- SophosSupport: New Sophos Complete Security Suites: endpoint, data, email, web, mobile & groupware protection—on one license: http://t.co/13FVvp42about 2 hours ago
- SophosSupport: Scheduled Downtime. SophosTalk may be down for up to 2 hours today May 16, 2012 between 12:01am & 4:00am PDT (GMT -7:00) for scheduled work.about 2 hours ago
- gcluley: RT @NakedSecurity: Global Payments breach continues to bewilder, accusations abound http://t.co/AI64bgeeabout 3 hours ago
- duckblog: Congrats to #sophospuzzle winners at #auscert - David Zielezna and Phil Kernick - one prize still open to all online.about 5 hours ago
- duckblog: #sophospuzzle Stage 2 hint/discovery: if using simulation, even C's rand() with just 100,000 sample hands is about good enoughabout 11 hours ago
XSS
Apple offers iOS 5.1.1 update, fixes some serious vulnerabilities
25 'VeriSign Trusted' shops found to have XSS holes
XSS flaw in WordPress 3.3 - How the smallest things make testing tough
Facebook explains pornographic shock spam, hints at browser vulnerability
Weibo, China's Twitter-like service, hit by worm
Sony Portugal latest to fall to hackers
Facebook scam with a difference - Social Tagging Worldwide avoids rogue apps
September roundup - "90 Second News"
Don't just read the latest computer security news - watch it in 90 seconds! This month: when internet access chose the government; Adobe battles another zero-day; Twitter suffers XSS woes; and the Stuxnet malware keeps on making the wrong headlines. Read more…
The names and faces behind the 'onMouseOver' Twitter worm attack
It's been over 24 hours now since many Twitter users around the world found that their pages had become infested by messages spreading virally across the network. The victims High profile victims of the "onMouseOver" worm included ex-Prime Minister's wife Read more…
Twitter 'onMouseOver' security flaw widely exploited
The Twitter website is being widely exploited by users who have stumbled across a flaw which allows messages to pop-up and third-party websites to open in your browser just by moving your mouse over a link. In a worrying development, Read more…
The beginning of the end of popup porn, Facebook worms and cross-site phishing?
Visit just about any page on any website - including most of sophos.com - and your browser will suck in content from other sites, too. This third-party content is often sourced using script code, such as JavaScript, in the primary Read more…
Reddit exploited - Shows the world how to respond
Last night it was reported that Reddit had been attacked and malicious JavaScript was disrupting the use of the site. In less than 24 hours, Reddit had not only fixed the issue, but had come clean on how it had Read more…

