-
-
23:20
»
eEye Digital Security - Research Blog
Just wanted to make sure everyone saw the update to MS07-046. Version 1.1 of the security bulletin was released today which offers a registry key modification in order to mitigate this vulnerability. eEye Research first released information regarding this registry...
-
-
9:33
»
eEye Digital Security - Research Blog
Just wanted to give a quick heads-up that the eEye R&D team has put together a free Class C scanner (available here: http://www.eeye.com/html/downloads/other/ePOScanner.html) for the latest vulnerabilities found within McAfee ePO, CMA, and ProtectionPilot. These are some pretty serious vulnerabilities...
-
-
7:22
»
eEye Digital Security - Research Blog
Hey readers, We have a few notable updates regarding eEye Research projects and findings: BrightStor PoC Released: This vulnerability was original reported as a denial of service, but with a minor change to the proof-of-concept, an exploitable condition is reached....
-
-
9:12
»
eEye Digital Security - Research Blog
Microsoft DNS Servers are currently being attacked by a zero-day stack-based buffer overflow. eEye Research is currently investigating the vulnerability and exploitation. The most current information is available at the eEye Zero-Day Tracker. DNS administrators are urged to use the...
-
-
19:29
»
eEye Digital Security - Research Blog
Hey Everyone, Just wanted to give a heads up regarding the .ANI patch. We have noticed a bypass for our patch posted to milw0rm. We have since updated the patch to protect from this bypass and version 1.1 was available...
-
-
11:02
»
eEye Digital Security - Research Blog
Hey Readers, Pretty serious happenings on the zero-day front today so we’ll keep it short and sweet. Today marked the release of the Windows .ANI Processing zero-day. This zero-day vulnerability represents one of the most potent zero-days recorded by the...
-
-
5:49
»
eEye Digital Security - Research Blog
Hey Readers, Now that the dust has started to settle (and our livers are recovered from RSA), we just wanted to give a quick heads up from this Patch Tuesday. Microsoft has patched 6 of the ZDT entries, which only...
-
-
2:48
»
eEye Digital Security - Research Blog
Just wanted to give a heads-up on some updates to the eEye Research Portal: 1 - New Tool: UFuz3 - Yuji Ukai has written a pretty cool integer overflow file fuzzer that can be used against any binary-file format. It...
-
-
21:27
»
eEye Digital Security - Research Blog
Happy New Year everyone! We have a few updates for our research portal with regards to publicly disclosed zero-days. A new exploit has been posted to Full Disclosure which describes an attack which allows a logged in user to elevate...
-
-
6:27
»
eEye Digital Security - Research Blog
Hey Readers, just wanted to give you a couple of site updates for research.eeye.com, and most notably the zero-day tracker. We'll start with the good news... Good News: eEye Research has added another vulnerability to its upcoming advisories page. The...