Month: June 2010

  • Detecting the Recent Adobe 0-Day (APSA10-01) with Nessus

    Detecting the Recent Adobe 0-Day (APSA10-01) with Nessus

    [This was originally published on the Tenable blog.] On June 4, 2010, Adobe announced a new attack being exploited in the wild that targeted Adobe products, and word spread quickly. Adobe’s security bulletin (APSA10-01) provided few details, but confirmed that attackers were actively exploiting a vulnerability that affected their Flash Player, Adobe Reader and Acrobat.…

  • Microsoft Patch Tuesday Roundup – June 2010 – “Everything is Vulnerable” Edition

    Microsoft Patch Tuesday Roundup – June 2010 – “Everything is Vulnerable” Edition

    [This was originally published on the Tenable blog.] Here we go again – another massive “Patch Tuesday”, brought to you by Microsoft. This particular bundle addresses 34 vulnerabilities in Windows, IE, Office, .NET Framework, IIS and Sharepoint, a tie for the largest vulnerability count in a single Microsoft Patch Tuesday to date. The advisories include a wide…

  • Getting ‘lucky’: When Nessus Finds 0-Days

    Getting ‘lucky’: When Nessus Finds 0-Days

    [This was originally published on the Tenable blog.] Historically, vulnerability scanners have been signature based: looking for issues based on a static signature, behavior such as bannerhttps://pt-br.tenable.com/blog/getting-lucky-when-nessus-finds-0-days output or service response output to certain queries. If the scanner was not specifically directed to look for a given vulnerability, it would not find it. Many in…