More details on the Pwn2Own Flash flaw that won the Vista machine 31 Mar 2008 18:39 GMTSo, I've been pretty surprised by the response to the discussion of the Flash flaw that allowed the Vista machine to be compromised in the Pwn2Own contest. I'm working on getting an interview with Alexander Sotirov and Shane Macaulay (see image, courtesy of ZDI's official site) to discuss the issue, but...
Source: ZDNet What is the rate of Mac OS X Leopard adoption? 31 Mar 2008 18:19 GMTBack at the Macworld Expo in January, Apple CEO Steve Jobs said that some 20 percent of the installed base was running Mac OS X 10.5 Leopard. But do we have any sense of the current adoption rate for Leopard? Of course, Apple has the best statistics...
Source: ZDNet Office exploit hits the street 31 Mar 2008 13:00 GMTThe exploit takes advantage of one of two flaws fixed by Microsoft in a recent security update.

Source: Computerworld Sophos warns of Mac Trojan malware 31 Mar 2008 13:00 GMTMac users are warned of a new Trojan on the loose. The Imunizator or Troj/MacSwp-B malware commits an unwanted self-installation while haranguing users about nonexistent privacy problems.

Source: Computerworld Fortify aims for the security suite spot; Moves upstream 31 Mar 2008 10:42 GMTFortify Software, which heads off insecure software code in the development, said Monday that it has launched a suite designed to head off vulnerabilities in automated and older applications. The suite, dubbed Fortify 360, expands the company's market. Previously, Fortify was mostly focused on checking code for...
Source: ZDNet Global Dispatches 31 Mar 2008 05:06 GMTThe U.K. Home Office is considering a proposal to create a national e-crime unit; BT Group has opened a global operations center in India.

Source: Computerworld Real Fail-over for VMs 31 Mar 2008 05:06 GMTMark Hall reports on a product that promises fail-over protection for virtual servers.

Source: Computerworld Vista notebook falls in hacker challenge 30 Mar 2008 13:00 GMTAn Ubuntu Linux box was the last machine left standing in CanSecWest's PWN to OWN challenge , as Friday saw a successful hack on the Microsoft Vista box on the contest testbed. Shane Macauley picked up $5,000 for the successful hack.

Source: Computerworld Vista falls in Pwn2Own contests final day to a flaw in Adobe Flash 29 Mar 2008 16:01 GMTOn the final day of the Pwn2Own contest, the Vista machine has fallen to a group of hackers including Shane Macaulay from Security Objectives, Derek Callaway (also from Security Objectives) and Alexander Sotirov (see JavaScript Heap Feng Shui). From the ZDI site: 7:30pm PST Update - Vista...
Source: ZDNet