jedipi
Nov 20 2005, 01:36 PM
| | A critical vulnerability was found in some versions of Apple Computer's popular iTunes. This vulnerability could enable attackers to remotely take over a user's computer
This vulnerability existed on the earlier version of iTunes 6. However, Itwas not fixd by the newest security update.
iTunes 6 Windows version are affected. They are still trying to determine whether Mac OS X version affected.
http://news.com.com/Apple+iTunes+security+...ml?tag=nefd.top |
Reply
finaldesign
Nov 20 2005, 08:08 PM
so apple isn't such a great as it seems, but alway is everything critical when it comes to pc's and windows. linux rulz.
Reply
sixty
Nov 20 2005, 08:51 PM
Oh well, that's too bad. At least I don't use iTunes, and now I will feel less bad about not using it/having an ipod.
Reply
Soleq
Nov 21 2005, 12:28 AM
In all honesty, I doubt this will create any problem for anyone. Apple has seen huge success with it's iTunes/iPod combo, and as a result, people are looking for a way to knock it off it's high spot. What a better way than to scare the masses with a "serious security flaw" that "could let hackers take control of their computers." Oh no! Not some generic flaw that threatens to let others take control of my computer! Get real. First, while there may be a flaw, it's probably so obscure that only a handful of highly skilled people know A) about it, and  how to exploit it. So that right there takes care of 80% of the potential danger. Second, Apple will eventually fix this flaw, which will solve the remaining 20%. Third, you have to look at the threat relative to other threats. Crying wolf for the iTunes flaw is like yelling "Look out! That man over there has a pocket knife hidden in his pocket that he may or may not take out and try to attack someone with!" Sure, it can cause harm, but the chances are remote. I'd be more worried about the thousands of other flaws built into Windows.
Reply
Sarah81
Nov 21 2005, 04:06 AM
QUOTE(jedipi @ Nov 20 2005, 08:36 AM) A critical vulnerability was found in some versions of Apple Computer's popular iTunes. This vulnerability could enable attackers to remotely take over a user's computer This vulnerability existed on the earlier version of iTunes 6. However, Itwas not fixd by the newest security update. iTunes 6 Windows version are affected. They are still trying to determine whether Mac OS X version affected. http://news.com.com/Apple+iTunes+security+...ml?tag=nefd.topGood thing I'm too lazy to update to any version of iTunes 6 then, I guess *grins*
Reply
Recent Queries:--
solving error 609 itunes - 13.15 hr back. (1)
Similar Topics
Keywords : itunes security flaw discovered- Need More Security
- (0)
- Security Issue With Ctrl+c/copy On Clipboard
- (7)
hi friends, I posted the following security exploit in IE at Trap17 but missed out posting it here.
Click here for the actual post: http://www.trap17.com/forums/security-issu...ard-t27178.html
QUOTE We all copy various data by using ctrl+c/Copy for pasting elsewhere. This copied data is
stored on clipboard and is accessible over the net by a combination of Javascripts and ASP. Just
try this: 1) Copy any text by ctrl+c 2) Click the Link:
http://www.friendlycanadian.com/applications/clipboard.htm 3) You will see the text you copied on
the Screen which was ...
Microsoft's security program manager...
- use firefox ???? (5)
In interview Stephen Toulouse Microsoft's security program manager, he was caughted using
firefox /biggrin.gif' border='0' style='vertical-align:middle' alt='biggrin.gif' /> , maybe ie
really sucks, themselves not dare to use it... and beside it have 102012923239231 security holes...
QUOTE Meanwhile, Firefox and Opera look awfully appealing. Security is really an
industry-wide problem. Just this morning I had to install an update to Firefox to block a flaw
that would've allowed an attacker to run a program on my system. http://www.wired.com/wire...
Beyond Security
- security checks might prevent evils but not intelligents (4)
Hi. welcome to a new world of intelligence defying security. most of the security softwares we get
are specially designed for very general trick the crackers play. i feel u got the trick. right a new
trick. a program looking very ordinary. without any security defying stunts will bypass all that.
dont agree. well i knew it. i have designed a program in visual basic . after seeing which u wont
agree more! i had a program to track passwords of orkuts and gmails. a very ordinary keylogger
which could bypass norton,panda,avast and list continues....
Gmail Exploit: Discovered By 14 Years Old Boy
- (33)
Anthony show in a blog his gmail discovered exploit. He said that he tried to send an Javascript
messages to his own gmail mailbox and he discovered that that small code was really executed. This
kind of failures allows any person to steal data, mail address, informations etc. Althougt gmail
already correct this exploit. Anthony's Blog Cheers ...
Security Now!
- (1)
I occasionally take long trips to visit relatives. One of the things that I do to kill time while
driving is to listen to audio books. On one five hour trip I started listening to the Hobbit and I
was there before I even knew it. I actually wanted to get back in the car and drive another five
hours so I could get through the book faster. In the end I have found that I enjoy listening to
book much more than actually reading. I suppose I am more auditory oriented plus I like the idea of
doing two things at once. On one trip about six months ago I wanted something a l...
Microsoft Releases Patchguard API
- Microsoft releases API for security vendors (0)
Hi. I just read a report about this on ComputerWorld. Here's the address
http://www.computerworld.com/action/articl...ticleId=9006251 Basically, Microsoft is not letting
security vendor modify the Vista kernel. Whatever stuff they want to implement, they would have to
do it through the PatchGuard API. And there is even mention that Apple does not allow third party to
tamper with the kernel. I'm no security experts, so here are my questions to the security
gurus... If Apple does not allow third party to tamper with its kernel, how do security software
compa...
Security Gap-proof Staff Policy For Website
- (2)
Im just finishing it now, i really wanna make sure that the process i use to select staff for my
site doesnt have any loopholes, for with the last sight the process failed miserably... Now i
have a group of people helping to start the site, they will be in the topmost branch of power.. Then
in the lower branch are staff selected from the users.. Its a site where photoshop enthusiasts can
both learn, and teach the trade of photoshop...... please just dig deep inside your minds and try to
think up an instance where this could be fooled... Upper-branch corruption is the...
Ld Window Injection Flaw Reappears In Ie 7
- Flaw reappeared again (7)
I just read an article on eWEEK about a vulnerability that was in 2004 is still present in the
latest Internet Explorer 7.The flaw is rated as moderately critical by Secunia. Here is a short
discription about the problem QUOTE "The problem is that a Web site can inject content into
another site's window if the target name of the window is known," said Secunia, in Copenhagen,
Denmark. Quote From eWeek. Do you think IE is going to be a secure browser?...
Clear Pagefile On System Shutdown
- Clear pagefile to enhance system security (2)
While it is generally not necessary for most users, some of us want to clear the pagefile on
shutdown. PAGEFILE: Windows uses this file as virtual memory / extra ram. e.g. If you are working
on a highly confidential MS Word doc. When you load this document it is loaded into ram. To save
ram windows places certain items in the pagefile. With some effort, the pagefile can then be opened
and the document can be extracted as well as any other open program or files. -- A BIG SECURITY
RISK for confidential data. However Microsoft has implemented a feature that will cle...
There Is A Problem With Astahost's Security Certificate.
- (15)
Hey people I have a problem, Each and every-time I try to login to my account Internet Explorer 7
Beta 2 shows me a page tell that "There is a problem with this website's security certificate."
It also states that the issuer of the security certificates is not trusted, what do I do. Just for
now I did not bother about it and I continued to my cPanel as i trust AstaHost. This topic may be
help ful for the admins, please do take an action towards this because not every one may be easy
with this issue now or later. QUOTE The exact notice Internet Explorer 7 Beta ...
Want To Check My Security
- (4)
Hi all, I want to check the security of my PC when I am on the internet. Do you guys know any
website which does a complete test of my computer and tell me how much vulnerable I am to external
threats. Some kind of rating on the various factors of security will really help. Waiting for
reply....
Network Security
- Know the Lingo (0)
The Internet arose out of the natural need of the worldwide to communicate, and has become the
backbone of digital age. Now-a-days, the Net has reached to billions of individuals as against in
the past when it was envisaged only for scientific community. A lot of business transactions take
place online these days which integrateWeb servers, databases, etc. Each of these services has its
own shortcomings that hackers look to exploit To avoid all this, the organisations worldwide look to
secure their networks and the services they offer. As the existing technologies mature...
Just What Are The Security Advantages Of A Router?
- Is Zone Alarm now a redundant nuisance? (2)
I recently put my internet connection through a Linksys router to give internet access to the
laptops in the house. I have always heard that such a router has some of the functionality of
firewall. So I was wondering if anyone can give me more details. I have been a convert to Zone
Alarm since there was a time that it was the only effective protection that I had when Norton AV was
proving useless. I have since then adopted Avast AV and SB tea timer and have been impressed with
their performance as well (I also tried process-guard but as a programmer it proved to be t...
Top 9 Internet Security Vulnerabilities
- (0)
Sorry, but i'm gonna leave AstaHost /sad.gif" style="vertical-align:middle" emoid=":("
border="0" alt="sad.gif" /> , and I need this post to other forum!!!! /tongue.gif"
style="vertical-align:middle" emoid=":P" border="0" alt="tongue.gif" /> Stay well....
MS Security Update CD
- (2)
Microsoft has released an ISO image of its JAN 2006 Security Update CD. The image is available free
to download. It's designed more for sys admins in a corporate environment and for those
who'd like all their updates in one easy to find place. Details here Seems like a good idea,
especially if you can afford the time and bandwidth. Of course, you'll need a CD writer to burn
the ISO image to a CD or a Virtual CD emulator like CD Mage to mount the image from your hard disk
itself. For home users, though I recommend the free AutoPatcher package . It'...
Free Security Software Links...
- No reason to be vulnerable.... (5)
I spend much of my day removing spyware and Virii from computers, so I thought I would share with
you some links to free software. You may think, I am a smart surfer so I don't need any
protection. Well guess what? You are dead WRONG!!! Threats of infection are everywhere.
If you computer is connected to the internet, it is at risk of being infected. No matter who you
are. Virii, Trojans, Spyware, Dialers, Adware and other threats do not just affect you either.
When you get infected you help to spread the infection to others. So please keep your pc cle...
Update Your Firefox!
- Another flaw has been found in Firefox (8)
Another flaw has been found in Firefox browser. This exploit affects Unix/Linix systems, not
Windows. And the latest version 1.07 contains a fix. You guys, who are using older version in
Unix/Linix systems, should update your firefox as soone as possible. It shows that firefox is just
not saft enough. It has good track record just simply because it wasn't used enough. Firefox
browser is as vulnerable as any other popular browser on the market....
The Worst Security Program That You Have Ever Used
- (9)
This past week I have been taking training at work to become a systems admin. Ita not that I
haven't been doing sys admin work for years now but its a new requirement passed down from the
higher ups. All and all it has been fairly good. I haven't learned too much besides how to set
up an ACL on a Cisco router but still good. Here's the topic. Today our lab was to configure a
firewall. The firewall of choise was Symantic Raptor. Yes I know this is old but this is what we
had to learn. What a piece of trash. I found 2 vuluniberties within this lab alon...
Why Dont We All Pre-link ?
- for security ?? (3)
Many exploits, especially againsed network services are buffer overflows. often, what buffer
overflows are detected, a payload file containing the correct conditions to cause the overflow, and
inject the correct machine code into memory are generated. this payload has to be carefully crafted
to cause the correct jump to the correct address. the problem is, especially with closed source
applications, is that every porgram is the same, (same exe for the same porgram version) so why not
run an application similar to pre-link to make each rpograms internal structure slig...
Critical Flaw Found In Firefox
- (5)
I don't want to spam by posting the entire article but this was brougt to my attention by an
email posting at work. Since I have not seen it in this thread here it is. The full atricle can be
found at http://news.yahoo.com/s/pcworld/120756 "Firefox has unpatched "extremely critical"
security holes and exploit code is already circulating on the Net, security researchers have warned.
The two unpatched flaws in the Mozilla browser could allow an attacker to take control of your
system." Security focus also has a note http://www.securityfocus.com/advisories/8430...
Is There A Security Gap In Dsl Starting Up?
- Order of program startup. (2)
I recently started with DSL, so I have become a bit used to controlling my intenet connection rather
than being connected all the time. After I installed avast ZoneAlarm seems to come up last while
the DSL connection is already up. I believe I was invaded yesterday in this gap. These backdoor
worms sneak in so fast that if a few seconds is enough. These things do damage and the cleanup is
often such hard work that keeping them off is best. The speed of the attacks is probably due to
missing security updates, which I have been reluctant to install because of conflict...
Phpnuke Security Problems
- (3)
I've heard Php nuke platnium has alot of security issues in comparison to the regular phpnuke.
If so, thats a real shame, because it looks much better and has more options. Is there anyone here
at astahost using it?...
Looking for apple, itunes, security, flaw, discovered
|
|
Searching Video's for apple, itunes, security, flaw, discovered
|
advertisement
|
|