<?xml version="1.0" encoding="UTF-8"?> <rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" ><channel><title>TechBuzz &#187; Security</title> <atom:link href="http://tech-buzz.net/tag/security/feed/" rel="self" type="application/rss+xml" /><link>http://tech-buzz.net</link> <description>Tech Tips, Mobiles, Web and Computer How-Tos</description> <lastBuildDate>Wed, 16 May 2012 15:45:26 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.3.1</generator> <xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" /> <item><title>How to Block Facebook from Tracking You</title><link>http://tech-buzz.net/2011/09/28/how-to-block-facebook-from-tracking-you/</link> <comments>http://tech-buzz.net/2011/09/28/how-to-block-facebook-from-tracking-you/#comments</comments> <pubDate>Wed, 28 Sep 2011 15:24:11 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Browser]]></category> <category><![CDATA[chrome]]></category> <category><![CDATA[Facebook]]></category> <category><![CDATA[Firefox]]></category> <category><![CDATA[privacy]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=6459</guid> <description><![CDATA[<p>This is a guest post by Tom from Chrome-Plugins.org. Facebook has become one of the most popular websites on the internet, 500 million people login to the site every day. While it is a great tool to stay in touch with your friends, Facebook is generating huge profits by targeted ads. But even if you [...]</p><p>This article, <a href="http://tech-buzz.net/2011/09/28/how-to-block-facebook-from-tracking-you/">How to Block Facebook from Tracking You</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2010/08/24/why-you-cant-block-mark-zuckerberg-on-facebook/' rel='bookmark' title='Why You Can&#8217;t Block Mark Zuckerberg on Facebook'>Why You Can&#8217;t Block Mark Zuckerberg on Facebook</a></li><li><a href='http://tech-buzz.net/2011/07/13/facebook-for-every-phone-launched-by-facebook-supports-over-2-5k-phones/' rel='bookmark' title='&#8216;Facebook For Every Phone&#8217; Launched By Facebook; Supports Over 2.5k Phones'>&#8216;Facebook For Every Phone&#8217; Launched By Facebook; Supports Over 2.5k Phones</a></li><li><a href='http://tech-buzz.net/2011/05/11/facebook-accidentally-leaks-your-private-information/' rel='bookmark' title='Facebook Accidentally Leaks Your Private Information'>Facebook Accidentally Leaks Your Private Information</a></li></ol>]]></description> <content:encoded><![CDATA[<p><em>This is a guest post by Tom from </em><a href="http://chrome-plugins.org"><em>Chrome-Plugins.org</em></a><em>.</em></p><p><img style="float: left;" title="Facebook-Tracks-You.png" src="http://tech-buzz.net/wp-content/uploads/2011/09/Facebook-Tracks-You2.png" alt="Facebook Tracks You" width="350" height="77" border="0" /></p><p>Facebook has become one of the most popular websites on the internet, 500 million people login to the site every day. While it is a great tool to stay in touch with your friends, Facebook is generating huge profits by targeted ads. But even if you are logged out and also if you are not a Facebook member – Facebook is tracking every step you make on the web by tracking the websites you visit via the like-button that has been implemented on almost every website nowadays.  Does that make you uncomfortable? Well, it probably should. But there is a simple solution.</p><p><img style="float: right;" title="Stop-Facebook-Tracking.png" src="http://tech-buzz.net/wp-content/uploads/2011/09/Stop-Facebook-Tracking2.png" alt="Stop Facebook Tracking" width="250" height="203" border="0" /></p><p>While Facebook <a href="http://www.zdnet.com/blog/facebook/facebook-denies-cookie-tracking-allegations/4044">denies</a> that the like-buttons are used to generate surfing profiles it is technically possible. The only way to be sure is to prevent third party websites you visit from sending information back to Facebook. This can be done by simply blocking Facebook services such as the like-button from being loaded in your web-browser. The perfect tool for that is Adblock Plus, a free browser extension available for <a href="https://adblockplus.org/en/firefox">Firefox</a> and <a href="https://adblockplus.org/en/chrome">Google Chrome</a>. Adblock Plus is a content blocker, depending on blocking filters it can eliminate any kind of content from the internet. Users can either create their own filters or they can choose from over 40 filter subscriptions that are created by members of the Adblock Plus community and define the elements that are to be blocked. Most people use it to block ads but it can also be configured to block tracking scripts and Facebook integration. All that needs to be done is subscribing to the <a href="http://www.squirrelconspiracy.net/abp/facebook-privacy-list.html">Facebook Privacy List</a>. If you are on Firefox and have Adblock Plus installed, you just need to <a href="file://localhost/abp/subscribe%3Flocation=http%253A%252F%252Fwww%252Esquirrelconspiracy%252Enet%252Fabp%252Ffacebook-privacy-list%252Etxt&amp;title=Facebook%2520Privacy%2520List">click here</a> and confirm the subscription to the filter list by clicking the “Add filter subscription” button.</p><p><img style="display: block; margin-left: auto; margin-right: auto;" title="Facebook-Privacy.png" src="http://tech-buzz.net/wp-content/uploads/2011/09/Facebook-Privacy.png" alt="Facebook Privacy" width="400" height="61" border="0" /></p><p>In Adblock Plus for Chrome, it is a little bit more complicated. To add a filter subscription, right click on the ABP logo in the address bar and choose “Options”.  Under the first tab there is a field to enter the URL of a filter list you wish to activate. Paste the URL of the filter list and click the “Add URL” button. An overview of ll available filter subscriptions can be found <a href="http://adblockplus.org/en/subscriptions">here</a>, URL of the Facebook Privacay List is http://www.squirrelconspiracy.net/abp/facebook-privacy-list.txt.</p><p>If you don’t have Adblock Plus installed already you can get it for Firefox from <a href="https://addons.mozilla.org/en-US/firefox/addon/adblock-plus/">Mozilla Addons</a> or for Chrome from the <a href="https://chrome.google.com/webstore/detail/cfhdojbkjhnklbpkdaibdccddilifddb">Google Webstore</a>.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2010/08/24/why-you-cant-block-mark-zuckerberg-on-facebook/' rel='bookmark' title='Why You Can&#8217;t Block Mark Zuckerberg on Facebook'>Why You Can&#8217;t Block Mark Zuckerberg on Facebook</a></li><li><a href='http://tech-buzz.net/2011/07/13/facebook-for-every-phone-launched-by-facebook-supports-over-2-5k-phones/' rel='bookmark' title='&#8216;Facebook For Every Phone&#8217; Launched By Facebook; Supports Over 2.5k Phones'>&#8216;Facebook For Every Phone&#8217; Launched By Facebook; Supports Over 2.5k Phones</a></li><li><a href='http://tech-buzz.net/2011/05/11/facebook-accidentally-leaks-your-private-information/' rel='bookmark' title='Facebook Accidentally Leaks Your Private Information'>Facebook Accidentally Leaks Your Private Information</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/09/28/how-to-block-facebook-from-tracking-you/">How to Block Facebook from Tracking You</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/09/28/how-to-block-facebook-from-tracking-you/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>500K Bitcoins Traded in 1 Hour, Bitcoin Market Plummets</title><link>http://tech-buzz.net/2011/06/19/500k-bitcoins-traded-in-1-hour-bitcoin-market-plummets/</link> <comments>http://tech-buzz.net/2011/06/19/500k-bitcoins-traded-in-1-hour-bitcoin-market-plummets/#comments</comments> <pubDate>Mon, 20 Jun 2011 03:14:24 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[News]]></category> <category><![CDATA[Bitcoin]]></category> <category><![CDATA[Mtgox]]></category> <category><![CDATA[Security]]></category><guid isPermaLink="false">http://tech-buzz.net/2011/06/19/500k-bitcoins-traded-in-1-hour-bitcoin-market-plummets/</guid> <description><![CDATA[<p>The popular Bitcoin exchange seems to be hacked, with the entire account dump freely available for anyone to view. The passwords are hashed, newer accounts are salt hashed, and cannot be viewed in plain text, but it’s still a bad news. Meanwhile someone with a Honk Kong IP address got access to an MtGox account [...]</p><p>This article, <a href="http://tech-buzz.net/2011/06/19/500k-bitcoins-traded-in-1-hour-bitcoin-market-plummets/">500K Bitcoins Traded in 1 Hour, Bitcoin Market Plummets</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/' rel='bookmark' title='Bitcoin Stealing Malware Found, But How to Secure Your Wallet?'>Bitcoin Stealing Malware Found, But How to Secure Your Wallet?</a></li><li><a href='http://tech-buzz.net/2006/06/18/get-a-free-rapidshare-premium-account/' rel='bookmark' title='Get a Free Rapidshare Premium Account.'>Get a Free Rapidshare Premium Account.</a></li><li><a href='http://tech-buzz.net/2008/04/11/vps-migration/' rel='bookmark' title='VPS Migration'>VPS Migration</a></li></ol>]]></description> <content:encoded><![CDATA[<p>The popular Bitcoin exchange seems to be hacked, with the entire account dump freely available for anyone to view. The passwords are hashed, newer accounts are salt hashed, and cannot be viewed in plain text, but it’s still a bad news. Meanwhile someone with a Honk Kong IP address got access to an MtGox account with 500K Bitcoins and tried to sell it off within 1hour. As a result, the entire Bitcoin market plummeted and the price dropped to $0.01 per Bitcoin (BTC)</p><p><img style="margin: 0px auto; display: block; float: none" title="mtgox-account-dump" alt="mtgox-account-dump" src="http://tech-buzz.net/wp-content/uploads/2011/06/mtgox-account-dump.png" width="500" height="211" /></p><p>Like any other currency exchange, all trades happening on Mtgox are internal, and you may either withdrawn money in BTC or USD, and the compromised account had a daily withdrawal limit of $1000 USD. Even after selling 500K Bitcoins, the hacker could only get away with $1000. And for those who were lucky enough to purchase Bitcoins at $0.01 per BTC, Mtgox is reversing all the transactions which happened after the big dump. It looks like Mtgox just managed to freeze their site, just before more damage could be done.</p><p>Mark Karpeles from MtGox <a href="https://support.mtgox.com/entries/20208066-huge-bitcoin-sell-off-due-to-a-compromised-account-rollback">says</a>:</p><blockquote><p>“It appears that someone who performs audits on our system and had read-only access to our database had their computer compromised. This allowed for someone to pull our database. The site was not compromised with a SQL injection as many are reporting, so in effect the site was not hacked. Two months ago we migrated from MD5 hashing to freeBSD MD5 salted hashing. The unsalted user accounts in the wild are ones that haven&#8217;t been accessed in over 2 months and are considered idle. Once we are back up we will have implemented SHA-512 multi-iteration salted hashing and all users will be required to update to a new strong password.”</p></blockquote><p>It upsets me to know that financial websites can be so unsecure and easy to compromise. If you had an account with Mtgox, please change your password, and if you have a habit of using a universal password for all your logins, now is a good time to change that.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/' rel='bookmark' title='Bitcoin Stealing Malware Found, But How to Secure Your Wallet?'>Bitcoin Stealing Malware Found, But How to Secure Your Wallet?</a></li><li><a href='http://tech-buzz.net/2006/06/18/get-a-free-rapidshare-premium-account/' rel='bookmark' title='Get a Free Rapidshare Premium Account.'>Get a Free Rapidshare Premium Account.</a></li><li><a href='http://tech-buzz.net/2008/04/11/vps-migration/' rel='bookmark' title='VPS Migration'>VPS Migration</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/06/19/500k-bitcoins-traded-in-1-hour-bitcoin-market-plummets/">500K Bitcoins Traded in 1 Hour, Bitcoin Market Plummets</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/06/19/500k-bitcoins-traded-in-1-hour-bitcoin-market-plummets/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Bitcoin Stealing Malware Found, But How to Secure Your Wallet?</title><link>http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/</link> <comments>http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/#comments</comments> <pubDate>Sun, 19 Jun 2011 14:35:11 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Bitcoin]]></category> <category><![CDATA[Malware]]></category><guid isPermaLink="false">http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/</guid> <description><![CDATA[<p>The two year old virtual currency, Bitcoin, gained a huge popularity in recent months after Gwaker published a report of how Bitcoins has turned into a standard currency in underground drug marketplace Silkroad. The present value of each Bitcoin (at the time of writing this article) is around $17.35 (as per MtGox Bitcoin Exchange). But [...]</p><p>This article, <a href="http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/">Bitcoin Stealing Malware Found, But How to Secure Your Wallet?</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/03/03/mobile-malware-that-can-remotely-control-your-android-phone/' rel='bookmark' title='Mobile Malware That Can Remotely Control Your Android Phone'>Mobile Malware That Can Remotely Control Your Android Phone</a></li><li><a href='http://tech-buzz.net/2006/08/05/google-shows-malware-warning-2/' rel='bookmark' title='Google Shows Malware Warning'>Google Shows Malware Warning</a></li><li><a href='http://tech-buzz.net/2011/03/06/check-how-secure-your-password-is-with-how-secure-is-my-password/' rel='bookmark' title='Check how secure your password is with &#8216;How Secure Is My Password&#8217;'>Check how secure your password is with &#8216;How Secure Is My Password&#8217;</a></li></ol>]]></description> <content:encoded><![CDATA[<p>The two year old virtual currency, Bitcoin, gained a huge popularity in recent months after Gwaker published a report of <a href="http://gawker.com/5805928/the-underground-website-where-you-can-buy-any-drug-imaginable">how Bitcoins has turned into a standard currency</a> in underground drug marketplace Silkroad. The present value of each Bitcoin (at the time of writing this article) is around $17.35 (as per MtGox Bitcoin Exchange). But not so long ago, back in November last year, one Bitcoin (BTC) was worth little over 80 cents.</p><p><a href="http://www.flickr.com/photos/donsolo/2243154949/" target="_blank"><img style="margin: 5px 0px 0px 5px; display: inline; float: right" title="bitcoin-malware" alt="bitcoin-malware" align="right" src="http://tech-buzz.net/wp-content/uploads/2011/06/bitcoin-malware.jpg" width="300" height="283" /></a></p><p>People have been investing money into buying high-end graphic cards to mathematically generate these Bitcoin, and given the value of Bitcoins, even hackers have taken some interest into stealing Bitcoins by infecting computers with Trojans. The news first broke out when <a href="http://www.theregister.co.uk/2011/06/16/bitcoin_theft_claims/">a man lost 25000 Bitcoins</a> worth approximately $433750.</p><p>Researchers at Symantec have discovered <a href="http://www.symantec.com/connect/blogs/all-your-bitcoins-are-ours">Infostealer.Coinbit</a> malware which infects Windows computers and scans for your Bitcoin wallet, and sends it back to a server in Poland. Symantec recommends encrypting your wallet.dat with a strong password, so that even if the hacker tries to bruteforce it, he shouldn’t succeed. But the real problem is, even if you encrypt your wallet.dat or your entire hard drive for that matter, Bitcoin clients cannot read or write to an encrypted file. So how do you really protect your Bitcoins?</p><p>Now that such a malware is exposed, other hackers would also be keen on embedding Bitcoin stealing abilities to their malwares. If you are serious about this whole mining business, I think switching to Linux is the best option you have.</p><p>Image Credits: <a href="http://www.flickr.com/photos/donsolo/" target="_blank">Solo</a> on Flickr</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/03/03/mobile-malware-that-can-remotely-control-your-android-phone/' rel='bookmark' title='Mobile Malware That Can Remotely Control Your Android Phone'>Mobile Malware That Can Remotely Control Your Android Phone</a></li><li><a href='http://tech-buzz.net/2006/08/05/google-shows-malware-warning-2/' rel='bookmark' title='Google Shows Malware Warning'>Google Shows Malware Warning</a></li><li><a href='http://tech-buzz.net/2011/03/06/check-how-secure-your-password-is-with-how-secure-is-my-password/' rel='bookmark' title='Check how secure your password is with &#8216;How Secure Is My Password&#8217;'>Check how secure your password is with &#8216;How Secure Is My Password&#8217;</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/">Bitcoin Stealing Malware Found, But How to Secure Your Wallet?</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/06/19/bitcoin-stealing-malware-found-but-how-to-secure-your-wallet/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>Facebook Accidentally Leaks Your Private Information</title><link>http://tech-buzz.net/2011/05/11/facebook-accidentally-leaks-your-private-information/</link> <comments>http://tech-buzz.net/2011/05/11/facebook-accidentally-leaks-your-private-information/#comments</comments> <pubDate>Wed, 11 May 2011 17:32:06 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Social Media]]></category> <category><![CDATA[Facebook]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=5695</guid> <description><![CDATA[<p>Of late, Facebook has been overrun with scams and other privacy related issues, but now Synmantec uncovers a year old bug in Facebook applications which provide access tokens to third parties like advertisers to access user profiles and post status, photographs or even mine Facebook user data. To understand what these tokens can do, think [...]</p><p>This article, <a href="http://tech-buzz.net/2011/05/11/facebook-accidentally-leaks-your-private-information/">Facebook Accidentally Leaks Your Private Information</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2010/11/18/facebook-takes-a-dig-at-google-with-facebook-com/' rel='bookmark' title='Facebook takes a dig at Google with @Facebook.com'>Facebook takes a dig at Google with @Facebook.com</a></li><li><a href='http://tech-buzz.net/2007/09/05/show-your-facebook-profile-to-outsiders/' rel='bookmark' title='Show Your Facebook Profile to Outsiders'>Show Your Facebook Profile to Outsiders</a></li><li><a href='http://tech-buzz.net/2010/08/28/anti-facebook-project-to-be-launched-on-15th-september-are-you-ready/' rel='bookmark' title='Anti Facebook Project to be Launched on 15th September- Are you Ready?'>Anti Facebook Project to be Launched on 15th September- Are you Ready?</a></li></ol>]]></description> <content:encoded><![CDATA[<p><img class="alignright size-full wp-image-5696" style="margin: 5px 0 0 5px;" title="Facebook-Token-Security-lapse" src="http://tech-buzz.net/wp-content/uploads/2011/05/Facebook-Token-Security-lapse.gif" alt="Facebook Security Lapse" width="150" height="150" />Of late, Facebook has been <a href="http://tech-buzz.net/tag/facebook+scam/" target="_blank">overrun with scams</a> and other privacy related issues, but now Synmantec uncovers a year old bug in Facebook applications which provide access tokens to third parties like advertisers to access user profiles and post status, photographs or even mine Facebook user data. To understand what these tokens can do, think of them as back-door to access your house without a spare key. Symantec speculates that as many as hundred thousand applications might be unintentionally leaking these tokens, but as luck would have it this bug was not publicly know and didn&#8217;t do much damage.</p><p>“Third parties, in particular advertisers, have accidentally had access to Facebook users’ accounts including profiles, photographs, chat, and also had the ability to post messages and mine personal information. Fortunately, these third-parties may not have realized their ability to access this information. We have reported this issue to Facebook, who has taken corrective action to help eliminate this issue” says <a href="http://www.symantec.com/connect/blogs/facebook-applications-accidentally-leaking-access-third-parties" target="_blank">Nishant Doshi from Symantec</a></p><p>Access tokens are usually short-lived, which means they expire after a certain time period. In some scenarios, Facebook also issues ageless tokens for application. Changing password is the only way to revoke these permanently set tokens. Symantec has reported this lapse in security to Facebook, and corrective measures have been taken, but it&#8217;s still a wise idea to change your password immediately!</p><p>Facebook spokeswoman Malorie Lucich says &#8220;Unfortunately, their (Symantec&#8217;s) resulting report has a few inaccuracies. Specifically, we have conducted a thorough investigation which revealed no evidence of this issue resulting in a user&#8217;s private information being shared with unauthorized third parties,&#8221;</p><p>Facebook seem to be in a damage control mode to prevent any bad PR on their heads. <strong>Please change your passwords</strong>.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2010/11/18/facebook-takes-a-dig-at-google-with-facebook-com/' rel='bookmark' title='Facebook takes a dig at Google with @Facebook.com'>Facebook takes a dig at Google with @Facebook.com</a></li><li><a href='http://tech-buzz.net/2007/09/05/show-your-facebook-profile-to-outsiders/' rel='bookmark' title='Show Your Facebook Profile to Outsiders'>Show Your Facebook Profile to Outsiders</a></li><li><a href='http://tech-buzz.net/2010/08/28/anti-facebook-project-to-be-launched-on-15th-september-are-you-ready/' rel='bookmark' title='Anti Facebook Project to be Launched on 15th September- Are you Ready?'>Anti Facebook Project to be Launched on 15th September- Are you Ready?</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/05/11/facebook-accidentally-leaks-your-private-information/">Facebook Accidentally Leaks Your Private Information</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/05/11/facebook-accidentally-leaks-your-private-information/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>WordPress 3.1.2 Security Update</title><link>http://tech-buzz.net/2011/04/27/wordpress-3-1-2-security-update/</link> <comments>http://tech-buzz.net/2011/04/27/wordpress-3-1-2-security-update/#comments</comments> <pubDate>Wed, 27 Apr 2011 07:53:10 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Developers]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Update]]></category> <category><![CDATA[Wordpress]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=5283</guid> <description><![CDATA[<p>WordPress has just released WordPress 3.1.2 Security Update which fixes a loop hole allowing Contributors of multi-authored WordPress blogs to improperly publish posts. Since 3.1.1, Archive pages had 404 issues for pages like /tag/tag1+tag2/, this release also patches that problem. If you run a multi-authored blog which allows users to register as contributors or if [...]</p><p>This article, <a href="http://tech-buzz.net/2011/04/27/wordpress-3-1-2-security-update/">WordPress 3.1.2 Security Update</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/04/05/security-update-wordpress-3-1-1/' rel='bookmark' title='Security Update: WordPress 3.1.1'>Security Update: WordPress 3.1.1</a></li><li><a href='http://tech-buzz.net/2007/12/30/wordpress-232-security-update-released/' rel='bookmark' title='WordPress 2.3.2 Security Update Released'>WordPress 2.3.2 Security Update Released</a></li><li><a href='http://tech-buzz.net/2009/10/22/wordpress-2-8-5-security-update-is-out/' rel='bookmark' title='WordPress 2.8.5 Security Update is out!'>WordPress 2.8.5 Security Update is out!</a></li></ol>]]></description> <content:encoded><![CDATA[<p><img style="margin: 0px 3px 0px 0px; display: inline; float: left;" src="http://tech-buzz.net/wp-content/uploads/2011/04/old-wordpress-150x150.jpg" alt="" width="125" height="125" align="left" />WordPress has just released WordPress 3.1.2 Security Update which fixes a loop hole allowing Contributors of multi-authored WordPress blogs to improperly publish posts. Since 3.1.1, Archive pages had 404 issues for pages like /tag/tag1+tag2/, this release also patches that problem.</p><p>If you run a multi-authored blog which allows users to register as contributors or if you have untrusted contributors, considering upgrading WordPress as a soon as possible. Although this affects only WordPress 3.1+ version, it’s still wise to upgrade considering all the new features available for with WordPress 3.1</p><p>Backup your WordPress database before upgrading. You can use one-click update from Your Dashboard or manually download it from <a href="http://wordpress.org/download/">WordPress.org</a></p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/04/05/security-update-wordpress-3-1-1/' rel='bookmark' title='Security Update: WordPress 3.1.1'>Security Update: WordPress 3.1.1</a></li><li><a href='http://tech-buzz.net/2007/12/30/wordpress-232-security-update-released/' rel='bookmark' title='WordPress 2.3.2 Security Update Released'>WordPress 2.3.2 Security Update Released</a></li><li><a href='http://tech-buzz.net/2009/10/22/wordpress-2-8-5-security-update-is-out/' rel='bookmark' title='WordPress 2.8.5 Security Update is out!'>WordPress 2.8.5 Security Update is out!</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/04/27/wordpress-3-1-2-security-update/">WordPress 3.1.2 Security Update</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/04/27/wordpress-3-1-2-security-update/feed/</wfw:commentRss> <slash:comments>2</slash:comments> </item> <item><title>Apple Tracking User Movements With the iPhone and iPad 3G</title><link>http://tech-buzz.net/2011/04/20/apple-tracking-user-movements-with-the-iphone-and-ipad-3g/</link> <comments>http://tech-buzz.net/2011/04/20/apple-tracking-user-movements-with-the-iphone-and-ipad-3g/#comments</comments> <pubDate>Wed, 20 Apr 2011 18:29:39 +0000</pubDate> <dc:creator>TechBuzz</dc:creator> <category><![CDATA[Apple]]></category> <category><![CDATA[featured]]></category> <category><![CDATA[iPad]]></category> <category><![CDATA[iPhone]]></category> <category><![CDATA[Security]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=5017</guid> <description><![CDATA[<p>According to researchers, Apple iPhones and 3G enabled iPads are keeping track and recording all of their owners movements. As per security experts Pete Warden and Alasdair Allan, the data recorded is kept in an unencrypted and a hidden file. The Guardian was the first to report about this. Apparently, if provided with the right [...]</p><p>This article, <a href="http://tech-buzz.net/2011/04/20/apple-tracking-user-movements-with-the-iphone-and-ipad-3g/">Apple Tracking User Movements With the iPhone and iPad 3G</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/03/10/apple-offering-exchange-of-ipads-with-ipad-2s-to-some-educational-institutions/' rel='bookmark' title='Apple offering exchange of iPads with iPad 2s to some educational institutions'>Apple offering exchange of iPads with iPad 2s to some educational institutions</a></li><li><a href='http://tech-buzz.net/2011/03/03/ipad-clearance-sales-pisses-apple-fan-boys-off/' rel='bookmark' title='iPad Clearance Sales Pisses Apple Fan Boys Off!'>iPad Clearance Sales Pisses Apple Fan Boys Off!</a></li><li><a href='http://tech-buzz.net/2011/03/03/uk-ipad-buyers-jump-in-before-apple-spots-their-mistake/' rel='bookmark' title='UK iPad Buyers Jump-in Before Apple Spots their Mistake!'>UK iPad Buyers Jump-in Before Apple Spots their Mistake!</a></li></ol>]]></description> <content:encoded><![CDATA[<p><img class="aligncenter size-full wp-image-5018" title="iPhone Tracking" src="http://tech-buzz.net/wp-content/uploads/2011/04/iPhone-Tracking.jpg" alt="iPhone Tracking" width="460" height="276" /></p><p>According to researchers, Apple iPhones and 3G enabled iPads are keeping track and recording all of their owners movements. As per security experts Pete Warden and Alasdair Allan, the data recorded is kept in an unencrypted and a hidden file. <a href="http://www.guardian.co.uk/technology/2011/apr/20/iphone-tracking-prompts-privacy-fears">The Guardian</a> was the first to report about this.</p><p>Apparently, if provided with the right software it is possible to track exactly where the person has been so far more like a tracker of some sort. There is no valid prove or disprove this though. Apple hasn&#8217;t commented yet on this alleged revelation. Things get worse since there&#8217;s no indication of any sort on the iPhones on the iPads about this. But Apple&#8217;s terms of use gives us a slight hint of this &#8211; &#8220;We may collect information such as occupation, language, zip code, area  code, unique device identifier, location, and the time zone where an  Apple product is used so that we can better understand customer  behaviour and improve our products, services, and advertising&#8221;.</p><p>The experts however writing on a tech website claimed that this was &#8220;clearly intentional&#8221; from Apple. They also revealed that the ability to track a user&#8217;s movements came with the iOS 4 update which was available from June 2010. This could be a major setback to Apple if proved to be right, however if it isn&#8217;t the experts who reported this could be in a world of trouble. I think Apple tracks the user&#8217;s movements to a certain extent but it isn&#8217;t something that is illegal. So maybe next time reading the terms of use shouldn&#8217;t be much of a bother.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/03/10/apple-offering-exchange-of-ipads-with-ipad-2s-to-some-educational-institutions/' rel='bookmark' title='Apple offering exchange of iPads with iPad 2s to some educational institutions'>Apple offering exchange of iPads with iPad 2s to some educational institutions</a></li><li><a href='http://tech-buzz.net/2011/03/03/ipad-clearance-sales-pisses-apple-fan-boys-off/' rel='bookmark' title='iPad Clearance Sales Pisses Apple Fan Boys Off!'>iPad Clearance Sales Pisses Apple Fan Boys Off!</a></li><li><a href='http://tech-buzz.net/2011/03/03/uk-ipad-buyers-jump-in-before-apple-spots-their-mistake/' rel='bookmark' title='UK iPad Buyers Jump-in Before Apple Spots their Mistake!'>UK iPad Buyers Jump-in Before Apple Spots their Mistake!</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/04/20/apple-tracking-user-movements-with-the-iphone-and-ipad-3g/">Apple Tracking User Movements With the iPhone and iPad 3G</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/04/20/apple-tracking-user-movements-with-the-iphone-and-ipad-3g/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Google Chrome Beefs Up Security Against Malicious Downloads and Plugins Vulnerability</title><link>http://tech-buzz.net/2011/04/19/google-chrome-beefs-up-security-against-malicious-downloads-and-plugins-vulnerability/</link> <comments>http://tech-buzz.net/2011/04/19/google-chrome-beefs-up-security-against-malicious-downloads-and-plugins-vulnerability/#comments</comments> <pubDate>Mon, 18 Apr 2011 23:46:53 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Google]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Browser]]></category> <category><![CDATA[chrome]]></category> <category><![CDATA[chromium]]></category> <category><![CDATA[featured]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=4960</guid> <description><![CDATA[<p>Google Chrome has constantly tried to be one step ahead of the curve when it comes to browser safety. They were the first to introduce “Private Browsing” incognito mode, and software sandbox to help beat browser exploits. Two new security features to be built into the experimental dev builds of Google Chrome and Chromium are [...]</p><p>This article, <a href="http://tech-buzz.net/2011/04/19/google-chrome-beefs-up-security-against-malicious-downloads-and-plugins-vulnerability/">Google Chrome Beefs Up Security Against Malicious Downloads and Plugins Vulnerability</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/04/16/google-fixes-critical-security-flaws-in-chrome-browser/' rel='bookmark' title='Google Fixes Critical Security Flaws in Chrome Browser'>Google Fixes Critical Security Flaws in Chrome Browser</a></li><li><a href='http://tech-buzz.net/2006/12/23/are-you-using-safe-wordpress-plugins/' rel='bookmark' title='Are You Using Safe WordPress Plugins ?'>Are You Using Safe WordPress Plugins ?</a></li><li><a href='http://tech-buzz.net/2009/11/18/sneak-peak-google-chromes-forthcoming-extensions-gallery/' rel='bookmark' title='Sneak Peak: Google Chrome&rsquo;s Forthcoming Extensions Gallery'>Sneak Peak: Google Chrome&rsquo;s Forthcoming Extensions Gallery</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Google Chrome has constantly tried to be one step ahead of the curve when it comes to browser safety. They were the first to introduce “Private Browsing” incognito mode, and software sandbox to help beat browser exploits. Two new security features to be built into the experimental dev builds of Google Chrome and Chromium are <a href="http://blog.chromium.org/2011/04/protecting-users-from-malicious.html">protection against malicious download</a> and <a href="http://blog.chromium.org/2010/06/improving-plug-in-security.html">improved plugin security</a>.</p><h3>Malicious Download Protection</h3><p>Chrome will verify the download URLs against Google’s constantly updated blacklist of malwares and infected downloads – <a href="http://code.google.com/apis/safebrowsing/">Safe Browsing API</a>. If the download link appears to be in the Safe Browsing Blacklist, Chrome will visually warn users against downloading. You can still save the file, but it will add a message like this next to the Save Button:</p><p><img style="margin: 0px auto; display: block; float: none;" title="Chrome Malware Warning" src="http://tech-buzz.net/wp-content/uploads/2011/04/chrome-malware-warning.png" alt="Chrome Malware Warning" width="400" height="46" /></p><h3>Improved Plugin Security</h3><p>1. Google Chrome will include a built-in PDF viewer, which will run straight from Chrome’s Sandbox. Making it tougher to exploit PDF based vulnerability</p><p>2. Google Chrome will decline to run out of date plugins such as flash, and help users upgrade to newer versions</p><p>3. Plugins such as Quick Time and Java are not widely used across site. These infrequently used plugins will not autorun on page. Chrome will now advise users before running these plugins, just the way IE used to do with ActiveX plugins<br /> <img style="margin: 0px auto; display: block; float: none;" title="Chrome Plugin Warning" src="http://tech-buzz.net/wp-content/uploads/2011/04/google-chrome-java-warning.png" alt="Chrome Plugin Warning" width="500" height="168" /></p><p>4. Next Generation “Pepper” plugin API will push security to the whole new level by running plugins through Chrome’s Safe Sandbox.</p><p>These new security developments will take some time before they are included in the stable builds of Google Chrome, and delivered to you via Auto Update. Meanwhile, you can download experimental builds of Google Chrome from <a href="http://www.google.com/intl/en/landing/chrome/beta/">here</a>.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2011/04/16/google-fixes-critical-security-flaws-in-chrome-browser/' rel='bookmark' title='Google Fixes Critical Security Flaws in Chrome Browser'>Google Fixes Critical Security Flaws in Chrome Browser</a></li><li><a href='http://tech-buzz.net/2006/12/23/are-you-using-safe-wordpress-plugins/' rel='bookmark' title='Are You Using Safe WordPress Plugins ?'>Are You Using Safe WordPress Plugins ?</a></li><li><a href='http://tech-buzz.net/2009/11/18/sneak-peak-google-chromes-forthcoming-extensions-gallery/' rel='bookmark' title='Sneak Peak: Google Chrome&rsquo;s Forthcoming Extensions Gallery'>Sneak Peak: Google Chrome&rsquo;s Forthcoming Extensions Gallery</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/04/19/google-chrome-beefs-up-security-against-malicious-downloads-and-plugins-vulnerability/">Google Chrome Beefs Up Security Against Malicious Downloads and Plugins Vulnerability</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/04/19/google-chrome-beefs-up-security-against-malicious-downloads-and-plugins-vulnerability/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Free Portable Virus Scanner &#8211; Microsoft Safety Scanner</title><link>http://tech-buzz.net/2011/04/17/free-portable-virus-scanner-microsoft-safety-scanner/</link> <comments>http://tech-buzz.net/2011/04/17/free-portable-virus-scanner-microsoft-safety-scanner/#comments</comments> <pubDate>Sun, 17 Apr 2011 13:15:06 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Anti-Virus]]></category> <category><![CDATA[download]]></category> <category><![CDATA[featured]]></category> <category><![CDATA[Microsoft]]></category> <category><![CDATA[virus protection]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=4880</guid> <description><![CDATA[<p>Microsoft Safety Scanner isn’t a replacement for your main anti-virus tool. It can act as your secondary line of defense towards killing any malware in your computer, it is portable and comes in both 32-bit and 64-bit versions for Windows XP and later. Microsoft Safety Scanner does not require any installation, does not offer real-time [...]</p><p>This article, <a href="http://tech-buzz.net/2011/04/17/free-portable-virus-scanner-microsoft-safety-scanner/">Free Portable Virus Scanner &#8211; Microsoft Safety Scanner</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/' rel='bookmark' title='NanoScan:The Fastest Online Virus/Malware Scanner'>NanoScan:The Fastest Online Virus/Malware Scanner</a></li><li><a href='http://tech-buzz.net/2007/12/27/download-avg-anti-virus-75-professional-for-free/' rel='bookmark' title='Download AVG Anti-Virus 7.5 Professional for Free'>Download AVG Anti-Virus 7.5 Professional for Free</a></li><li><a href='http://tech-buzz.net/2006/08/08/aol-launches-free-antivirus-software/' rel='bookmark' title='AOL launches Free Antivirus Software'>AOL launches Free Antivirus Software</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Microsoft Safety Scanner isn’t a replacement for your main anti-virus tool. It can act as your secondary line of defense towards killing any malware in your computer, it is portable and comes in both 32-bit and 64-bit versions for Windows XP and later.</p><p>Microsoft Safety Scanner does not require any installation, does not offer real-time virus scanning functionality and it does not have the update functionality unlike other anti-virus tools. It weighs up around 70.3MB, and contains up-to-date virus definitions. Once downloaded, the Safety Scanner will expire in 10 days, pushing you to download a different copy to get new virus definitions.</p><h3>Microsoft Safety Scanner – Pros:</h3><p>1. First of all, it’s portable. You can use it to scan for viruses and malware without removing your active virus scanning software. You cannot install two different anti-virus tools together, so in this scenario, Microsoft Safety Scanner works as your second line of defense, without many hassles.</p><p>2. You don’t need to worry about installing or configuring Microsoft Safety Scanner. Just download it and use it.</p><h3>Microsoft Safety Scanner – Cons:</h3><p>1. Cannot pause the virus scan once started</p><p>2. No auto-update feature to get new virus definitions. Expires in 10 days after download.</p><p>Microsoft Safety Scanner is very simple to use. Once downloaded, you can run it straight without set-up (remember: you need to be logged in as administrator to use it).</p><p><a href="http://tech-buzz.net/wp-content/uploads/2011/04/microsoft-safety-scanner.png"><img style="margin: 0px auto; display: block; float: none;" title="microsoft-safety-scanner" src="http://tech-buzz.net/wp-content/uploads/2011/04/microsoft-safety-scanner_thumb.png" alt="Microsoft Safety Scanner" width="500" height="455" /></a></p><p><a href="http://tech-buzz.net/wp-content/uploads/2011/04/microsoft-safety-scanner-2.png"><img style="margin: 0px auto; display: block; float: none;" title="microsoft-safety-scanner-2" src="http://tech-buzz.net/wp-content/uploads/2011/04/microsoft-safety-scanner-2_thumb.png" alt="Microsoft Safety Scanner 2" width="500" height="455" /></a></p><p>Just select the depth of the scan: Quick Scan, Full Scan or Customized Scan of user-specified folder. You cannot minimize the scan window, or pause the scan once started. Download Microsoft Safety Scanner from <a href="http://www.microsoft.com/security/scanner/en-us/default.aspx">here</a>.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/' rel='bookmark' title='NanoScan:The Fastest Online Virus/Malware Scanner'>NanoScan:The Fastest Online Virus/Malware Scanner</a></li><li><a href='http://tech-buzz.net/2007/12/27/download-avg-anti-virus-75-professional-for-free/' rel='bookmark' title='Download AVG Anti-Virus 7.5 Professional for Free'>Download AVG Anti-Virus 7.5 Professional for Free</a></li><li><a href='http://tech-buzz.net/2006/08/08/aol-launches-free-antivirus-software/' rel='bookmark' title='AOL launches Free Antivirus Software'>AOL launches Free Antivirus Software</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/04/17/free-portable-virus-scanner-microsoft-safety-scanner/">Free Portable Virus Scanner &#8211; Microsoft Safety Scanner</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/04/17/free-portable-virus-scanner-microsoft-safety-scanner/feed/</wfw:commentRss> <slash:comments>3</slash:comments> </item> <item><title>Google Fixes Critical Security Flaws in Chrome Browser</title><link>http://tech-buzz.net/2011/04/16/google-fixes-critical-security-flaws-in-chrome-browser/</link> <comments>http://tech-buzz.net/2011/04/16/google-fixes-critical-security-flaws-in-chrome-browser/#comments</comments> <pubDate>Sat, 16 Apr 2011 07:46:35 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Security]]></category> <category><![CDATA[Adobe]]></category> <category><![CDATA[Browser]]></category> <category><![CDATA[chrome]]></category> <category><![CDATA[Flash]]></category> <category><![CDATA[Google]]></category> <category><![CDATA[Vulnerability]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=4814</guid> <description><![CDATA[<p>Google has released a security update (Chrome v10.0.648.205) for their widely used Chrome Web Browser for Windows, Linux, Mac and Chrome Frame. This new update covers serious security vulnerability which exists in Flash Player 10.2.153.1 and earlier versions of Adobe Flash Player. Here’s a quote from Adobe’s Security bulletin released on April 11th: “This vulnerability [...]</p><p>This article, <a href="http://tech-buzz.net/2011/04/16/google-fixes-critical-security-flaws-in-chrome-browser/">Google Fixes Critical Security Flaws in Chrome Browser</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2006/08/09/critical-updates-for-windows-and-office/' rel='bookmark' title='Critical Updates for Windows and Office'>Critical Updates for Windows and Office</a></li><li><a href='http://tech-buzz.net/2009/10/18/microsofts-plug-in-puts-firefox-users-at-risk/' rel='bookmark' title='Microsoft&rsquo;s Plug-in puts Firefox Users at Risk'>Microsoft&rsquo;s Plug-in puts Firefox Users at Risk</a></li><li><a href='http://tech-buzz.net/2011/03/16/google-chrome-gets-a-new-logo-now-more-flatter/' rel='bookmark' title='Google Chrome gets a new logo, looks more flatter now'>Google Chrome gets a new logo, looks more flatter now</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Google has released a security update (Chrome v10.0.648.205) for their widely used Chrome Web Browser for Windows, Linux, Mac and Chrome Frame. This new update covers serious security vulnerability which exists in Flash Player 10.2.153.1 and earlier versions of Adobe Flash Player.</p><p>Here’s a <a href="http://www.adobe.com/support/security/advisories/apsa11-02.html">quote from Adobe’s Security bulletin</a> released on April 11<sup>th: </sup></p><blockquote><p>“This vulnerability (CVE-2011-0611) could cause a crash and potentially allow an attacker to take control of the affected system. There are reports that this vulnerability is being exploited in the wild in targeted attacks via a malicious Web page or a Flash (.swf) file embedded in a Microsoft Word (.doc) or Microsoft Excel (.xls) file delivered as an email attachment, targeting the Windows platform. At this time, Adobe is not aware of any attacks via PDF targeting Adobe Reader and Acrobat. Adobe Reader X Protected Mode mitigations would prevent an exploit of this kind from executing.”</p></blockquote><p>Three additional security weaknesses are fixed in the latest stable build of Google Chrome. While one affects only Windows platform, the rest affect all platforms of Google Chrome:</p><p>1. [Windows only] [70070] Critical CVE-2011-1300: Off-by-three in GPU process.</p><p>2. [75629] Critical CVE-2011-1301: Use-after-free in the GPU process.</p><p>3. [78524] Critical CVE-2011-1302: Heap overflow in the GPU process.</p><p><img style="display: block; float: none; margin-left: auto; margin-right: auto;" title="chrome_security_update" src="http://tech-buzz.net/wp-content/uploads/2011/04/chrome_security_update.png" alt="Chrome Security Update" width="500" height="286" /></p><h3>How to Update Chrome?</h3><p>1. Click on the Wrench Icon in your Chrome Toolbar</p><p>2. Choose <strong>Update Google Chrome</strong></p><p>(If you don’t find “Update Google Chrome”, choose “<strong>About Google Chrome</strong>” to receive in-browser updates)</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2006/08/09/critical-updates-for-windows-and-office/' rel='bookmark' title='Critical Updates for Windows and Office'>Critical Updates for Windows and Office</a></li><li><a href='http://tech-buzz.net/2009/10/18/microsofts-plug-in-puts-firefox-users-at-risk/' rel='bookmark' title='Microsoft&rsquo;s Plug-in puts Firefox Users at Risk'>Microsoft&rsquo;s Plug-in puts Firefox Users at Risk</a></li><li><a href='http://tech-buzz.net/2011/03/16/google-chrome-gets-a-new-logo-now-more-flatter/' rel='bookmark' title='Google Chrome gets a new logo, looks more flatter now'>Google Chrome gets a new logo, looks more flatter now</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/04/16/google-fixes-critical-security-flaws-in-chrome-browser/">Google Fixes Critical Security Flaws in Chrome Browser</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/04/16/google-fixes-critical-security-flaws-in-chrome-browser/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Security Update: WordPress 3.1.1</title><link>http://tech-buzz.net/2011/04/05/security-update-wordpress-3-1-1/</link> <comments>http://tech-buzz.net/2011/04/05/security-update-wordpress-3-1-1/#comments</comments> <pubDate>Tue, 05 Apr 2011 17:10:22 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Developers]]></category> <category><![CDATA[featured]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Upgrade]]></category> <category><![CDATA[Wordpress]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=4606</guid> <description><![CDATA[<p>If you have migrated to WordPress 3.1, then it’s time to update your WordPress installation again. Although WordPress 3.1.1 won’t add any new functionality to your self-hosted WordPress blog, it would be wise to update as it fixes 30 known security weakness including: Some security hardening to media uploads Performance improvements Fixes for IIS6 support [...]</p><p>This article, <a href="http://tech-buzz.net/2011/04/05/security-update-wordpress-3-1-1/">Security Update: WordPress 3.1.1</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/10/27/wordpress-231-security-update-released/' rel='bookmark' title='WordPress 2.3.1 Security Update Released'>WordPress 2.3.1 Security Update Released</a></li><li><a href='http://tech-buzz.net/2009/11/13/wordpress-2-8-6-security-update-for-multi-author-blogs/' rel='bookmark' title='WordPress 2.8.6 Security Update for Multi-Author Blogs'>WordPress 2.8.6 Security Update for Multi-Author Blogs</a></li><li><a href='http://tech-buzz.net/2007/12/30/wordpress-232-security-update-released/' rel='bookmark' title='WordPress 2.3.2 Security Update Released'>WordPress 2.3.2 Security Update Released</a></li></ol>]]></description> <content:encoded><![CDATA[<p><img class="alignleft size-thumbnail wp-image-4607" title="Wordpress Sticker" src="http://tech-buzz.net/wp-content/uploads/2011/04/old-wordpress-150x150.jpg" alt="WordPress 3.1.1 Sticker" width="105" height="105" />If you have migrated to WordPress 3.1, then it’s time to update your WordPress installation again. Although <a href="http://wordpress.org/news/2011/04/wordpress-3-1-1/">WordPress 3.1.1</a> won’t add any new functionality to your self-hosted WordPress blog, it would be wise to update as it fixes 30 known security weakness including:</p><ul><li>Some security hardening to media uploads</li><li>Performance improvements</li><li>Fixes for IIS6 support</li><li>Fixes for taxonomy and PATHINFO (/index.php/) permalinks</li><li>Fixes for various query and taxonomy edge cases that caused some plugin compatibility issues</li></ul><p>Backup your database, and use the one-click upgrade from your WordPress dashboard. If that won’t work with your WordPress installation, <a href="http://wordpress.org/download/">download WordPress 3.1.1</a> and <a href="http://codex.wordpress.org/Updating_WordPress">manually upgrade</a>.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/10/27/wordpress-231-security-update-released/' rel='bookmark' title='WordPress 2.3.1 Security Update Released'>WordPress 2.3.1 Security Update Released</a></li><li><a href='http://tech-buzz.net/2009/11/13/wordpress-2-8-6-security-update-for-multi-author-blogs/' rel='bookmark' title='WordPress 2.8.6 Security Update for Multi-Author Blogs'>WordPress 2.8.6 Security Update for Multi-Author Blogs</a></li><li><a href='http://tech-buzz.net/2007/12/30/wordpress-232-security-update-released/' rel='bookmark' title='WordPress 2.3.2 Security Update Released'>WordPress 2.3.2 Security Update Released</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/04/05/security-update-wordpress-3-1-1/">Security Update: WordPress 3.1.1</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/04/05/security-update-wordpress-3-1-1/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Check how secure your password is with &#8216;How Secure Is My Password&#8217;</title><link>http://tech-buzz.net/2011/03/06/check-how-secure-your-password-is-with-how-secure-is-my-password/</link> <comments>http://tech-buzz.net/2011/03/06/check-how-secure-your-password-is-with-how-secure-is-my-password/#comments</comments> <pubDate>Sat, 05 Mar 2011 22:44:23 +0000</pubDate> <dc:creator>TechBuzz</dc:creator> <category><![CDATA[Internet]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[password]]></category> <category><![CDATA[privacy]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=4126</guid> <description><![CDATA[<p>We all know how our passwords need to be changed regularly and should be a mixture of upper case letters, numbers and even symbols. Some websites even show us if our password is strong, weak or average, seen mostly during the sign-up process. But what if something tells you how good your password is based [...]</p><p>This article, <a href="http://tech-buzz.net/2011/03/06/check-how-secure-your-password-is-with-how-secure-is-my-password/">Check how secure your password is with &#8216;How Secure Is My Password&#8217;</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/09/04/improved-password-saving-in-firefox-3/' rel='bookmark' title='Improved Password Saving in Firefox 3'>Improved Password Saving in Firefox 3</a></li><li><a href='http://tech-buzz.net/2007/09/24/shorten-and-password-protect-urls-with-hidelinks/' rel='bookmark' title='Shorten and Password Protect URLs with HideLinks'>Shorten and Password Protect URLs with HideLinks</a></li><li><a href='http://tech-buzz.net/2006/06/22/get-microsoft-soccer-scoreboard-without-wga-check/' rel='bookmark' title='Get Microsoft Soccer Scoreboard without WGA Check'>Get Microsoft Soccer Scoreboard without WGA Check</a></li></ol>]]></description> <content:encoded><![CDATA[<p><a href="http://tech-buzz.net/wp-content/uploads/2011/03/how-secure-is-my-password.jpg"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px;" title="how secure is my password" src="http://tech-buzz.net/wp-content/uploads/2011/03/how-secure-is-my-password_thumb.jpg" border="0" alt="how secure is my password" width="400" height="147" /></a></p><p>We all know how our passwords need to be changed regularly and should be a mixture of upper case letters, numbers and even symbols. Some websites even show us if our password is strong, weak or average, seen mostly during the sign-up process.</p><p>But what if something tells you how good your password is based on the character count and relevance ? Well, a website called <a href="http://howsecureismypassword.net/">how secure is my password</a> tells you exactly that. All you have to do is type in the password in the box and it tells you how good or secure your password is. And it is very accurate mind you, because if you type something like ‘bunny’ it says, that a desktop pc can crack your password in a sec. But when I tried something lengthy and complicated it gave out different results, saying it would take some million years to crack it. Interesting stuff this.</p><p>Via: <a href="http://howsecureismypassword.net/">Download Squad</a></p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/09/04/improved-password-saving-in-firefox-3/' rel='bookmark' title='Improved Password Saving in Firefox 3'>Improved Password Saving in Firefox 3</a></li><li><a href='http://tech-buzz.net/2007/09/24/shorten-and-password-protect-urls-with-hidelinks/' rel='bookmark' title='Shorten and Password Protect URLs with HideLinks'>Shorten and Password Protect URLs with HideLinks</a></li><li><a href='http://tech-buzz.net/2006/06/22/get-microsoft-soccer-scoreboard-without-wga-check/' rel='bookmark' title='Get Microsoft Soccer Scoreboard without WGA Check'>Get Microsoft Soccer Scoreboard without WGA Check</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/03/06/check-how-secure-your-password-is-with-how-secure-is-my-password/">Check how secure your password is with &#8216;How Secure Is My Password&#8217;</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/03/06/check-how-secure-your-password-is-with-how-secure-is-my-password/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>Mobile Malware That Can Remotely Control Your Android Phone</title><link>http://tech-buzz.net/2011/03/03/mobile-malware-that-can-remotely-control-your-android-phone/</link> <comments>http://tech-buzz.net/2011/03/03/mobile-malware-that-can-remotely-control-your-android-phone/#comments</comments> <pubDate>Thu, 03 Mar 2011 17:52:02 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Android]]></category> <category><![CDATA[Google]]></category> <category><![CDATA[Malware]]></category> <category><![CDATA[Security]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=4082</guid> <description><![CDATA[<p>If you happen to own an Android device, you better think twice and ask yourself if you really need the app before hitting on that download button. Google just pulled about 50 malware infected apps from their Android Market. These apps were infected with malicious code, which was released from three different publishers. Nicknamed “DreamDroid”, [...]</p><p>This article, <a href="http://tech-buzz.net/2011/03/03/mobile-malware-that-can-remotely-control-your-android-phone/">Mobile Malware That Can Remotely Control Your Android Phone</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/11/06/google-announces-android-mobile-os/' rel='bookmark' title='Google Announces Android Mobile OS'>Google Announces Android Mobile OS</a></li><li><a href='http://tech-buzz.net/2011/02/14/make-your-own-android-avatar-with-googles-androidify-app/' rel='bookmark' title='Make your own Android avatar with Google&rsquo;s Androidify app'>Make your own Android avatar with Google&rsquo;s Androidify app</a></li><li><a href='http://tech-buzz.net/2011/01/20/android-market-place-hits-225000-mark/' rel='bookmark' title='Android market Place hits 225,000 mark'>Android market Place hits 225,000 mark</a></li></ol>]]></description> <content:encoded><![CDATA[<p>If you happen to own an Android device, you better think twice and ask yourself if you really need the app before hitting on that download button. Google just pulled about 50 malware infected apps from their Android Market. These apps were infected with malicious code, which was released from three different publishers.</p><p><img class="alignleft size-full wp-image-4083" title="android-malware" src="http://tech-buzz.net/wp-content/uploads/2011/03/geinimi-android-malware.jpg" alt="android-malware" width="280" height="334" />Nicknamed “DreamDroid”, it can have root level access to your device, and connect it to command-and-control server over an encrypted connection. It’s capable of pocketing your IMSI (International Mobile Subscriber Identity) and SIM card serial number. Prior to this discovery, malware infected apps were usually hosted on third party sites, and not on Google’s own Android Market.</p><p>Android has come a long way, and unlike Apple’s app store, Google doesn’t essentially screen the code of each and every app which pass onto user’s devices from Android Market. Each day, hundreds of new apps flood Android Market place, and it’s not hard for one or two apps to slip out with malicious code. If at all anything, it just reassures everyone how popular Android platform has turn out to be.</p><p>Google, nonetheless, has a master switch to remotely uninstall any application from the user’s Android Device. They haven’t pulled the trigger to remotely remove apps yet, but it’s most likely to happen. If you haven’t synced your Android device with your Google Account, it’s high time to do so. Remote uninstalls don’t work otherwise if your phone and Google Account are not synced.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/11/06/google-announces-android-mobile-os/' rel='bookmark' title='Google Announces Android Mobile OS'>Google Announces Android Mobile OS</a></li><li><a href='http://tech-buzz.net/2011/02/14/make-your-own-android-avatar-with-googles-androidify-app/' rel='bookmark' title='Make your own Android avatar with Google&rsquo;s Androidify app'>Make your own Android avatar with Google&rsquo;s Androidify app</a></li><li><a href='http://tech-buzz.net/2011/01/20/android-market-place-hits-225000-mark/' rel='bookmark' title='Android market Place hits 225,000 mark'>Android market Place hits 225,000 mark</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2011/03/03/mobile-malware-that-can-remotely-control-your-android-phone/">Mobile Malware That Can Remotely Control Your Android Phone</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2011/03/03/mobile-malware-that-can-remotely-control-your-android-phone/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>First iPhone Worm Hits Jailbroken iPhones in Australia</title><link>http://tech-buzz.net/2009/11/08/first-iphone-worm-hits-jailbroken-iphones-in-australia/</link> <comments>http://tech-buzz.net/2009/11/08/first-iphone-worm-hits-jailbroken-iphones-in-australia/#comments</comments> <pubDate>Sun, 08 Nov 2009 17:04:36 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Apple]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[iPhone]]></category> <category><![CDATA[Malware]]></category> <category><![CDATA[mobile]]></category> <category><![CDATA[Worm]]></category><guid isPermaLink="false">http://tech-buzz.net/2009/11/08/first-iphone-worm-hits-jailbroken-iphones-in-australia/</guid> <description><![CDATA[<p>iPhone users in Australia are hit by a new worm which changes their wallpaper to an image of 1980s pop-star Rick Astley. The worm affects only jailbroken iPhones, if their default password after install SSH has not been changed. According to security expert, Graham Cluley, the worm has been coded by a hacker calling himself [...]</p><p>This article, <a href="http://tech-buzz.net/2009/11/08/first-iphone-worm-hits-jailbroken-iphones-in-australia/">First iPhone Worm Hits Jailbroken iPhones in Australia</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/08/06/mp3-eating-worm-will-delete-all-your-music/' rel='bookmark' title='MP3-Eating Worm will delete all your music'>MP3-Eating Worm will delete all your music</a></li><li><a href='http://tech-buzz.net/2006/12/05/myspace-worm-spread-through-quicktime/' rel='bookmark' title='MySpace Worm Spread through QuickTime'>MySpace Worm Spread through QuickTime</a></li><li><a href='http://tech-buzz.net/2008/01/30/1-million-iphones-unlocked-in-2007/' rel='bookmark' title='1 Million iPhones Unlocked in 2007'>1 Million iPhones Unlocked in 2007</a></li></ol>]]></description> <content:encoded><![CDATA[<p>iPhone users in Australia are hit by a new worm which changes their wallpaper to an image of 1980s pop-star Rick Astley. The worm affects only jailbroken iPhones, if their default password after install SSH has not been changed.</p><p align="center"><a href="http://tech-buzz.net/wp-content/uploads/2009/11/ikee_iphone_word.png"><img style="border-bottom: 0px; border-left: 0px; display: block; float: none; margin-left: auto; border-top: 0px; margin-right: auto; border-right: 0px" title="ikee_iphone_worm" border="0" alt="ikee_iphone_worm" src="http://tech-buzz.net/wp-content/uploads/2009/11/ikee_iphone_word_thumb.png" width="320" height="480" /></a></p><p>According to security expert, <a href="http://www.sophos.com/blogs/gc/g/2009/11/08/iphone-worm-discovered-wallpaper-rick-astley-photo/">Graham Cluley</a>, the worm has been coded by a hacker calling himself â€œikeeâ€. It changed the background wallpaper to Rick Astleyâ€™s image along with a message â€œ<i>ikee is never going to give you up</i>â€. Changing the wallpaper through settings wonâ€™t work.</p><p>If you have a jailbroken iPhone or iPod Touch with SSH installed, itâ€™s wise to change the default root password of your device with something other than â€˜alpineâ€™ or by disabling SSH. iPhones have same default root password â€˜alpineâ€™ and many overlook the need to change that password, which renders their phone defenseless to intrusion and hacking. A detailed guide on how to secure your iPhone can be found <a href="http://www.redmondpie.com/how-to-secure-your-jailbroken-iphone-from-ssh-hack-9140084/">here</a>. (Image source: <a href="http://forums.whirlpool.net.au/forum-replies.cfm?t=1315624#r13" target="_blank">forums.whirlpool.net.au</a>)</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/08/06/mp3-eating-worm-will-delete-all-your-music/' rel='bookmark' title='MP3-Eating Worm will delete all your music'>MP3-Eating Worm will delete all your music</a></li><li><a href='http://tech-buzz.net/2006/12/05/myspace-worm-spread-through-quicktime/' rel='bookmark' title='MySpace Worm Spread through QuickTime'>MySpace Worm Spread through QuickTime</a></li><li><a href='http://tech-buzz.net/2008/01/30/1-million-iphones-unlocked-in-2007/' rel='bookmark' title='1 Million iPhones Unlocked in 2007'>1 Million iPhones Unlocked in 2007</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2009/11/08/first-iphone-worm-hits-jailbroken-iphones-in-australia/">First iPhone Worm Hits Jailbroken iPhones in Australia</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2009/11/08/first-iphone-worm-hits-jailbroken-iphones-in-australia/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>WordPress 2.8.5 Security Update is out!</title><link>http://tech-buzz.net/2009/10/22/wordpress-2-8-5-security-update-is-out/</link> <comments>http://tech-buzz.net/2009/10/22/wordpress-2-8-5-security-update-is-out/#comments</comments> <pubDate>Wed, 21 Oct 2009 19:00:00 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Developers]]></category> <category><![CDATA[Internet]]></category> <category><![CDATA[News]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Update]]></category> <category><![CDATA[Wordpress]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=2947</guid> <description><![CDATA[<p>WordPress.org has released their latest security update. WordPress 2.8.5 is out now! Over the past few months WordPress.org has worked hard towards securing their popular blogging platform. In the process they managed to close some serious security loopholes in WordPress 2.8.4. Now they have released another security update to their popular blogging platform in the [...]</p><p>This article, <a href="http://tech-buzz.net/2009/10/22/wordpress-2-8-5-security-update-is-out/">WordPress 2.8.5 Security Update is out!</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/12/30/wordpress-232-security-update-released/' rel='bookmark' title='WordPress 2.3.2 Security Update Released'>WordPress 2.3.2 Security Update Released</a></li><li><a href='http://tech-buzz.net/2007/10/27/wordpress-231-security-update-released/' rel='bookmark' title='WordPress 2.3.1 Security Update Released'>WordPress 2.3.1 Security Update Released</a></li><li><a href='http://tech-buzz.net/2007/01/02/wordpress-templatephp-exploit-discovered/' rel='bookmark' title='WordPress template.php Exploit Discovered'>WordPress template.php Exploit Discovered</a></li></ol>]]></description> <content:encoded><![CDATA[<p><a title="Wordpress.org" href="http://wordpress.org/" target="_self">WordPress.org</a> has released their latest security update. WordPress 2.8.5 is out now!<img style="border-right-width: 0px; display: block; float: none; border-top-width: 0px; border-bottom-width: 0px; margin-left: auto; border-left-width: 0px; margin-right: auto" title="wordpress" src="http://tech-buzz.net/wp-content/uploads/2009/10/wordpress_thumb.png" border="0" alt="wordpress" width="75" height="100" /></p><p>Over the past few months WordPress.org has worked hard towards securing their popular blogging platform. In the process they managed to close some serious security loopholes in WordPress 2.8.4. Now they have released another security update to their popular blogging platform in the form of WordPress 2.8.5.</p><p>They have identified a number of security hardening changes which they say were back-porting to 2.8 branch and they are suggesting that all bloggers and websites using wordpress 2.8.4 must now upgrade to wordpress 2.8.5 and make all your sites as secure as possible.</p><p><a href="http://tech-buzz.net/wp-content/uploads/2009/10/wordpress.png"></a></p><p><strong>The important changes in this release are:</strong></p><ul><li>A fix for the Trackback Denial-of-Service attack that is currently being seen.</li><li>Removal of areas within the code where php code in variables was evaluated.</li><li>Switched the file upload functionality to be whitelisted for all users including Admins.</li><li>Retiring of the two importers of Tag data from old plugins.</li></ul><p><strong>Also Peter at <a title="Wordpress" href="http://wordpress.org/development/2009/10/wordpress-2-8-5-hardening-release/" target="_self">WordPress.org</a> made a wise suggestion at the release:</strong></p><blockquote><p>He suggests If you think your site may have been hit by one of the recent exploits and you would like to make sure that you have cleared out all traces of the exploit then we would recommend that you take a look at the <a href="http://wordpress.org/extend/plugins/exploit-scanner/">WordPress Exploit Scanner</a>.</p></blockquote><p>WordPress Exploit Scanner is a plugin which searches the files on your website, and the posts and comments tables of your database for anything suspicious. It also examines your list of active plugins for unusual filenames.Â  You can download this plugin here â€“ â€œ<a href="http://ocaoimh.ie/exploit-scanner/">WordPress Exploit Scanner</a>â€</p><p>We suggest that everyone ugprades to the latest version; WordPress 2.8.5 to ensure you have the best protection available for your blog.</p><p>Read more about the latest WordPress security release and download wordpress 2.8.5, click <a title="Download WordPress 2.8.5" href="http://wordpress.org/development/2009/10/wordpress-2-8-5-hardening-release/" target="_self">here!</a></p><p>[Source: <a title="Wordpress.org" href="http://wordpress.org/development/2009/10/wordpress-2-8-5-hardening-release/" target="_self">WordPress.org</a>]</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/12/30/wordpress-232-security-update-released/' rel='bookmark' title='WordPress 2.3.2 Security Update Released'>WordPress 2.3.2 Security Update Released</a></li><li><a href='http://tech-buzz.net/2007/10/27/wordpress-231-security-update-released/' rel='bookmark' title='WordPress 2.3.1 Security Update Released'>WordPress 2.3.1 Security Update Released</a></li><li><a href='http://tech-buzz.net/2007/01/02/wordpress-templatephp-exploit-discovered/' rel='bookmark' title='WordPress template.php Exploit Discovered'>WordPress template.php Exploit Discovered</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2009/10/22/wordpress-2-8-5-security-update-is-out/">WordPress 2.8.5 Security Update is out!</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2009/10/22/wordpress-2-8-5-security-update-is-out/feed/</wfw:commentRss> <slash:comments>6</slash:comments> </item> <item><title>Microsoft&#8217;s Plug-in puts Firefox Users at Risk</title><link>http://tech-buzz.net/2009/10/18/microsofts-plug-in-puts-firefox-users-at-risk/</link> <comments>http://tech-buzz.net/2009/10/18/microsofts-plug-in-puts-firefox-users-at-risk/#comments</comments> <pubDate>Sat, 17 Oct 2009 19:08:57 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Microsoft]]></category> <category><![CDATA[Firefox]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Vulnerability]]></category> <category><![CDATA[Windows Update]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=2791</guid> <description><![CDATA[<p>Back in February, Microsoft silently slipped Windows Presentation Foundation plugin into Firefox without user&#8217;s consent. This plugin came along with .NET Framework 3.5 Service Pack 1 and was installed in IE as well as Firefox via Windows Update. It has now been discovered that the code in the plugin can cause a very serious vulnerability [...]</p><p>This article, <a href="http://tech-buzz.net/2009/10/18/microsofts-plug-in-puts-firefox-users-at-risk/">Microsoft&rsquo;s Plug-in puts Firefox Users at Risk</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2006/05/21/microsoft-office-users-are-at-risk-of-information-disclosure/' rel='bookmark' title='Microsoft Office Users are at Risk of Information Disclosure'>Microsoft Office Users are at Risk of Information Disclosure</a></li><li><a href='http://tech-buzz.net/2008/02/06/update-wordpress-233/' rel='bookmark' title='[Update] WordPress 2.3.3'>[Update] WordPress 2.3.3</a></li><li><a href='http://tech-buzz.net/2006/08/09/critical-updates-for-windows-and-office/' rel='bookmark' title='Critical Updates for Windows and Office'>Critical Updates for Windows and Office</a></li></ol>]]></description> <content:encoded><![CDATA[<p>Back in February, Microsoft silently slipped Windows Presentation Foundation plugin into Firefox without user&#8217;s consent. This plugin came along with .NET Framework 3.5 Service Pack 1 and was installed in IE as well as Firefox via Windows Update.</p><p><img style="border-right-width: 0px; display: block; float: none; border-top-width: 0px; border-bottom-width: 0px; margin-left: auto; border-left-width: 0px; margin-right: auto" title="firefox-wpf-add-on" border="0" alt="firefox-wpf-add-on" src="http://tech-buzz.net/wp-content/uploads/2009/10/firefoxwpfaddon.png" width="450" height="323" /></p><p>It has now been discovered that the code in the plugin can cause a very serious vulnerability in Firefox, which will potentially expose users to &quot;browse and you&#8217;re owned&quot; attacks. According to <a href="http://blogs.technet.com/srd/archive/2009/10/12/ms09-054.aspx">Microsoft&#8217;s Security Research and Defense blog</a>:</p><blockquote><p>A browse-and-get-owned attack vector exists. All that is needed is for a user to be lured to a malicious website. Triggering this vulnerability involves the use of a malicious XBAP (<a href="http://msdn.microsoft.com/en-us/library/aa970060.aspx">XAML Browser Application</a>). Please not that while this attack vector matches one of the attack vectors for <a href="http://blogs.technet.com/srd/archive/2009/10/12/ms09-061-more-information-on-the-net-security-bulletin.aspx">MS09-061</a>, the underlying vulnerability is different.&#160; Here, the affected process is the Windows Presentation Foundation (WPF) hosting process, PresentationHost.exe.</p><p>While the vulnerability is in an IE component, there is an attack vector for Firefox users as well. The reason is that .NET Framework 3.5 SP1 installs a &quot;Windows Presentation Foundation&quot; plug-in in Firefox, as shown below.</p></blockquote><p>Good news is that, Microsoft has released a fix (MS09-054), which has been delivered through Windows Update. Firefox users, who haven&#8217;t installed this update, please open &quot;Tools&quot;-&gt; &quot;Add-ons&quot; -&gt; &quot;Plugins&quot;, select &quot;Windows Presentation Foundation&quot;, and click &quot;Disable&quot;.</p><p>Installing a plugin with vulnerability without user consent into other browsers is a shame on Microsoft&#8217;s part, especially when they complain about <a href="http://arstechnica.com/microsoft/news/2009/09/microsoft-google-chrome-frame-makes-ie-less-secure.ars">Google&#8217;s Chrome Frame making IE less secure</a>.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2006/05/21/microsoft-office-users-are-at-risk-of-information-disclosure/' rel='bookmark' title='Microsoft Office Users are at Risk of Information Disclosure'>Microsoft Office Users are at Risk of Information Disclosure</a></li><li><a href='http://tech-buzz.net/2008/02/06/update-wordpress-233/' rel='bookmark' title='[Update] WordPress 2.3.3'>[Update] WordPress 2.3.3</a></li><li><a href='http://tech-buzz.net/2006/08/09/critical-updates-for-windows-and-office/' rel='bookmark' title='Critical Updates for Windows and Office'>Critical Updates for Windows and Office</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2009/10/18/microsofts-plug-in-puts-firefox-users-at-risk/">Microsoft&rsquo;s Plug-in puts Firefox Users at Risk</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2009/10/18/microsofts-plug-in-puts-firefox-users-at-risk/feed/</wfw:commentRss> <slash:comments>7</slash:comments> </item> <item><title>Download Microsoft Security Essentials Beta</title><link>http://tech-buzz.net/2009/06/29/download-microsoft-security-essentials-beta/</link> <comments>http://tech-buzz.net/2009/06/29/download-microsoft-security-essentials-beta/#comments</comments> <pubDate>Mon, 29 Jun 2009 08:50:26 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Microsoft]]></category> <category><![CDATA[Morro]]></category> <category><![CDATA[MSE]]></category> <category><![CDATA[OneCare]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Windows Live]]></category><guid isPermaLink="false">http://tech-buzz.net/?p=2709</guid> <description><![CDATA[<p>On 23rd June, Microsoft unveiled their new free security tool, Microsoft Security Essential (codenamed: Morro). The beta download was capped to 75000 and was restricted to USA and China, however, the beta is already available through file sharing networks, which means you don&#8217;t have to sit there and wait for it to be available in [...]</p><p>This article, <a href="http://tech-buzz.net/2009/06/29/download-microsoft-security-essentials-beta/">Download Microsoft Security Essentials Beta</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2006/06/15/latest-microsoft-security-updates-released/' rel='bookmark' title='Latest Microsoft Security Updates Released'>Latest Microsoft Security Updates Released</a></li><li><a href='http://tech-buzz.net/2006/06/07/aol-steps-into-security/' rel='bookmark' title='AOL steps into Security'>AOL steps into Security</a></li><li><a href='http://tech-buzz.net/2006/09/07/microsoft-expression-beta-1-released/' rel='bookmark' title='Microsoft Expression Beta 1 Released'>Microsoft Expression Beta 1 Released</a></li></ol>]]></description> <content:encoded><![CDATA[<p>On 23<sup>rd</sup> June, Microsoft unveiled their new free security tool, <a href="http://connect.microsoft.com/securityessentials">Microsoft Security Essential</a> (codenamed: Morro). The beta download was capped to 75000 and was restricted to USA and China, however, the beta is already available through file sharing networks, which means you don&#8217;t have to sit there and wait for it to be available in your country. [Link: <a href="http://www.softpedia.com/progDownload/Microsoft-Security-Essentials-Download-131683.html">Softpedia</a>]</p><p>Microsoft Security Essential will replace Windows Live OneCare and is designed to fight viruses, rootkits and other malware. Firewall and anti-spam protection is not covered in the package, but that can be justified since Windows Firewall and Windows Defender are now shipped with Windows.</p><p>Independent testing done by AV-Test.org has proved Microsoft Security Essential to be very accurate. Here&#8217;s an excerpt of what they had to say:</p><blockquote><p><em>&quot;We scanned a set of WildList malware (on-demand test) and we also tested the on-access guard with the same set of samples. Our set included 3,194 common virus, bot and worm samples from the most recent WildList 05/2009, released about one week ago. <br /></em></p><p><em>All files were properly detected and treated by the product. That&#8217;s good, as several other AV scanners are still not able to detect and kill all of these critters yet. (Extensive testing of the entire collection of malware files we have will take a lot more time, but we will do this in the coming days.) <br /></em></p></blockquote><p><em>We&#8217;ve also tested the product against a large set of false positives, but none of the clean files were flagged as being malicious &#8211; very good.&quot; <br /></em></p><p>Microsoft Security Essential lacks behavior based virus detection, which means the security software relies on definition updates and can&#8217;t detect new worms and Trojans based on their generic behavior.</p><h2>How to install: <br /></h2><p>You can download Microsoft Security Essential from <a href="http://www.softpedia.com/get/Antivirus/Microsoft-Security-Essentials.shtml">Softpedia</a> (Size: 4.7 MB). The installation will ask you to validate your copy of Windows before installing. It will automatically update virus and spyware definition and real time protection is enabled by default. You can choose between Quick, Fill and Custom scans.</p><h2>Screenshots: <br /></h2><p>The user interface is crispy and clean, and it resembles a lot with the UI of Windows Defender.</p><p align="center"><a href="http://uploads.tech-buzz.net/DownloadMicrosoftSecurityEssentialsBeta_CA8E/MSE_update.png"><img style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px" title="MSE update" border="0" alt="MSE update" src="http://uploads.tech-buzz.net/DownloadMicrosoftSecurityEssentialsBeta_CA8E/MSE_update_thumb.png" width="375" height="292" /></a></p><p align="center">&#160;<a href="http://uploads.tech-buzz.net/DownloadMicrosoftSecurityEssentialsBeta_CA8E/MSE_scan.png"><img style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px" title="MSE_scan" border="0" alt="MSE_scan" src="http://uploads.tech-buzz.net/DownloadMicrosoftSecurityEssentialsBeta_CA8E/MSE_scan_thumb.png" width="375" height="292" /></a></p><p align="center"><a href="http://uploads.tech-buzz.net/DownloadMicrosoftSecurityEssentialsBeta_CA8E/MSE_memory_footprint.png"><img style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px" title="MSE_memory_footprint" border="0" alt="MSE_memory_footprint" src="http://uploads.tech-buzz.net/DownloadMicrosoftSecurityEssentialsBeta_CA8E/MSE_memory_footprint_thumb.png" width="323" height="292" /></a></p><p>Microsoft Security Essential is due for public release in September 09. When I pick any antivirus, I want it to be reliable, quick and consume fewer resources on my computer. I can undoubtedly say MSE passes all these criteria.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2006/06/15/latest-microsoft-security-updates-released/' rel='bookmark' title='Latest Microsoft Security Updates Released'>Latest Microsoft Security Updates Released</a></li><li><a href='http://tech-buzz.net/2006/06/07/aol-steps-into-security/' rel='bookmark' title='AOL steps into Security'>AOL steps into Security</a></li><li><a href='http://tech-buzz.net/2006/09/07/microsoft-expression-beta-1-released/' rel='bookmark' title='Microsoft Expression Beta 1 Released'>Microsoft Expression Beta 1 Released</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2009/06/29/download-microsoft-security-essentials-beta/">Download Microsoft Security Essentials Beta</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2009/06/29/download-microsoft-security-essentials-beta/feed/</wfw:commentRss> <slash:comments>1</slash:comments> </item> <item><title>NanoScan:The Fastest Online Virus/Malware Scanner</title><link>http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/</link> <comments>http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/#comments</comments> <pubDate>Tue, 11 Mar 2008 23:20:13 +0000</pubDate> <dc:creator>Thilak</dc:creator> <category><![CDATA[Downloads]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Tools]]></category><guid isPermaLink="false">http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/</guid> <description><![CDATA[<p>This post is by Abhijeet Mukherjee, a tech enthusiast and is going to start his blog soon. One of the ways to detect suspicious programs on your computer is by running an online virus scan.Although there are a number of online virus scanners like McAfee FreeScan and Trend Micro, most of them take time and [...]</p><p>This article, <a href="http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/">NanoScan:The Fastest Online Virus/Malware Scanner</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p> Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/12/27/download-avg-anti-virus-75-professional-for-free/' rel='bookmark' title='Download AVG Anti-Virus 7.5 Professional for Free'>Download AVG Anti-Virus 7.5 Professional for Free</a></li><li><a href='http://tech-buzz.net/2006/11/10/google-accidentally-sends-virus/' rel='bookmark' title='Google Accidentally Sends Virus'>Google Accidentally Sends Virus</a></li><li><a href='http://tech-buzz.net/2006/08/08/aol-launches-free-antivirus-software/' rel='bookmark' title='AOL launches Free Antivirus Software'>AOL launches Free Antivirus Software</a></li></ol>]]></description> <content:encoded><![CDATA[<p><em>This post is by Abhijeet Mukherjee, a tech enthusiast and is going to start his blog soon.</em></p><p>One of the ways to detect suspicious programs on your computer is by running an online virus scan.Although there are a number of online virus scanners like <a href="http://us.mcafee.com/root/mfs/">McAfee FreeScan</a> and <a href="http://housecall.trendmicro.com/">Trend Micro</a>, most of them take time and consume lot of bandwidth. But recently, I came across <a href="http://www.nanoscan.com/">NanoScan</a>, which claimed to scan your PC in few seconds.</p><p><img alt="NanoScan" src="http://tech-buzz.net/wp-content/uploads/2008/03/nanoscan.jpg" width="455" height="276" /></p><p>It initially downloads a small ActiveX file and then starts scanning.I have to admit that not only it does a comprehensive scan but it is also lightning fast.It took only 31 seconds to scan my PC. Here is the screenshot:</p><p><img alt="nanoscanstatus" src="http://tech-buzz.net/wp-content/uploads/2008/03/nanoscan2.jpg" width="455" height="317" /></p><p>Apart from offering NanoScan, its developer Panda Softwares offers <a href="http://www.nanoscan.com/as/index/">TotalScan</a> which detects and removes viruses, unlike NanoScan, which only does a scan and does not remove it. However, I certainly believe that NanoScan is worth giving a shot and is one of the best online virus scanners available.</p><p>Stories you may like:<ol><li><a href='http://tech-buzz.net/2007/12/27/download-avg-anti-virus-75-professional-for-free/' rel='bookmark' title='Download AVG Anti-Virus 7.5 Professional for Free'>Download AVG Anti-Virus 7.5 Professional for Free</a></li><li><a href='http://tech-buzz.net/2006/11/10/google-accidentally-sends-virus/' rel='bookmark' title='Google Accidentally Sends Virus'>Google Accidentally Sends Virus</a></li><li><a href='http://tech-buzz.net/2006/08/08/aol-launches-free-antivirus-software/' rel='bookmark' title='AOL launches Free Antivirus Software'>AOL launches Free Antivirus Software</a></li></ol></p><p>This article, <a href="http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/">NanoScan:The Fastest Online Virus/Malware Scanner</a>, was published at <a href="http://tech-buzz.net">TechBuzz</a>. Please don't violate our copyright</p>]]></content:encoded> <wfw:commentRss>http://tech-buzz.net/2008/03/12/nanoscanthe-fastest-online-virusmalware-scanner/feed/</wfw:commentRss> <slash:comments>16</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using apc
Page Caching using apc
Database Caching 1/175 queries in 0.097 seconds using apc
Object Caching 5841/6011 objects using apc

Served from: tech-buzz.net @ 2012-05-25 18:31:49 -->
