EFY Times  
Wednesday, June 19, 2013

 
GO
 
 
European Aeronautical Supplier's Website Infected: Sophos
 
Home >> Infotech >> Trends
 
European Aeronautical Supplier's Website Infected: Sophos  
 
   
Rate this news:  (0 Votes)
Wednesday, June 27, 2012 Sophos, IT security and data protection firm, is advising computer users and administrators to exercise caution following the discovery of an as-yet un-patched security vulnerability in Microsoft software. SophosLabs today determined that the website of a European aeronautical parts supplier - which is currently not being named due to the sensitivity of the situation - had been hacked, and a malicious attack planted on the website which exploits zero-day Microsoft security vulnerability.






Sophos was alerted to the security problem when a Sophos customer attempted to visit the affected website, and received a warning message that a file on the site was infected by code which attempts to exploit a vulnerability in Microsoft XML Core Services which could allow Remote Code Execution - a vulnerability known as CVE-2012-1889 - which has been linked to recent warnings from Google about 'state-sponsored attacks'.

Graham Cluley, Senior Technology Consultant at Sophos said"One way that hackers break into large companies and organizations is to target their supply chain. It's reasonable to speculate that whoever was behind this attack actually had bigger fish to fry - the type of businesses that regularly visit the websites of aeronautical suppliers, such as defence companies. The theory goes that rather than try to hack a company which may have robust security practices and security teams, the bad actor can instead attack a smaller supplier who are less well placed to notice the security breach."

Users running any flavor of currently-supported Windows are vulnerable, from XP, up to and including Windows 7. All supported editions of Microsoft Office 2003 and Microsoft Office 2007 are also vulnerable. There is not yet an official patch from Microsoft - but the company recommends that Internet Explorer and Microsoft Office users immediately install a Fix it solution, downloadable with instructions from Microsoft Knowledge Base Article 2719615, until the company issues an official fix.

Graham Cluley, Senior Technology Consultant at Sophos said "Don't underestimate the seriousness of this vulnerability. It's being actively exploited in the wild, and there is currently no patch available for it. As a result, Sophos has raised its threat level rating to its highest level - 'Critical'. Sophos does provide protection against the exploit - but the best solution of all would be to have a proper fix from Microsoft. And for now, at least, we're waiting to see when that's going to appear."



Print Email Post Comment 
(Total Views: 322)
 
Share
 
 
Infotech News
   
Product Listings From Google Now Available In India
Digg Reader Will Be Made Available From 26 June
Microsoft's Brain Makes Bing Voice Search Faster On WP8
HTC One Mini Confirmed!
British Government Dumps Open Source!
 
 
 
     
     
     
Press Release
     
Polycom Announces Collaborative ...
Sony Continues To Solidify Their ...
Stay Connected This Summer: Sprint 4G ...
Sprint Files Lawsuit Against DISH ...
Intelligent Glasses Designed For ...
BYOC 2013: India’s Most Definitive ...
Powerful Predictive Analytics ...
Huawei Unveils Ascend Mate – “Your ...
New Holland Fiat India Celebrates ...
NASSCOM Emergeout Surge 2013 – Paves ...
CtrlS Signs MoU With Siemens ...
Microprecision Presents Industrial ...
Gigabyte G1.Sniper M5 (Z87) Motherboard ...
NETGEAR to set up SMB Solutions ...
IMImobile Powers National Rail ...
Deepcover Secure Authenticator From ...
Snapdeal.com Launches The Nokia Asha ...
Aircel Announces Special Prepaid ...
Dragon Mobile Assistant Expands With ...
Major Update To Adobe Creative Cloud ...
Webnext Technologies Launched India's ...
Maveric Systems Appoints B Sriram As ...
Microchip Announces PIC32MX 32-bit ...
Juniper Networks Wins Big At Interop ...
Canon India Spreads ‘WINGS Of GLORY’ To ...
 
Freescale’s RF Business Commits To ...
Nothrrop Grumman Corporation Releases ...
IBM Scientists Create Prototype Of ...
First Solar Granted 50MW Power Purchase ...
Infinera Introduces Intelligent ...
Saudi Aramco Chooses Soitec’s CPV Solar ...
Air Liquide To Acquire Electronics ...
EPLAN Data Portal On The Up On An ...
McAfee Study On Big Security Data ...
OM Logistics Improves Application ...
Portronics Launches ‘Bean’ - Wireless ...
Encompass Asia Pacific Builds Region's ...
ST Electronics Displays A Wide Range Of ...
Optelian Announces Intuitive Packet ...
BlackBerry Targets The Best And ...
New Microsoft Innovation Center (MIC) ...
The Easiest Way To Increase Klout Score ...
40V, 2A Synchronous Buck-Boost DC/DC ...
RAPOO Launches Innovative Laser Mouse ...
Propalms TSE Eases Microsoft Dynamics ...
Photonics Festival In Taiwan & Display ...
Milky Way-2 Wins #1 Supercomputer In ...
AllGo Systems' MirrorLink™ And ...
Omron Releases New NX Series Safety ...
PROS To Showcase Big Data Applications ...
     
     
     
     
     
Most popular
 
 
 
 
Features
List Of Linux Compatible Software For Every Need
We bring to you productivity tools, desktop environment, archive manager, CD/DVD tools, download tools, editor tools....
Micromax Canvas HD Vs Lava Iris 504Q
Both the phones sport HD display, run Android 4.2 version but is Iris 504Q the best option for Canvas HD? We find out. ...
 
  View All
Videos
 
First Look: LG Optimus G
The phone sports a high-end display and comes powered by a powerful processor. ...
Create QR-Codes For Free
TEC-IT releases the freeware QR-Code Studio to provide a quick and convenient way of QR code creation for every application scenario....
DoT Secretary Shares Plans For Growth Of Telecom Sector
M.F. Farooqui has recently taken charge as secretary, Department of Telecom....
Hands-On: Sony Xperia Z
Xperia Z is Sony's first entrant model in the big-screen smartphone category. ...
Hands On: Videocon A30 Smartphone
Videocon, the consumer electronics company which is known for its refrigerators, washing machine and air-conditioner has unveiled its Android-based sm...
   
View All
   
 
Dialogue
 
“Open Source Technology Will Bring In A Services-Based Model With A Reasonable Opex, Zero Capex”
myOpenSourceStore.com is an open source solutions provider catering to businesses worldwide. ...
How OSS Helped A Construction Company Almost Halve Its IT Budget!
SEW Infra has been able to save nearly 40 per cent of its IT budget by deploying open source solutions....
Face To Face With Richard Stallman
The father of the free software movement, Richard M. Stallman talks on topics including why ‘Free Software’ matters so much, the entire confusion crea...
“We See India As Our Top Priority And Believe It To Be A Fascinating Market”
In an exclusive interview with EFY, Yamashita talks about the potential market in India, and Fujitsu’s marketing strategy to explore it....
Indian Market Is A Quality Conscious Market And The Customers Pay The Price For Quality
In an exclusive interview with EFY, Hidekazu Katsuno, president, ROHM Semiconductor Singapore Pte Ltd, talks about the company's strategy to capture t...
   
  View All
Computex 2013
 
Computex 2013 Round-up: Top Android Products
Major brands introduced their tablets, smartphones, phablets and other future announcements. ...
Lenovo Shows Off 'Miix 8'; An 8-Inch Tablet
Lenovo and Microsoft flashes 8 inch tablet Mixx 8 at Computex 2013! Keeps mum over major features....
Computex 2013: Here Comes The First Ever 7-Inch Windows 8 Tablet
The tablet packs an Intel processor and will be available via top brands. ...
Computex 2013: Gigabyte Intros Android Smartphones
The phones sport HD display and come with dual-SIM support. ...
Computex 2013: Here Comes The Gigantic 31.5-Inch Monitor
ASUS launches high resolution 31.5 inch monitor; price expected to be around $5000....
Computex 2013: Apple Finds Clone In MSI’s Tablet Range
The Primo 81 has a thickness of around 7.8 mm and comes with a matte finish and a modest build quality. ...
Computex 2013: Acer Goes The Cloud Way; Launches Orbe Cloud Device
Where the look of Orbe is concerned, its odd shape probably has something to do with Acer’s desire to come up with a device that looked like a cloud....
   
View All
   
 
Events
 
12 Nov: LASER World Of PHOTONICS INDIA

View All
   
   
 
 

home archives contact us advertise with us
           
Magazines Portals Directories Events News Verticals Educational Institute  
Electronics for You
Open Source for You
Facts for You
Electronics Bazaar
electronicsforu.com
efytimes.com
bpotimes.com
linuxforu.com
Electronics Annual Guide
EFY EXPO
EFY Awards
EduTech Expo
OSIWEEK Expo
Electronics
Infotech
Linux & Open Source
Consumer Electronics
Science & Technology
BPO
EFY Techcenter 
 
 
© Copyright 2013 EFY Enterprises Pvt. Ltd.
All rights reserved. Reproduction in whole or in part in any form or medium without written permission is prohibited.
Usage of the content from the web site is subject to Terms and Conditions