McAfee Gets Worked. Hard.
Tue, 05/05/2009 - 17:51
Topic Source:
Security software maker McAfee is an industry laughing stock following the disclosure of embarrassing security vulnerabilities in its websites.
A Cross Site Request Forgery (CSRF) vulnerability uncovered in McAfee's "secure" vulnerability scanning portal would have allowed attacker to take control of client accounts.
To fall victim to such an attack the target would have to be logged in to their McAfee account and browse to a malicious website that exploited the CSRF bug.
Post new comment
User login
Recent podcasts
-
Are your electron-tubez cloudy?
-
"Mostly pointless" research yields interesting results...
-
All your patchings are belong to big vendors...
-
An interview with IT lawyer Erhan Karabardak...
-
Has much changed in 10 years?


Recent comments
1 day 3 hours ago
1 day 5 hours ago
1 week 7 hours ago
1 week 2 days ago
1 week 2 days ago
1 week 3 days ago
2 weeks 1 day ago
2 weeks 2 days ago
2 weeks 2 days ago
2 weeks 6 days ago