PDA

View Full Version : Google: Web sites slow to fix serious Flash flaws


ronjor
March 27th, 2008, 08:55 PM
-{ Quote: " San Francisco - Two months after Adobe Systems patched a serious flaw in its Flash development software, there are still hundreds of thousands of Web pages serving up buggy Shockwave Flash (.swf) files that could be exploited by hackers, according to a Google researcher.

Google security engineer Rich Cannings discovered the widespread vulnerability in his spare time while researching a book on Web security. It turned out that many Flash development tools created files that could be used by hackers in what's known as a cross-site scripting attack. This attack can be used in phishing, but it also gives the bad guys a nearly undetectable route into a victim's bank account or almost any type of Web service.
" }-Article (http://news.yahoo.com/s/infoworld/20080327/tc_infoworld/96674)

cortez
March 28th, 2008, 12:32 AM
-{ Quote: "Article (http://news.yahoo.com/s/infoworld/20080327/tc_infoworld/96674)" }-
I think I might go back to buying money orders to pay my bills.

I do not think this is being paranoid given the terrible consequences if my bank account can be hacked.

ccsito
March 28th, 2008, 07:15 PM
Most banks state that if you lose money based on an "unauthorized" access to your account, you will not be liable and would be reimbursed. However, if a very large number of user's accounts and funds are involved, I am sure the likely response will be an immediate closure to the online banking server. In that situation, there will be a run on the online banks similar to 1929 (but since there are no branch offices, you will be totally blocked from your funds access). :argh: :doubt: