Month: June 2010
-
Detecting the Recent Adobe 0-Day (APSA10-01) with Nessus

[This was originally published on the Tenable blog.] On June 4, 2010, Adobe announced a new attack being exploited in the wild that targeted Adobe products, and word spread quickly. Adobe’s security bulletin (APSA10-01) provided few details, but confirmed that attackers were actively exploiting a vulnerability that affected their Flash Player, Adobe Reader and Acrobat.…
-
Microsoft Patch Tuesday Roundup – June 2010 – “Everything is Vulnerable” Edition

[This was originally published on the Tenable blog.] Here we go again – another massive “Patch Tuesday”, brought to you by Microsoft. This particular bundle addresses 34 vulnerabilities in Windows, IE, Office, .NET Framework, IIS and Sharepoint, a tie for the largest vulnerability count in a single Microsoft Patch Tuesday to date. The advisories include a wide…
-
Getting ‘lucky’: When Nessus Finds 0-Days

[This was originally published on the Tenable blog.] Historically, vulnerability scanners have been signature based: looking for issues based on a static signature, behavior such as bannerhttps://pt-br.tenable.com/blog/getting-lucky-when-nessus-finds-0-days output or service response output to certain queries. If the scanner was not specifically directed to look for a given vulnerability, it would not find it. Many in…