<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.itworld.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>vulnerabilities</title>
 <link>http://www.itworld.com/taxonomy/term/613/all</link>
 <description></description>
 <language>xx</language>
<item>
 <title>Vulnerability Disclosure: Is it Blackmail, Whitemail or Bluemail</title>
 <link>http://www.itworld.com/security/72334/vulnerability-disclosure-it-blackmail-whitemail-or-bluemail</link>
 <description>Hackers (or security researchers) come with a range of rainbow colored hats. Some guys&#039;n&#039;gals are nice (the White Hats). They find and disclose problems in communication products using approved responsible disclosure models. Others are in the business for money, and are not satisfied by the fame they get for disclosing problems. The process can easily get close to what some would consider unethical, or even direct blackmailing.
</description>
 <comments>http://www.itworld.com/security/72334/vulnerability-disclosure-it-blackmail-whitemail-or-bluemail#comments</comments>
 <category domain="http://www.itworld.com/career">Career</category>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/software">Software</category>
 <category domain="http://www.itworld.com/opinion">Opinion</category>
 <category domain="http://www.itworld.com/security-research">security research</category>
 <category domain="http://www.itworld.com/security-testing">security testing</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Thu, 23 Jul 2009 16:25:21 -0400</pubDate>
 <dc:creator>Ari Takanen</dc:creator>
 <guid isPermaLink="false">72334 at http://www.itworld.com</guid>
</item>
<item>
 <title>The Kilo-Day threat and mundane security</title>
 <link>http://www.itworld.com/security/67214/kilo-day-threat-and-mundane-security</link>
 <description>In the security business we spend a lot of time worrying about the &quot;zero-day&quot; threat that appears out of nowhere and immediately starts attacking a hereto unknown vulnerability. We worry so much that we overlook the vulnerabilities we already know about. The ones that have been hanging around on our systems, known but unaddressed, unpatched and wide open.
</description>
 <comments>http://www.itworld.com/security/67214/kilo-day-threat-and-mundane-security#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/opinion">Opinion</category>
 <category domain="http://www.itworld.com/conficker">conficker</category>
 <category domain="http://www.itworld.com/patch">patch</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Wed, 29 Apr 2009 16:19:18 -0400</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">67214 at http://www.itworld.com</guid>
</item>
<item>
 <title>Windows bugs never really die</title>
 <link>http://www.itworld.com/security/66917/windows-bugs-never-really-die</link>
 <description>Hackers can successfully attack Windows PCs months -- even years -- after Microsoft Corp. fixes a flaw, a security expert said Thursday, because there&#039;s always a pool of unpatched systems.
</description>
 <comments>http://www.itworld.com/security/66917/windows-bugs-never-really-die#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/windows">Windows</category>
 <category domain="http://www.itworld.com/analysis-0">Analysis</category>
 <category domain="http://www.itworld.com/patch">patch</category>
 <category domain="http://www.itworld.com/qualys">Qualys</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Fri, 24 Apr 2009 10:06:44 -0400</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">66917 at http://www.itworld.com</guid>
</item>
<item>
 <title>Black Hat &#039;supertalk&#039; halted due to vendor concerns</title>
 <link>http://www.itworld.com/security/66519/black-hat-supertalk-halted-due-vendor-concerns</link>
 <description>The Black Hat security conference is full of drama again in Amsterdam with the last-minute cancellation of a presentation.
</description>
 <comments>http://www.itworld.com/security/66519/black-hat-supertalk-halted-due-vendor-concerns#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/news">News</category>
 <category domain="http://www.itworld.com/black-hat">Black Hat</category>
 <category domain="http://www.itworld.com/exploits">exploits</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Thu, 16 Apr 2009 13:33:56 -0400</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">66519 at http://www.itworld.com</guid>
</item>
<item>
 <title>Firefox fix due next week after attack is published</title>
 <link>http://www.itworld.com/security/65118/firefox-fix-due-next-week-after-attack-published</link>
 <description>Mozilla developers are scrambling to fix a critical bug in the Firefox browser after attack code was released Wednesday.
</description>
 <comments>http://www.itworld.com/security/65118/firefox-fix-due-next-week-after-attack-published#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/news">News</category>
 <category domain="http://www.itworld.com/firefox">Firefox</category>
 <category domain="http://www.itworld.com/mozilla">Mozilla</category>
 <category domain="http://www.itworld.com/patches">patches</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Thu, 26 Mar 2009 09:24:27 -0400</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">65118 at http://www.itworld.com</guid>
</item>
<item>
 <title>Power grid is found susceptible to cyberattack</title>
 <link>http://www.itworld.com/security/64770/power-grid-found-susceptible-cyberattack</link>
 <description>Researchers at IOActive say malicious code could propagate on next generation power meter devices.
</description>
 <comments>http://www.itworld.com/security/64770/power-grid-found-susceptible-cyberattack#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/news">News</category>
 <category domain="http://www.itworld.com/energy">energy</category>
 <category domain="http://www.itworld.com/exploits">exploits</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Sat, 21 Mar 2009 21:22:49 -0400</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">64770 at http://www.itworld.com</guid>
</item>
<item>
 <title>Adobe patches Flash vulnerabilities for three platforms</title>
 <link>http://www.itworld.com/security/63233/adobe-patches-flash-vulnerabilities-three-platforms</link>
 <description>Adobe has updated its Flash multimedia software to eliminate five flaws affecting Windows, OS X and Linux systems.
</description>
 <comments>http://www.itworld.com/security/63233/adobe-patches-flash-vulnerabilities-three-platforms#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/software">Software</category>
 <category domain="http://www.itworld.com/news">News</category>
 <category domain="http://www.itworld.com/adobe">Adobe</category>
 <category domain="http://www.itworld.com/adobe-flash">Adobe Flash</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Wed, 25 Feb 2009 09:52:01 -0500</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">63233 at http://www.itworld.com</guid>
</item>
<item>
 <title>Popular Apps with Critical Security Vulnerabilities</title>
 <link>http://www.itworld.com/security/61389/popular-apps-critical-security-vulnerabilities</link>
 <description>The software vulnerabilities listed in Bit9&#039;s so-called &#039;Dirty Dozen&#039; don&#039;t swoop in wearing a mask and brandishing a gun. They come in surreptitiously hidden in the coattails of popular applications.
</description>
 <comments>http://www.itworld.com/security/61389/popular-apps-critical-security-vulnerabilities#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/opinion">Opinion</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Mon, 26 Jan 2009 11:00:49 -0500</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">61389 at http://www.itworld.com</guid>
</item>
<item>
 <title>Apple patches months-old Java bugs</title>
 <link>http://www.itworld.com/operating-systems/55401/apple-patches-months-old-java-bugs</link>
 <description>Apple patched nearly 30 Java vulnerabilities in Mac OS X Wednesday, months after Sun Microsystems Inc., Java&#039;s developer, fixed most of the same flaws for other operating systems.
</description>
 <comments>http://www.itworld.com/operating-systems/55401/apple-patches-months-old-java-bugs#comments</comments>
 <category domain="http://www.itworld.com/operating-systems">Operating systems</category>
 <category domain="http://www.itworld.com/news">News</category>
 <category domain="http://www.itworld.com/apple">Apple</category>
 <category domain="http://www.itworld.com/java">java</category>
 <category domain="http://www.itworld.com/mac-os-x">Mac OS X</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Fri, 26 Sep 2008 11:33:21 -0400</pubDate>
 <dc:creator>ITworld staff</dc:creator>
 <guid isPermaLink="false">55401 at http://www.itworld.com</guid>
</item>
<item>
 <title>Reason Behind Vulnerabilities</title>
 <link>http://www.itworld.com/software/54771/reason-behind-vulnerabilities</link>
 <description>Now something completely unrelated to VoIP: Reason behind all vulnerabilities in software! I read an article that explained how vulnerabilities are basically created by the fact that people tend to drift from good development principles into practices that are just simply Fun. The engineers among us know that software development can be enormously interesting, something you would happily even do in your leisure time. But can fun be converted into reliable software?
</description>
 <comments>http://www.itworld.com/software/54771/reason-behind-vulnerabilities#comments</comments>
 <category domain="http://www.itworld.com/security">Security</category>
 <category domain="http://www.itworld.com/software">Software</category>
 <category domain="http://www.itworld.com/opinion">Opinion</category>
 <category domain="http://www.itworld.com/quality-assurance">quality assurance</category>
 <category domain="http://www.itworld.com/security-0">security</category>
 <category domain="http://www.itworld.com/software-0">software</category>
 <category domain="http://www.itworld.com/testing">testing</category>
 <category domain="http://www.itworld.com/vulnerabilities">vulnerabilities</category>
 <pubDate>Mon, 08 Sep 2008 15:54:15 -0400</pubDate>
 <dc:creator>Ari Takanen</dc:creator>
 <guid isPermaLink="false">54771 at http://www.itworld.com</guid>
</item>
</channel>
</rss>
