‏إظهار الرسائل ذات التسميات Shellshock. إظهار كافة الرسائل
‏إظهار الرسائل ذات التسميات Shellshock. إظهار كافة الرسائل

الأربعاء، 15 أكتوبر 2014

POODLE SSL 3.0 Attack Exploits Widely-used Web Encryption Standard

Another Heartbleed-like vulnerability has been discovered in the decade old but still widely used Secure Sockets Layer (SSL) 3.0 cryptographic protocol that could allow an attacker to decrypt contents of encrypted connections to websites.
Google's Security Team revealed on Tuesday that the most widely used web encryption standard SSL 3.0 has a major security vulnerability that could be exploited

السبت، 27 سبتمبر 2014

Apple — Most Mac OS X Users Not Vulnerable to 'Shellshock' Bash Bug





On one hand where more than half of the Internet is considering the Bash vulnerability to be severe, Apple says the vast majority of Mac computer users are not at risk from the recently discovered vulnerability in the Bash command-line interpreter – aka the "Shellshock" bug that could allow hackers to take over an operating system completely.



Apple has issued a public statement in response

Hackers Using 'Shellshock' Bash Vulnerability to Launch Botnet Attacks





Researchers on Thursday discovered a critical remotely exploitable vulnerability in the widely used command-line shell GNU Bourne Again Shell (Bash), dubbed "Shellshock" which affects most of the Linux distributions and servers worldwide, and may already have been exploited in the wild to take over Web servers as part of a botnet that is currently trying to infect other servers as well.


الخميس، 25 سبتمبر 2014

Remotely Exploitable 'Bash Shell' Vulnerability Affects Linux, Unix and Apple Mac OS X





A Critical remotely exploitable vulnerability has been discovered in the widely used Linux and Unix command-line shell, known as Bash, aka the GNU Bourne Again Shell, leaving countless websites, servers, PCs, OS X Macs, various home routers, and many more open to the cyber criminals.



Earlier today, Stephane Chazelas publicly disclosed the technical details of the remote code execution