SECURITY WARNINGS & Notices - Please post them here

Facebook to pay for security hole reports
http://www.h-online.com/security/news/item/Facebook-to-pay-for-security-hole-reports-1315738.html

Microsoft Makes Change to Geographic Location Positioning Service
http://blogs.technet.com/b/privacyimperative/archive/2011/08/01/microsoft-makes-change-to-geographic-location-positioning-service.aspx

Timthumb PHP script opens hole in WordPress blogs
http://www.h-online.com/security/news/item/Timthumb-PHP-script-opens-hole-in-WordPress-blogs-1317479.html
http://markmaunder.com/2011/zero-day-vulnerability-in-many-wordpress-themes/

Governments, IOC and UN hit by massive cyber attack

http://www.bbc.co.uk/news/technology-14387559

More about “Avast enchanced protection”
http://blog.eset.com/2011/08/03/win32delf-qcztrust-me-i’m-your-anti-virus

Easy money,huh? :wink:

QuickTime 7.7 closes security holes
http://www.h-online.com/security/news/item/QuickTime-7-7-closes-security-holes-1318119.html

Microsoft Security Bulletin Advance Notification for August 2011
http://www.microsoft.com/technet/security/bulletin/ms11-aug.mspx

Diversification of attack vectors
http://www.norman.com/security_center/security_center_archive/2011/diversification_of_attack_vectors/en-us

During the Black Hat security conference in Las Vegas, USA, the security researcher Charlie Miller presented a method for compromising the batteries that are shipped with several of Apple's Mac computers.

Battery Firmware Hacking, Dr. Charlie Miller Black Hat USA 2011
http://www.accuvant.com/capability/accuvant-labs/security-research/featured-presentation

Twitter-controlled botnet mines Bitcoins
http://www.h-online.com/security/news/item/Twitter-controlled-botnet-mines-Bitcoins-1318497.html

Fake Firefox update email
http://nakedsecurity.sophos.com/2011/08/08/fake-firefox-update-email-malware/

Infected Cisco Information Packet and Warranty CDs
http://www.cisco.com/warp/public/707/cisco-sr-20110803-cd.shtml

Google also passes on European data to US authorities
http://www.h-online.com/security/news/item/Google-also-passes-on-European-data-to-US-authorities-1319434.html

Major security hole in SAP’s NetWeaver
http://www.h-online.com/security/news/item/Major-security-hole-in-SAP-s-NetWeaver-1319808.html


Anonymous Hackers Expose Sensitive Law Enforcement Data

In its latest escapade, global hacker collective Anonymous claimed to release 10 GB of stolen data from more than 70 rural sheriff’s departments across the country (USA), leaking sensitive information that could compromise the agencies' investigations.

The data, which Anonymous hackers posted to Pastebin.com, was sourced to 76 law enforcement agencies’ Web sites in 11 states, including Arkansas, Kansas, Louisiana, Missouri and Mississippi. Most of the Web sites were hosted by Arkansas-based online marketing firm Brooks-Jeffrey Marketing.

http://www.crn.com/news/security/231300433/anonymous-hackers-expose-sensitive-law-enforcement-data.htm?cid=nl_sec



Black Hat: Hackers Can Take Control Of Diabetes Devices

Type 1 diabetics relying on radio frequency transmitting devices for monitoring and dispensing insulin might have one more thing to worry about -- the life-saving medical devices contain vulnerabilities that give potential attackers the ability to end their lives.

http://www.crn.com/news/security/231300351/black-hat-hackers-can-take-control-of-diabetes-devices.htm?cid=nl_sec


Expert says Adobe omits mention of 400 Flash Player flaws
http://www.h-online.com/security/news/item/Expert-says-Adobe-omits-mention-of-400-Flash-Player-flaws-1321881.html

Fake Antivirus Industry Down, But Not Out
http://krebsonsecurity.com/2011/08/fake-antivirus-industry-down-but-not-out/

Huge Decline in Fake AV Following Credit Card Processing Shakeup
http://krebsonsecurity.com/2011/08/huge-decline-in-fake-av-following-credit-card-processing-shakeup/

That second link is probably the most important as many of the Credit Card companies need to be more proactive in combating fraud.

Fake Firefox update includes trojan

http://www.favbrowser.com/fake-firefox-update-includes-trojan/

Anonymous take on San Francisco’s rapid transit system
http://www.h-online.com/security/news/item/Anonymous-take-on-San-Francisco-s-rapid-transit-system-1323033.html