<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SecurityOrb.com &#187; Vulnerability</title>
	<atom:link href="http://securityorb.com/category/vulnerability/feed/" rel="self" type="application/rss+xml" />
	<link>http://securityorb.com</link>
	<description>An Information Security Knowledge-Based Website</description>
	<lastBuildDate>Tue, 07 Feb 2012 19:06:51 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Microsoft Windows DLL Load Hijacking (2269637)</title>
		<link>http://securityorb.com/2012/02/microsoft-windows-dll-load-hijacking-2269637/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-windows-dll-load-hijacking-2269637</link>
		<comments>http://securityorb.com/2012/02/microsoft-windows-dll-load-hijacking-2269637/#comments</comments>
		<pubDate>Tue, 07 Feb 2012 19:05:30 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Windows DLL Load Hijacking (2269637)]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3240</guid>
		<description><![CDATA[Microsoft Windows DLL Load Hijacking (2269637)]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-windows-dll-load-hijacking-2269637/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Windows Desktop Wallpaper Code Execution Vulnerability</title>
		<link>http://securityorb.com/2012/02/microsoft-windows-desktop-wallpaper-code-execution-vulnerability/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-windows-desktop-wallpaper-code-execution-vulnerability</link>
		<comments>http://securityorb.com/2012/02/microsoft-windows-desktop-wallpaper-code-execution-vulnerability/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 17:43:02 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Windows Desktop Wallpaper Code Execution Vulnerability]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3231</guid>
		<description><![CDATA[Microsoft Windows Desktop Wallpaper Code Execution Vulnerability]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-windows-desktop-wallpaper-code-execution-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Internet Explorer &#8216;Forced Tweet&#8217; Cross Domain</title>
		<link>http://securityorb.com/2012/02/microsoft-internet-explorer-forced-tweet-cross-domain/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-internet-explorer-forced-tweet-cross-domain</link>
		<comments>http://securityorb.com/2012/02/microsoft-internet-explorer-forced-tweet-cross-domain/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 17:17:14 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Internet Explorer 'Forced Tweet' Cross Domain]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3227</guid>
		<description><![CDATA[Microsoft Internet Explorer 'Forced Tweet' Cross Domain]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-internet-explorer-forced-tweet-cross-domain/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Internet Explorer AddFavorite Method Denial-of-Service Vulnerability</title>
		<link>http://securityorb.com/2012/02/microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability</link>
		<comments>http://securityorb.com/2012/02/microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 17:04:40 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Microsoft Internet Explorer AddFavorite Method Denial-of-Service Vulnerability]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=3222</guid>
		<description><![CDATA[Microsoft Internet Explorer AddFavorite Method Denial-of-Service Vulnerability]]></description>
		<wfw:commentRss>http://securityorb.com/2012/02/microsoft-internet-explorer-addfavorite-method-denial-of-service-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Revir Malware for OS X Undergoes Revision</title>
		<link>http://securityorb.com/2011/10/revir-malware-os-undergoes-revision/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=revir-malware-os-undergoes-revision</link>
		<comments>http://securityorb.com/2011/10/revir-malware-os-undergoes-revision/#comments</comments>
		<pubDate>Wed, 05 Oct 2011 16:26:36 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[General Security]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[and as they do]]></category>
		<category><![CDATA[and over the weekend a variant has been identified (OSX/Revir.B). As with all malware]]></category>
		<category><![CDATA[expect malware detection utilities (including Apple's XProtect) to follow close behind and label them alphabetically as they appear.]]></category>
		<category><![CDATA[new versions of these threats are likely to surface in the future]]></category>
		<category><![CDATA[Recently a new PDF-based malware threat for OS X was discovered that displays a Chinese PDF file while it installs and runs its malicious code in the background. While the initial version of this malw]]></category>
		<category><![CDATA[the criminals developing the code are busy revising and refining it]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=2674</guid>
		<description><![CDATA[Recently a new PDF-based malware threat for OS X was discovered that displays a Chinese PDF file while it installs and runs its malicious code in the background. While the initial version of this malware (OSX/Revir.A) was detected over a week ago, the criminals developing the code are busy revising and refining it, and over the weekend a variant has been identified (OSX/Revir.B). As with all malware, new versions of these threats are likely to surface in the future, and as they do, expect malware detection utilities (including Apple's XProtect) to follow close behind and label them alphabetically as they appear.]]></description>
		<wfw:commentRss>http://securityorb.com/2011/10/revir-malware-os-undergoes-revision/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Morto Computer Worm Infecting Computers via Remote Desktop Protocol (RDP)</title>
		<link>http://securityorb.com/2011/08/morto-computer-worm-infecting-computers-via-remote-desktop-protocol-rdp/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=morto-computer-worm-infecting-computers-via-remote-desktop-protocol-rdp</link>
		<comments>http://securityorb.com/2011/08/morto-computer-worm-infecting-computers-via-remote-desktop-protocol-rdp/#comments</comments>
		<pubDate>Mon, 29 Aug 2011 16:28:48 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Spyware and Viruses]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[A new worm called Morto has begun making the rounds on the Internet in the last couple of days]]></category>
		<category><![CDATA[and Morto is capable of compromising both servers and workstations running Windows. If you have any questions or need assistance]]></category>
		<category><![CDATA[infecting machines via RDP (Remote Desktop Protocol). The worm is generating a large amount of outbound RDP traffic on networks that have infected machines]]></category>
		<category><![CDATA[please let me know and I will follow up with you. Additional Information: • http://threatpost.com/en_us/blogs/new-worm-morto-using-rdp-infect-windows-pcs-082811 • http://www.microsoft.com/security/por]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=2475</guid>
		<description><![CDATA[A new worm called Morto has begun making the rounds on the Internet in the last couple of days, infecting machines via RDP (Remote Desktop Protocol). 

The worm is generating a large amount of outbound RDP traffic on networks that have infected machines, and Morto is capable of compromising both servers and workstations running Windows.  

If you have any questions or need assistance, please let me know and I will follow up with you.  

Additional Information: 
•	http://threatpost.com/en_us/blogs/new-worm-morto-using-rdp-infect-windows-pcs-082811
•	 http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?Name=Worm%3aWin32%2fMorto.A  
•	http://blogs.computerworld.com/18870/morto_worm_spreading_fast_via_rdp?af
]]></description>
		<wfw:commentRss>http://securityorb.com/2011/08/morto-computer-worm-infecting-computers-via-remote-desktop-protocol-rdp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>HD Moore &#8220;Bounty: 30 Exploits,  $5,000.00, in 5 weeks&#8221;</title>
		<link>http://securityorb.com/2011/06/hd-moore-bounty-30-exploits-5000-00-in-5-weeks/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=hd-moore-bounty-30-exploits-5000-00-in-5-weeks</link>
		<comments>http://securityorb.com/2011/06/hd-moore-bounty-30-exploits-5000-00-in-5-weeks/#comments</comments>
		<pubDate>Tue, 14 Jun 2011 15:40:03 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Hack]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[000 in cash awards (in the form of American Express gift cards) to any community member that submits an accepted exploit module for an item from our Top 5 or Top 25 exploit lists. This is our way of s]]></category>
		<category><![CDATA[our Exploit Bounty program will pay out $5]]></category>
		<category><![CDATA[The Metasploit team is excited to announce a new incentive for community exploit contributions: Cash! Running until July 20th]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=2306</guid>
		<description><![CDATA[The Metasploit team is excited to announce a new incentive for community exploit contributions: Cash! Running until July 20th, our Exploit Bounty program will pay out $5,000 in cash awards (in the form of American Express gift cards) to any community member that submits an accepted exploit module for an item from our Top 5 or Top 25 exploit lists. This is our way of saying thanks to the open source exploit development community and encouraging folks who may not have written Metasploit modules before to give it a try.]]></description>
		<wfw:commentRss>http://securityorb.com/2011/06/hd-moore-bounty-30-exploits-5000-00-in-5-weeks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Threat Outbreak Alert: Fake Bin Laden Pictures E-mail Messages on May 13, 2011</title>
		<link>http://securityorb.com/2011/05/threat-outbreak-alert-fake-bin-laden-pictures-e-mail-messages-on-may-13-2011/#utm_source=feed&#038;utm_medium=feed&#038;utm_campaign=feed?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=threat-outbreak-alert-fake-bin-laden-pictures-e-mail-messages-on-may-13-2011</link>
		<comments>http://securityorb.com/2011/05/threat-outbreak-alert-fake-bin-laden-pictures-e-mail-messages-on-may-13-2011/#comments</comments>
		<pubDate>Mon, 16 May 2011 18:31:10 +0000</pubDate>
		<dc:creator>SecurityOrb Staff</dc:creator>
				<category><![CDATA[Incident Response]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[attempts to infect the system with malicious code.]]></category>
		<category><![CDATA[Cisco Security Intelligence Operations has detected significant activity related to Portuguese-language spam e-mail messages that claim to contain pictures of Osama Bin Laden The text in the e-mail me]]></category>
		<category><![CDATA[the .zip attachment contains a malicious .scr file that]]></category>
		<category><![CDATA[when executed]]></category>

		<guid isPermaLink="false">http://securityorb.com/?p=2181</guid>
		<description><![CDATA[Cisco Security Intelligence Operations has detected significant activity related to Portuguese-language spam e-mail messages that claim to contain  pictures of Osama Bin Laden  The text in the e-mail message instructs the recipient to open a .zip attachment to view the pictures.  However, the .zip attachment contains a malicious .scr file that, when executed, attempts to infect the system with malicious code.]]></description>
		<wfw:commentRss>http://securityorb.com/2011/05/threat-outbreak-alert-fake-bin-laden-pictures-e-mail-messages-on-may-13-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

