Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
×
Mozilla

Submission + - New Firefox Flaw Enables URL Spoofing (threatpost.com)

Trailrunner7 writes: A prominent security researcher has identified a problem with the way that Mozilla Firefox handles links that are opened in a new browser window or tab, enabling attackers to inject arbitrary code into the new window or tab while still keeping a deceptive URL in the browser's address bar. The vulnerability, which Mozilla has fixed in the upcoming version 3.6.4 of Firefox (which is in beta right now), has the effect of tricking users into thinking that they're visiting a legitimate site while instead sending arbitrary attacker-controlled code to their browsers. Security researcher Michal Zalewski discovered the flaw, which abuses Firefox's implementation of the same origin policy.

Submission + - Credit Union for Geeks?

Tdawgless writes: I've been stuck with big banks for a while and I've been thinking about switching to a credit union. Are there any good credit unions that target geeks and IT workers?
Security

Submission + - VPN flaw shows users ip (wired.co.uk) 1

AHuxley writes: A VPN flaw announced at Cipher conference in Sweden allows individual users to be identified.
When using IPv6 and PPTP the hidden IP address of a user can be found, as well as the MAC.
The Swedish anti-piracy bureau could already be gathering data using the exploit.

Government

Submission + - DHS likely to cancel virtual border fence (thehill.com)

GovTechGuy writes: A Department of Homeland Security official admitted the department's billion dollar virtual fence program has been largely a failure and said the program will likely be significantly scaled back. The project, originally slated to cover over 500 miles of the Arizona to Texas U.S. border with Mexico has produced ineffective, costly technology and that only covers 50 miles.

The original plan called for sensors, cameras and radar towers to be installed along the Southwest border to detect illegal immigratnts. DHS' admission came after withering testimony from Randolph Hite of the Government Accountability Office on the state of the virtual fence program, known as SBInet. Hite said SBInet has been troubled since its outset and plagued by frequently changing milestones, management weaknesses and performance shortfalls. As a result he said the Department has little to show after spending most of the program's $1.3 billion budget.

Slashdot Top Deals

One man's constant is another man's variable. -- A.J. Perlis

Working...