Showing posts with label attack. Show all posts
Showing posts with label attack. Show all posts

Sunday, February 27, 2011

Anonymous deny Westboro attack

22 February 2011, Last updated at 10: 44 GMT Westboro Baptist Church have staged anti-gay protests for the funerals of soldiers killed in Iraq Internet activist group anonymous said invitations to attack the site of the Westboro Baptist Church's anti-gay controversial were a fake.

The negation follows a publication on a website affiliate anonymous attacks the Church.

In a new instruction, anonymous urged members not to participate in any denial of service attacks against the Church's Web site.

Anonymous said he had "more pressing issues to be addressed at this time".

The new declaration, that claimed to be written by more than 20 members of Anonymous, said it "remembers" the original version.

Pimple faced nerds

Anonymous rose to fame in recent months for its "hacktivism", launch denial of service attacks against companies that saw him as pursue policies that are in opposition to his freedom ideals web.

Recently, the Group crashed a number of websites of the Egyptian Government, in support of democracy protests in the country.

Attacked also several companies online that you believed that he had helped to curb the activities of Wikileaks, including Paypal and Amazon.

Informal structure of anonymous increases the likelihood that rogue elements can initiate action without broad support, said Graham Cluley, Sophos security firm.

Mr Cluley warned that his followers could potentially be brought a principal under false pretences hack.

"There are dangers in the future someone may result as anonymous and say that they want an attack".

In his latest statement, anonymous warned its members not to take part in DDoS attacks against Westboro Baptist Church, where it was a trap.

Westboro Baptist Church was widely condemned for his anti-homosexual aggressive campaign.

Legislation banning members from protest near military funerals have gone from a number of U.s. States.

Head of the Church, Pastor Fred Phelps, was forbidden to enter the United Kingdom by the Office of House in 2009.

The Church issued a response to the original release, anonymous "a puddle of pimple faced nerds" branding.

Saturday, February 19, 2011

New Zero-day surfaces of Windows as a researcher Releases attack code

A security researcher reported yesterday a new unpatched bug in Windows that some experts believe that could be used to hijack a PC remotely.

Microsoft said it is investigating the flaw, but did not provide information about any analysis is conducted so far.

"Microsoft is investigating public claims of a vulnerability in Windows SMB [Server Message Block]," said Jerry Bryant, a group of managers with the Microsoft Security Response Center (MSRC), in an e-mail Tuesday. "Once we're done studying, we will take appropriate measures to protect customers. This may include providing a security update through our monthly release process, an out-of-cycle update or additional guidance to help customers protect themselves. "

The researcher, identified only as "cupidon-3005," posted the exploit code for vulnerabilities on Monday, which is reported in the function "BowserWriteErrorLogEntry ()" inside the Mrxsmb.sys driver ". The driver processes the requests to the Server Message Block Protocol used by Windows for network communication.

SMB is primarily used to provide file and printer sharing-for Windows machines.

According to the French company Vupen security, which rated the bug as "critical", a successful exploit might "cause a denial of service or take complete control of a vulnerable system." The former would crash Windows and produce the infamous "Blue Screen of Death" which presents a serious breakdown of the operating system.

Danish vulnerability Tracker Secunia, the flaw which has classified as "moderately critical"--the Central threat level in its system of five stages--said that hackers could exploit this bug to compromise a computer.

"Successful Exploitation could allow arbitrary code execution," warned Secunia.

Secunia has added that it could be started in a buffer overflow by sending a Server name string too long in a request packet invalid Browser election. In this context, "browser" doesn't mean a Web browser, but it describes other Windows components, such as access service browser OS '.

Vupen confirmed that Windows XP Service Pack 3 (SP3) and Windows Server 2003 SP2 are vulnerable to attack, while Secunia reported that may be interested also other versions of Windows.

Cupidon-3005 taunted Microsoft in a message sent to the mailing list for Security Full Disclosure. "Sorry if this puts a downer on Valentine's day MSRC sausage fest", read the message.

Microsoft Patch Tuesday is scheduled next-8 March, but if the company maintains in the same timeline, it is unlikely that releases a fix since then, unless a large number of attacks in the wild exploiting vulnerabilities-appear over the next three weeks.

Gregg Keizer covers Microsoft, security issues, Apple, Web browsers and General technology breaking news for Computerworld. Follow Gregg on Twitter at @ gkeizer or subscribe to Gregg's RSS feed. His e-mail address is gkeizer@computerworld.com.

To learn more about security in Computerworld Security Center topic.


For more enterprise computing news, visit Computerworld. Story copyright © 2010 Computerworld Inc. All rights reserved.