exploits's tag archives

Plague of Adobe Acrobat and Reader Vulnerabilities Continues

I seem to write a post on this once a month minimum. When I opened this weeks Cert advisory there were 14 9.3 vulnerabilities for Adobe Reader and Acrobat. This plague of vulnerabilities and the related exploits that have popped up remind me of Internet Explorer 5 years ago. So here at Managed Solutions we are once again advising our clients to apply any updates to Adobe products when prompted or to exercise extra caution with .pdf files. Here is the menacing list of vulnerabilities announced on...

Why you should not bypass Java and other Updates

A very common complaint by end users involves "automatic updates" and some people go to great lengths to avoid them. We published this quick tip about when and how to run them to minimize the impact. There are several programs that you should think twice before bypassing or ignoring the update: Windows Critical Updates Adobe Acrobat Flash Viewer Oracle/Sun Java The last item on this list is the primary purpose for this post, check out this bulletin from March 2009 related to Oracle ...

Update Microsoft Office Products – Joe Reviews SB10-074 Cert Report (Video)

Here is a review of this weeks Cert Advisory. This update contains the infamous Arucer.dll that came with the charging software on the Energizer Duo USB. Also definitely recommend updating your Microsoft Office products if you haven't recently. This is a weekly feature here at Managed Solutions. If you have questions about this video post a comment here or ask on our Facebook Fan Page.

Update Adobe Acrobat, Again – Joe Reviews SB10-060 Cert Report (Video)

Here is a review of this weeks Cert Advisory. Adobe Acrobat has returned, please be sure to update! This is a weekly feature here at Managed Solutions. If you have questions about this video post a comment here or ask on our Facebook Fan Page.

Google Chrome Vulnerabilities – Joe Reviews SB10-053 Cert Report (Video)

Here is a review of this weeks Cert Advisory. Surprising number of Google Chrome issues this week, luckily Chrome is updated constantly and quietly without prompting. This is a weekly feature here at Managed Solutions.

Run Windows Updates – Joe Reviews SB10-046 Cert Report (Video)

Here is a review of this weeks Cert Advisory. This week is Microsoft triage week, there are a ton of 9.3 severity and above (out of 10) vulnerabilities. This is a weekly feature here at Managed Solutions. What can you do to protect yourself: Perform Windows updates when prompted or visit http://update.microsoft.com/windowsupdate Perform Office Updates if you use any of the Micrososft Office family products at http://office.microsoft.com Be cautious with file attachments and links in Emai...

Joe Reviews SB10-040 Cert Report (Video)

Here is a review of this weeks Cert Advisory. The main highlight are the vulnerabilities in Internet Explorer version 5, which is not broadly used. This is a weekly feature here at Managed Solutions.

Joe Reviews SB10-32 Cert Report (Video)

These are weekly reviews of the reports from CERT. The main highlights are some Realplayer vulnerabilities and the Cisco Unified Meeting Place. This is a weekly feature here at Managed Solutions.

ADP Warns of Phishing Emails to Payroll Clients

We were made aware of an issue that ADP is reporting with some of their Payroll customers. Here is the text of the warning message they are sending their clients: "ADP is receiving reports of a phishing email scam targeting ADP EasyPayNet clients who perform their payroll via the Internet.  Phishing email scams are designed to mimic legitimate websites and are intended to compromise your login credentials.  The email is fraudulent and did not come from ADP.  Please immediately delete the emai...

Joe Reviews SB10-25 Cert Report (Video)

These are weekly reviews of the reports from CERT. Nothing too horrible this week, but I provide more insights into what to look for and why. I did review the Shockwave Player vulnerability after recording the video and determined that since it is not a common component for most of our audience it did not merit a separate bulletin and notice. This is a weekly feature here at Managed Solutions.