Microsoft Patch Tuesday, September 2014

September 09, 2014

Today is Microsoft Patch Tuesday and it's one of the lightest of the year. This ...

Stupid Spammer Tricks – Reversing Characters

September 05, 2014 | Brian Bebeau

Spammers engaged in phishing attacks constantly try to get their emails past ...

Microsoft Advance Notification for September 2014

September 04, 2014 | Robert Foggia

On Tuesday, September 9th, Microsoft will publish their next security update ...

[Honeypot Alert] Active Probes for WordPress revslider_show_image Plugin Local File Inclusion Flaw

September 03, 2014 | Ryan Barnett

A local file inclusion vulnerability in the WordPress Slider Revolution Plugin ...

SpiderLabs Radio: August 28, 2014

August 30, 2014

In this episode:

Bitcoin Transaction Malleability Theory in Practice – Blackhat USA 2014

August 28, 2014 | Daniel Chechik

***UPDATE: 10/17/2014

SpiderLabs Radio: August 21, 2014

August 22, 2014

In this episode:

Monkey Patching the Matrix

August 18, 2014 | Jonathan Claudius

For those of you not familiar with monkey patching, it's a mechanism to "extend ...

SpiderLabs Radio: August 14, 2014

August 16, 2014

In this episode:

Microsoft Patch Tuesday, August 2014

August 12, 2014

August's Microsoft Patch Tuesday is upon us and Microsoft is issuing nine ...

Magnitude Exploit Kit Backend Infrastructure Insight - Part I

August 07, 2014 | Trustwave SpiderLabs

In our recently released Trustwave Global Security Report Online and previous ...

Blackhat Arsenal 2014: Live ModSecurity Demonstrations

August 05, 2014 | Ryan Barnett

If you are heading out to Blackhat USA 2014 in Las Vegas this week, please stop ...

A Peek Into the Lion's Den – The Magnitude [aka PopAds] Exploit Kit

August 05, 2014 | Trustwave SpiderLabs

Recently we managed to get an unusual peek into the content that is used on the ...

It’s ALIVE: Trustwave Global Security Report Online Now Available

August 05, 2014

This morning we unveiled our reinvented Trustwave Global Security Report. It's ...

SpiderLabs Radio: July 31, 2014

August 01, 2014

Hello loyal listeners. I just wanted to let you know that this is not the ...

Backoff - Technical Analysis

July 31, 2014 | Josh Grunzweig

As discussed in the an advisory published by US-CERT, Trustwave SpiderLabs has ...

[Honeypot Alert] Wordpress XML-RPC Brute Force Scanning

July 23, 2014 | Ryan Barnett

There are news reports of new Wordpress XML-PRC brute force attacks being seen ...

SpiderLabs Radio: July 17, 2014

July 18, 2014

In this episode:

About Two Recently Patched IBM DB2 LUW Vulnerabilities

July 15, 2014

IBM recently released patches for three security vulnerabilities affecting ...

Introducing Windows Exploit Suggester

July 11, 2014 | Sam Bertram

A tool to detect potential missing patches on Windows hosts and obtain a list ...

SpiderLabs Radio: July 10, 2014

July 11, 2014

In this episode:

Microsoft Patch Tuesday, July 2014

July 08, 2014

July's Microsoft Patch Tuesday is a light release with two "Critical" ...

Microsoft Advance Notification for July 2014

July 04, 2014

Microsoft will publish their next security patch release on Tuesday, July 8. ...

8 Common Pitfalls of Heartbleed Identification and Remediation (CVE-2014-0160)

July 03, 2014 | Robert Rowley

Unfortunately, one of the biggest vulnerabilities disclosed this year, ...

Analysis of a New Banking Trojan Spammed by Cutwail

July 02, 2014 | Rodel Mendrez

The Cutwail spambot has a long history of sending spam with attached malicious ...

SpiderLabs Radio: June 26, 2014

June 27, 2014

In this episode:

NAC doesn’t like your penetration testing device? IPv6 to the rescue!

June 24, 2014

Sometimes when I conduct a network penetration test it's just too easy to get ...

Weak passwords? Better call The Doctor.

June 24, 2014 | Chris Carlis

Every network presents its own unique opportunity for a penetration tester. ...