McAfee Gets Worked. Hard.
The post has been submitted for moderation and won't be listed publicly until it has been approved.
Tue, 05/05/2009 - 17:51
Topic Source:
Security software maker McAfee is an industry laughing stock following the disclosure of embarrassing security vulnerabilities in its websites.
A Cross Site Request Forgery (CSRF) vulnerability uncovered in McAfee's "secure" vulnerability scanning portal would have allowed attacker to take control of client accounts.
To fall victim to such an attack the target would have to be logged in to their McAfee account and browse to a malicious website that exploited the CSRF bug.
Post new comment
User login
Recent podcasts
-
Are there really 7.68 billion reasons for Intel to acquire McAfee?
-
Mobile device encryption no match for low-level attacks...
-
John Conner eat your heart out...
-
H D Moore's VxWorks research is out of this world...
-
APTs result of evil genius from marketroids, not hackers...


Recent comments
10 hours 14 min ago
3 days 23 hours ago
4 days 9 hours ago
2 weeks 3 days ago
3 weeks 3 days ago
3 weeks 5 days ago
4 weeks 23 hours ago
4 weeks 1 day ago
4 weeks 2 days ago
4 weeks 5 days ago