Skip to main content

Safety note from Google Security team

Google Security Team on one of its blog post tells that, listen to the all warnings on search results and on browsers even the source is trusted one. Because for surely those trusted sites will be under attack. The Security team is confident about the warnings given by scanners.

here is the post published on Online Security Blog
This week in particular, a lot of web users have become vulnerable. A number of live public exploits were attacking the latest versions of some very popular browser plug-ins. Our automated detection systems encounter these attacks every day, e.g. exploits against PDF (CVE-2010-2883), Quicktime (CVE-2010-1818) and Flash (CVE-2010-2884).

We found it interesting that we discovered the PDF exploit on the same page as a more “traditional” fake anti-virus page, in which users are prompted to install an executable file. So, even if you run into a fake anti-virus page and ignore it, we suggest you run a thorough anti-virus scan on your machine.

We and others have observed that once a vulnerability has been exploited and announced, it does not take long for it to be abused widely on the web. For example, the stack overflow vulnerability in PDF was announced on September 7th, 2010, and the Metasploit project made an exploit module available only one day later. Our systems found the vulnerability abused across multiple exploit sites on September 13th.

Here’s a few suggestions for protecting yourself against web attacks:
  • Keep your OS, browser, and browser plugins up-to-date.
  • Run anti-virus software, and keep this up-to-date, too.
  • Disable or uninstall any software or browser plug-ins you don’t use — this reduces your vulnerability surface.
  • If you receive a PDF attachment in Gmail, select “View” to view it in Gmail instead of downloading it.
By Panayiotis Mavrommatis and Niels Provos, Security Team 

Popular posts from this blog

Introducing Samsung's first Windows Phone 8 - Samsung's ATIV S

Samsung announces new range of  Windows 8 devices ATIV S, ATIV Tab, ATIV smart PC and ATIV Smart PC Pro at IFA Berlin. ATIV S is built with the latest and best Software and Hardware technologies.  ATIV S is flat and 8.7mm mobile with huge 4.8" HD Super
Google Chrome 0154.3 Google Chrome is a browser that combines a minimal design with sophisticated technology to make the web faster, safer, and easier. Read more Microsoft Joins with Google To Favor White Space The debate about using white spaces in the television spectrum white space is getting red-hot as a Nov. 4 vote by the Federal Communications Commission grows closer. As further proof that telecommunications policy makes strange bedfellows, Microsoft has joined Google in urging the FCC to allow white space to be used for a national wireless broadband. In a telephone conference with reporters Monday morning, Microsoft chief research and strategy officer Craig Mundie said the software giant agrees with Google that using the white space could make the United States a world leader in broadband access, particularly in rural areas. "As we look to rural communities, we'll see more community broadband connectivity," Mundie said. "Using unlicensed white-space spectrum,...

Hurry: Google I/O 2012 Registration

Registration for Google I/O 2012 will open at 7AM PDT on March 27, 2012 The early bird catches the worm Registration will be first-come, first-served, so make sure you're online promptly at 7Am PDT on March27.  You need Google+ to register and Google Wallet to pay. for more info visit   https://developers.google.com/events/io/register