Feeds

Smut sites use IE exploit to spread spyware

Drive-by downloads

Top 5 reasons to deploy VMware with Tegile

Hackers are taking advantage of a new, unpatched Internet Explorer vulnerability to infect users visiting pornographic websites.

There's a number of unpatched (or so called 0-day) flaws around at the moment, but this one takes advantage of a flaw within the Vector Markup Language (VML) component of IE.

VML is an XML file that allows vector drawings to be delivered to surfers. The security bug is unrelated to a (still unpatched) flaw in Microsoft's Direct Animation Path (daxctle.ocx) ActiveX control discovered last week.

Security researchers at Sunbelt Software report the latest exploit is being used to install spyware on vulnerable systems visiting hostile sites.

To avoid such drive-by downloads, users are advised to avoid visiting pr0n sites. In the circumstances, use of an alternative browser such as Firefox or Opera is also to be advised.

A full write-up of the problem can by found in an advisory be the SANs Institute's Internet Storm Centre here. ®

Remote control for virtualized desktops

Whitepapers

Go beyond APM with real-time IT operations analytics
How IT operations teams can harness the wealth of wire data already flowing through their environment for real-time operational intelligence.
10 threats to successful enterprise endpoint backup
10 threats to a successful backup including issues with BYOD, slow backups and ineffective security.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Website security in corporate America
Find out how you rank among other IT managers testing your website's vulnerabilities.