esler | MS06-070 Remote Exploit |
CODE |
2025-03-10/a> | Xavier Mertens | Shellcode Encoded in UUIDs |
2024-12-31/a> | Xavier Mertens | No Holiday Season for Attackers |
2024-08-23/a> | Jesse La Grew | Pandas Errors: What encoding are my logs in? |
2024-08-19/a> | Xavier Mertens | Do you Like Donuts? Here is a Donut Shellcode Delivered Through PowerShell/Python |
2023-12-06/a> | Guy Bruneau | Revealing the Hidden Risks of QR Codes [Guest Diary] |
2023-07-28/a> | Xavier Mertens | ShellCode Hidden with Steganography |
2023-03-16/a> | Xavier Mertens | Simple Shellcode Dissection |
2023-03-07/a> | Johannes Ullrich | Hackers Love This VSCode Extension: What You Can Do to Stay Safe |
2022-11-04/a> | Xavier Mertens | Remcos Downloader with Unicode Obfuscation |
2022-09-14/a> | Xavier Mertens | Easy Process Injection within Python |
2022-05-30/a> | Xavier Mertens | New Microsoft Office Attack Vector via "ms-msdt" Protocol Scheme (CVE-2022-30190) |
2022-02-26/a> | Guy Bruneau | Using Snort IDS Rules with NetWitness PacketDecoder |
2022-01-22/a> | Xavier Mertens | Mixed VBA & Excel4 Macro In a Targeted Excel Sheet |
2022-01-20/a> | Xavier Mertens | RedLine Stealer Delivered Through FTP |
2022-01-06/a> | Xavier Mertens | Malicious Python Script Targeting Chinese People |
2022-01-05/a> | Xavier Mertens | Code Reuse In the Malware Landscape |
2021-12-10/a> | Xavier Mertens | Python Shellcode Injection From JSON Data |
2021-10-20/a> | Xavier Mertens | Thanks to COVID-19, New Types of Documents are Lost in The Wild |
2021-08-20/a> | Xavier Mertens | Waiting for the C2 to Show Up |
2021-02-13/a> | Guy Bruneau | vSphere Replication updates address a command injection vulnerability (CVE-2021-21976) - https://www.vmware.com/security/advisories/VMSA-2021-0001.html |
2021-01-18/a> | Didier Stevens | Doc & RTF Malicious Document |
2020-10-14/a> | Xavier Mertens | Nicely Obfuscated Python RAT |
2020-09-02/a> | Xavier Mertens | Python and Risky Windows API Calls |
2020-08-06/a> | Xavier Mertens | A Fork of the FTCode Powershell Ransomware |
2020-07-27/a> | Didier Stevens | Analyzing Metasploit ASP .NET Payloads |
2019-12-12/a> | Xavier Mertens | Code & Data Reuse in the Malware Ecosystem |
2019-10-27/a> | Didier Stevens | Using scdbg to Find Shellcode |
2019-07-08/a> | Didier Stevens | Machine Code? No! |
2019-07-04/a> | Didier Stevens | Machine Code? |
2019-05-31/a> | Didier Stevens | Retrieving Second Stage Payload with Ncat |
2019-05-30/a> | Didier Stevens | Analyzing First Stage Shellcode |
2019-05-06/a> | Didier Stevens | Text and Text |
2019-05-01/a> | Xavier Mertens | Another Day, Another Suspicious UDF File |
2019-04-23/a> | Didier Stevens | Malicious VBA Office Document Without Source Code |
2019-03-24/a> | Didier Stevens | Decoding QR Codes with Python |
2019-02-25/a> | Didier Stevens | Sextortion Email Variant: With QR Code |
2019-01-02/a> | Didier Stevens | Maldoc with Nonfunctional Shellcode |
2018-09-24/a> | Didier Stevens | Analyzing Encoded Shellcode with scdbg |
2018-09-08/a> | Didier Stevens | Video: Using scdbg to analyze shellcode |
2018-09-03/a> | Didier Stevens | Another quickie: Using scdbg to analyze shellcode |
2018-08-31/a> | Jim Clausing | Quickie: Using radare2 to disassemble shellcode |
2018-06-04/a> | Rob VandenBrink | Digging into Authenticode Certificates |
2017-04-16/a> | Johannes Ullrich | Tool to Detect Active Phishing Attacks Using Unicode Look-Alike Domains |
2016-11-24/a> | Didier Stevens | Extracting Shellcode From JavaScript |
2016-11-18/a> | Didier Stevens | VBA Shellcode and Windows 10 |
2016-09-26/a> | Didier Stevens | VBA and P-code |
2015-09-21/a> | Xavier Mertens | Detecting XCodeGhost Activity |
2015-03-30/a> | Didier Stevens | YARA Rules For Shellcode |
2013-10-25/a> | Johannes Ullrich | PHP.net compromise aftermath: Why Code Signing Beats Hashes |
2013-08-04/a> | Johannes Ullrich | BBCode tag "[php]" used to inject php code |
2013-02-16/a> | Lorna Hutcheson | Fedora RedHat Vulnerabilty Released |
2012-07-19/a> | Mark Baggett | A Heap of Overflows? |
2012-04-26/a> | Richard Porter | Packetstorm Security and Metasploit have Exploit code for MS12-027 |
2012-04-25/a> | Daniel Wesemann | Blacole's shell code |
2012-03-16/a> | Russ McRee | MS12-020 RDP vulnerabilities: Patch, Mitigate, Detect |
2012-03-11/a> | Johannes Ullrich | An Analysis of Jester's QR Code Attack. (Guest Diary) |
2011-08-11/a> | Guy Bruneau | BlackBerry Enterprise Server Critical Update |
2011-08-03/a> | Johannes Ullrich | Malicious Images: What's a QR Code |
2011-03-07/a> | Bojan Zdrnja | Oracle padding attacks (Codegate crypto 400 writeup) |
2010-05-12/a> | Rob VandenBrink | Adobe Shockwave Update |
2010-03-10/a> | Rob VandenBrink | Microsoft Security Advisory 981374 - Remote Code Execution Vulnerability for IE6 and IE7 |
2010-02-08/a> | Adrien de Beaupre | When is a 0day not a 0day? Fake OpenSSh exploit, again. |
2009-08-08/a> | Guy Bruneau | XML Libraries Data Parsing Vulnerabilities |
2009-05-29/a> | Lorna Hutcheson | VMWare Patches Released |
2008-07-22/a> | Mari Nichols | ‘Cold Boot’ Attack Utility Tools |
2008-06-10/a> | Swa Frantzen | Ransomware keybreaking |
EXECUTION |
2022-05-30/a> | Xavier Mertens | New Microsoft Office Attack Vector via "ms-msdt" Protocol Scheme (CVE-2022-30190) |
2021-02-13/a> | Guy Bruneau | vSphere Replication updates address a command injection vulnerability (CVE-2021-21976) - https://www.vmware.com/security/advisories/VMSA-2021-0001.html |
2017-11-25/a> | Guy Bruneau | Exim Remote Code Exploit |
2015-10-12/a> | Guy Bruneau | Critical Vulnerability in Multiple Cisco Products - Apache Struts 2 Command Execution http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20131023-struts2 |
2013-09-18/a> | Rob VandenBrink | Cisco DCNM Update Released |
2013-02-16/a> | Lorna Hutcheson | Fedora RedHat Vulnerabilty Released |
2012-03-16/a> | Russ McRee | MS12-020 RDP vulnerabilities: Patch, Mitigate, Detect |
2011-08-11/a> | Guy Bruneau | BlackBerry Enterprise Server Critical Update |
2010-05-12/a> | Rob VandenBrink | Adobe Shockwave Update |
2010-03-10/a> | Rob VandenBrink | Microsoft Security Advisory 981374 - Remote Code Execution Vulnerability for IE6 and IE7 |
2009-08-08/a> | Guy Bruneau | XML Libraries Data Parsing Vulnerabilities |
2009-05-29/a> | Lorna Hutcheson | VMWare Patches Released |
UPDATE |
2023-04-22/a> | Didier Stevens | YARA v4.3.1 Release |
2023-04-02/a> | Didier Stevens | YARA v4.3.0 Release |
2023-01-07/a> | Didier Stevens | YARA v4.3.0-rc1 --skip-larger |
2022-12-05/a> | Didier Stevens | VLC's Check For Updates: No Updates? |
2022-08-20/a> | Didier Stevens | YARA 4.2.3 Released |
2022-07-02/a> | Didier Stevens | YARA 4.2.2 Released |
2022-04-30/a> | Didier Stevens | YARA 4.2.1 Released |
2022-03-14/a> | Johannes Ullrich | Apple Updates Everything: MacOS 12.3, XCode 13.3, tvOS 15.4, watchOS 8.5, iPadOS 15.4 and more |
2021-11-29/a> | Didier Stevens | Wireshark 3.6.0 Released |
2021-10-31/a> | Didier Stevens | Sysinternals: Autoruns and Sysmon updates |
2021-10-28/a> | Yee Ching Tok | Multiple Apple Patches for October 2021 |
2021-10-10/a> | Didier Stevens | Wireshark 3.4.9 Released |
2021-08-21/a> | Didier Stevens | New Versions Of Sysinternals Tools |
2021-07-25/a> | Didier Stevens | Wireshark 3.4.7 Released |
2021-04-25/a> | Didier Stevens | Wireshark 3.4.5 Released |
2021-03-14/a> | Didier Stevens | Wireshark 3.4.4 Released |
2021-02-06/a> | Didier Stevens | YARA v4.0.5 |
2021-01-31/a> | Didier Stevens | YARA v4.0.4 |
2020-12-20/a> | Didier Stevens | Wireshark 3.4.2 Released |
2020-12-13/a> | Didier Stevens | Wireshark 3.4.1 Released |
2020-09-27/a> | Didier Stevens | Wireshark 3.2.7 Released |
2020-08-15/a> | Didier Stevens | Wireshark 3.2.6 Released |
2020-05-24/a> | Didier Stevens | Wireshark 3.2.4 Released |
2020-04-11/a> | Didier Stevens | Wireshark 3.2.3 Released: Mac Users Pay Attention Please |
2020-03-14/a> | Didier Stevens | Phishing PDF With Incremental Updates. |
2020-03-07/a> | Didier Stevens | Wireshark 3.2.2 Released: Windows' Users Pay Attention Please |
2020-02-05/a> | Brad Duncan | Fake browser update pages are "still a thing" |
2020-02-01/a> | Didier Stevens | Wireshark 3.2.1 Released |
2019-12-21/a> | Didier Stevens | Wireshark 3.2.0 Released |
2019-12-08/a> | Didier Stevens | Wireshark 3.0.7 Released |
2019-10-27/a> | Didier Stevens | Wireshark 3.0.6 Released |
2019-09-21/a> | Didier Stevens | Wireshark 3.0.5 Release: Potential Windows Crash when Updating |
2019-07-09/a> | John Bambenek | MSFT July 2019 Patch Tuesday |
2017-07-30/a> | Guy Bruneau | Re-release of MS Oulook Security Patches https://portal.msrc.microsoft.com/en-us/security-guidance/summary |
2016-09-13/a> | Rob VandenBrink | Apple iOS 10 and 10.0.1 Released |
2016-02-27/a> | Guy Bruneau | OpenSSL Security Update Planned for 1 March Release |
2015-10-09/a> | Guy Bruneau | Adobe Acrobat and Reader Pre-Announcement |
2015-04-04/a> | Didier Stevens | VMware Product Updates Address Critical Information Disclosure Issue In JRE |
2014-08-22/a> | Richard Porter | PHP 5.4.32 Released http://www.php.net/ChangeLog-5.php#5.4.32 |
2014-08-22/a> | Richard Porter | PHP 5.5.16 is available http://www.php.net/ChangeLog-5.php#5.5.16 |
2014-08-12/a> | Adrien de Beaupre | Adobe updates for 2014/08 |
2014-08-01/a> | Chris Mohan | WireShark 1.10.9 and 1.12.0 has been released |
2014-07-11/a> | Rob VandenBrink | Metasploit Update Alert |
2014-06-12/a> | Guy Bruneau | BIND Security Update for CVE-2014-3859 |
2014-04-24/a> | Rob VandenBrink | Apple IOS updates to 7.1.1, OSX Security update 2014-002, Airport Updates - http://support.apple.com/kb/HT1222, http://support.apple.com/kb/HT6208, http://support.apple.com/kb/HT6207, http://support.apple.com/kb/HT6203 |
2014-04-12/a> | Guy Bruneau | Critical Security Update for JetPack WordPress Plugin. Bug has existed since Jetpack 1.9, released in October 2012. - http://jetpack.me/2014/04/10/jetpack-security-update/ |
2014-04-02/a> | Kevin Shortt | Apple Security Update for Safari 6.1.3/7.0.3: http://support.apple.com/kb/HT6181 |
2014-03-06/a> | Mark Baggett | Port 5000 traffic and snort signature |
2014-02-14/a> | Chris Mohan | SYM14-004 Symantec Endpoint Protection Management Vulnerabilities - http://www.symantec.com/business/support/index?page=content&id=TECH214866 |
2013-12-18/a> | Adrien de Beaupre | Wireshark 1.10.4 and 1.8.12 are available |
2013-12-17/a> | Adrien de Beaupre | Apple security updates Mac OS X and Safari |
2013-10-17/a> | Adrien de Beaupre | Chrome updated http://googlechromereleases.blogspot.ca/2013/10/stable-channel-update_15.html |
2013-10-15/a> | Rob VandenBrink | Java Quarterly Updates |
2013-07-28/a> | Guy Bruneau | Wireshark 1.8.9 and 1.10.1 Security Update |
2013-07-03/a> | Kevin Shortt | Apple Security Update 2013-003 |
2013-06-05/a> | Richard Porter | Windows Sysinternals Updated http://technet.microsoft.com/en-us/sysinternals/default.aspx |
2013-05-22/a> | Adrien de Beaupre | Apple QuickTime 7.7.4 for Windows updated, MANY security vulnerabilities: http://support.apple.com/kb/HT1222 |
2013-05-22/a> | Adrien de Beaupre | Chrome 24.0.1312.52 has been updated for Windows, Mac, Linux, and Chrome Frame |
2013-04-19/a> | Russ McRee | Java 8 release schedule delayed for renewed focus on security |
2013-04-03/a> | Mark Hofman | Firefox 20 and Thunderbird 17.0.5 updates |
2013-03-07/a> | Guy Bruneau | Wireshark Security Updates |
2013-02-27/a> | Adam Swanger | Adobe Flash Player Security Update - http://www.adobe.com/support/security/bulletins/apsb13-08.html |
2013-02-22/a> | Chris Mohan | PHP 5.4.12 and PHP 5.3.22 released http://www.php.net/ChangeLog-5.php |
2013-02-22/a> | Chris Mohan | Chrome 25.0.1364.87 addresses multiple vulnerabilities http://googlechromereleases.blogspot.com.au/2013/02/stable-channel-update_21.html |
2013-02-12/a> | Adam Swanger | Microsoft February 2013 Black Tuesday Update - Overview |
2013-02-01/a> | Jim Clausing | Oracle quitely releases Java 7u13 early |
2013-01-17/a> | Russ McRee | PHP 5.4.11 and PHP 5.3.21 released |
2013-01-09/a> | Rob VandenBrink | SQL Injection Flaw in Ruby on Rails |
2013-01-09/a> | Rob VandenBrink | Firefox and Thunderbird Updates |
2013-01-09/a> | Rob VandenBrink | Security Updates for Adobe Flash - http://www.adobe.com/support/security/bulletins/apsb13-01.html |
2013-01-09/a> | Johannes Ullrich | New Format for Monthly Threat Update |
2013-01-08/a> | Richard Porter | Firefox 18 Released, Security Fixes http://www.mozilla.org/security/known-vulnerabilities/firefox.html |
2012-12-11/a> | John Bambenek | Microsoft December 2012 Black Tuesday Update - Overview |
2012-11-13/a> | Jim Clausing | Microsoft November 2012 Black Tuesday Update - Overview |
2012-10-28/a> | Tony Carothers | Firefox 16.02 Released |
2012-09-21/a> | Guy Bruneau | Update for Vulnerabilities in Adobe Flash Player in Internet Explorer 10 (2755801) |
2012-09-20/a> | Russ McRee | Apple and Cisco Security Advisories 19 SEP 2012 |
2012-08-22/a> | Adrien de Beaupre | Apple Remote Desktop update fixes no encryption issue |
2012-08-21/a> | Adrien de Beaupre | YYABCAFU - Yes Yet Another Bleeping Critical Adobe Flash Update |
2012-08-15/a> | Guy Bruneau | Wireshark Security Update |
2012-08-02/a> | Guy Bruneau | Opera Security Update |
2012-07-18/a> | Rob VandenBrink | Snort Updated today |
2012-06-25/a> | Guy Bruneau | Issues with Windows Update Agent |
2012-06-20/a> | Raul Siles | Firefox 13.0.1 Update |
2012-06-06/a> | Jim Clausing | Firefox, Thunderbird, and Seamonkey Security Updates |
2012-05-04/a> | Guy Bruneau | Adobe Security Flash Update |
2012-03-06/a> | Mark Hofman | Websense posted a small article relating to mass injection into wordpress sites (thanks Chris) More info Here --> http://community.websense.com/blogs/securitylabs/archive/2012/03/05/mass-injection-of-wordpress-sites.aspx |
2012-02-04/a> | Scott Fendley | Apple Security Advisory 2012-001 v1.1 |
2011-11-02/a> | Russ McRee | Wireshark updates: 1.6.3 and 1.4.10 released |
2011-10-22/a> | Guy Bruneau | Oracle Java SE Critical Patch Update |
2011-10-01/a> | Mark Hofman | Hot on the heels fo FF, Thunderbird v 7.0.1 and SeaMonkey v 2.4.1 have been updated. |
2011-09-18/a> | Guy Bruneau | Google Chrome Security Updates |
2011-09-06/a> | Guy Bruneau | Firefox 6.0.2 released to removed trust to DigiNotar certificate authority http://www.mozilla.org/en-US/firefox/6.0.2/releasenotes/ |
2011-09-05/a> | Raul Siles | Java 7 Officially Released |
2011-07-15/a> | Deborah Hale | Apple Software Updates |
2011-06-28/a> | Johannes Ullrich | Update: Thunderbird 5.0 released. https://www.mozilla.org/en-US/thunderbird/ |
2011-06-23/a> | Jim Clausing | Apple Security Updates 2011-004 |
2011-06-09/a> | Richard Porter | Chrome Version 12.0.742.91 Released |
2011-06-01/a> | Adrien de Beaupre | Wireshark 1.4.7 and 1.2.17 Released - http://www.wireshark.org/news/20110531.html |
2011-05-20/a> | Guy Bruneau | Sysinternals Updates, Analyzing Stuxnet Infection with Sysinternals Tools Part 3 |
2011-05-16/a> | Jason Lam | Firefox 3.5 forced upgrade coming soon |
2011-05-04/a> | Richard Porter | Microsoft Sysinterals Update |
2011-05-01/a> | Deborah Hale | Java 6.25 Is Now Available |
2011-04-14/a> | Adrien de Beaupre | Sysinternals updates, a new blog post, and webcast |
2011-03-21/a> | Kevin Shortt | APPLE-SA-2011-03-21-1 Mac OS X v10.6.7 and Security Update 2011-001 |
2011-03-09/a> | Chris Mohan | Possible Issue with Forefront Update KB2508823 |
2011-03-02/a> | Chris Mohan | Microsoft’s Autorun update v2.1 now automatically deployed from Windows Update |
2011-02-21/a> | Adrien de Beaupre | Kaspersky update servers unreachable |
2011-01-27/a> | Chris Carboni | Opera Updates |
2010-12-03/a> | Mark Hofman | AVG Update Bricking windows 7 64 bit |
2010-11-30/a> | Joel Esler | VMWare Security Advisory |
2010-11-16/a> | Guy Bruneau | Mac OS X Server v10.6.5 (10H575) Security Update: http://support.apple.com/kb/HT4452 |
2010-08-25/a> | Pedro Bueno | Adobe released security update for Shockwave player that fix several CVEs: APSB1020 |
2010-08-19/a> | Rob VandenBrink | Don points us to multiple Adobe updates (Reader and Acrobat 9.3.4 among them) ==> http://www.adobe.com/support/downloads/new.jsp |
2010-08-10/a> | Jason Lam | Adobe critical security updates |
2010-08-10/a> | Daniel Wesemann | New Apple security updates for iPad/Pod/Phone. See http://support.apple.com/kb/ht1222 |
2010-07-21/a> | Adrien de Beaupre | Update on .LNK vulnerability |
2010-06-29/a> | donald smith | Adobe Reader 9.3.3/8.2.3 addressing CVE-2010-1297 |
2010-05-12/a> | Rob VandenBrink | Adobe Shockwave Update |
2010-04-13/a> | Adrien de Beaupre | Security update available for Adobe Reader and Acrobat |
2010-04-02/a> | Guy Bruneau | Foxit Reader Security Update |
2010-03-29/a> | Adrien de Beaupre | APPLE-SA-2010-03-29-1 Security Update 2010-002 / Mac OS X v10.6.3 |
2010-03-29/a> | Adrien de Beaupre | OOB Update for Internet Explorer MS10-018 |
2010-03-22/a> | Guy Bruneau | New Opera 10.51 available with security fixes. More information available at: http://www.opera.com/docs/changelogs/windows/1051/ |
2010-03-12/a> | Mark Hofman | Firefox 3.6 is being pushed out to users. http://www.mozilla.com/en-US/firefox/3.6/releasenotes/ |
2010-03-11/a> | Mark Hofman | A new version of Safari is out. Looks like for Mac and Windows. Plenty of security fixes (mostly for Windows Safari users http://support.apple.com/kb/HT4070 ) |
2010-03-10/a> | Rob VandenBrink | Microsoft re-release of KB973811 - attacks on Extended Protection for Authentication |
2010-03-08/a> | Raul Siles | Microsoft announced two important bulletins (fixing multiple vulns. affecting Windows and Office) for tomorrow: http://www.microsoft.com/technet/security/Bulletin/MS10-mar.mspx |
2010-03-01/a> | Mark Hofman | Microsoft will drop support for Vista (without any Service Packs) on April 13 and support for XP SP2 ends July 13. (i.e. no more security updates). If you are still running these, it it time to update. |
2010-02-27/a> | Guy Bruneau | PHP 5.2.13 Security Update |
2010-02-11/a> | Deborah Hale | The Mysterious Blue Screen |
2010-01-06/a> | Guy Bruneau | Firefox security and stability update for version 3.5.7 and 3.0.17 available for download |
2009-12-16/a> | Rob VandenBrink | Seamonkey Update to 2.0.1, find the release notes here ==> http://www.seamonkey-project.org/releases/seamonkey2.0.1 |
2009-12-03/a> | Mark Hofman | Apple released some Java updates today APPLE-SA-2009-12-03-1 & 2 (for 10.5 and 10.6). Fixes a number of security issues so updating is a good idea. |
2009-12-02/a> | Rob VandenBrink | Microsoft Black Screen of Death - Fact of Fiction? |
2009-11-25/a> | Jim Clausing | Tool updates |
2009-11-25/a> | Jim Clausing | Microsoft Updates requiring reboot |
2009-11-11/a> | Rob VandenBrink | Apple Safari 4.0.4 Released |
2009-11-09/a> | Guy Bruneau | Apple Security Update 2009-006 for Mac OS X v10.6.2 |
2009-11-06/a> | Mark Hofman | A new version of Firefox (3.5.5) just became available. According to the release notes they are stability improvements. |
2009-10-22/a> | Adrien de Beaupre | Sysinternals updates: Disk2vhd v1.1, ZoomIt v4.1, Coreinfo v2.0, VMMap v2.4 |
2009-09-24/a> | Jim Clausing | A couple more tools |
2009-09-04/a> | Adrien de Beaupre | SeaMonkey Security Update |
2009-08-05/a> | donald smith | Security Update 2009-003 / Mac OS X v10.5.8 |
2009-08-04/a> | donald smith | Java Security Update |
2009-07-18/a> | Patrick Nolan | Chrome update contains Security fixes |
2009-06-10/a> | Swa Frantzen | Java 6 update 14 released |
2009-06-02/a> | Deborah Hale | Another Quicktime Update |
2009-05-26/a> | Jason Lam | Vista & Win2K8 SP2 available |
2009-02-10/a> | Swa Frantzen | Java up to date ? |
2008-11-29/a> | Pedro Bueno | Ubuntu users: Time to update! |
2008-11-13/a> | Jim Clausing | Some recently updated tools |
2008-10-10/a> | Marcus Sachs | Fake Microsoft Update Email |
2008-09-10/a> | Adrien de Beaupre | Apple updates iPod Touch + Bonjour for Windows |
2008-07-11/a> | Jim Clausing | Updates to some of our favorite tools |
2008-04-20/a> | Joel Esler | Software Update -- Did Apple Do Enough? |
2008-03-20/a> | Joel Esler | APPLE-SA-2008-03-19 AirPort Extreme Base Station Firmware 7.3.1 |
2008-03-20/a> | Joel Esler | Potential Vulnerability in Flash CS3 Professional, Flash Professional 8 and Flash Basic 8? |