The Register® — Biting the hand that feeds IT

Comments on: Oracle warns over unpatched vuln

Some bugs are a right bugger of a BOFH if you don't deal with them right. 

Posted Tuesday 29th July 2008 13:55 GMT

Heart

"By sending a specially-malformed HTTP POST request attackers might be able to assault vulnerable systems without needing either user names or passwords, an alert on the bug by IBM's X-force security division warns."

And then there is also the ZerodDay Opportunist, the Yin of that Negative Yang, who would be into sending especially-informed HTTP POSTs, which may or may not be requests for anything.

Don’t Miss

HandcuffsFeds: Hospital hacker's 'massive' DDoS averted

Arrest foils 'Devil's Day' scheme

thumbs down teaser 75Buggy 'smart meters' open door to power-grid botnet

Grid-burrowing worm only the beginning

MicrosoftMicrosoft knew of nasty IE bug a year before attacks

Security delayed or security denied?

BlockMaster SafeStickBlockMaster SafeStick hardware-encrypted USB drive

Review Tough enough?