Does this Flash issue affect OS X?

I read this
New Flash Attack Has No Real 'Fix'
Researchers show how Adobe Flash can be exploited in browsers when victim visits sites that accept user-generated content
Nov 12, 2009 | 08:52 PM
By Kelly Jackson Higgins
DarkReading
Researchers have discovered a new attack that exploits the way browsers operate with Adobe Flash -- and there's no simple patch for it.
The attack can occur on Websites that accept user-generated content -- anything from Webmail to social networking sites. An attacker basically takes advantage of the fact that a Flash object can be loaded as content onto a site and then can execute malware from that site to infect and steal information from visitors who view that content by clicking it.
"Everyone is vulnerable to this, and there's nothing anyone can do to fix it by themselves," says Michael Murray, CSO for Foreground Security, which today posted demonstrations of such an attack against Gmail, SquirrelMail, and cPanel's File Manager. "We're hoping to get a message out to IT adminstrators and CIOs to start fixing their sites one at a time."
http://www.darkreading.com/security/showArticle.jhtml?articleID=221700036
and wonder if this is a Windows specific issue or is it a risk to OS X, also
(not sure if this is the correct sub-forum, I searched but couldn't find a forum at this site dealing with security related questions)
thanks!

I am a co-founder of Calendar of Updates http://www.calendarofupdates.com/updates/index.php?act=idx This is a site that is primarily a Windows based security forum (I switched about 4-5 years ago). Over the years, I've tried to grow the Mac side of our forum, but, as you may know, there is little or no interest in security within the Mac community. For many, the feel security is a Windows issue.
It's a free site, so don't think I have a vested interest in growing the membership, I'm not an owner, either.
I just created an Apple OS X Security Issues forum http://www.calendarofupdates.com/updates/index.php?showforum=20
Please feel free to join the forum and share security related issues and questions.
I am not aware of any other forums that deal with OS X security issues
exclusively, so this forum could be a good place to bookmark and visit from time to time.

Similar Messages

  • Will this installation issue affect me?

    Before Oracle Database installation with 10g release 2, the OUI checks the prerequisites and informs that the following test has failed:
    Checking Network Configuration requirements ...
    Check complete. The overall result of this check is: Failed <<<<
    Problem: The install has detected that the primary IP address of the system is DHCP-assigned.
    Recommendation: Oracle supports installations on systems with DHCP-assigned IP addresses; However, before you can do this, you must configure the Microsoft LoopBack Adapter to be the primary network adapter on the system. See the Installation Guide for more details on installing the software on systems configured with DHCP.
    I plan on doing Java development with JDeveloper. Will this issue affect me, or should I just go ahead with the installation? Thank you in advance.

    What platform are you using? I assume Windows but which version?
    Is the error message correct? Are you getting your IP address from DHCP (like a Comcast Internet account)?
    If so then, yes this will affect you and you must install the Loopback Adapter. Don't worry, it's extremely easy. There are directions for it in the Oracle installation manual for Windows.

  • HT5278 Does this new update affect anything on the ipod 4generation like making it slower?

    Does this
    New software update affect the ipod 4 generation. Like by making it sllower freeze turn off out of no were but exactly lile does it make it slower for camera, safari , messages, etc. please answer if yoi know becoise im not sure to update my ipod 4generation to software 5.1.1

    It does nothing for the iPod's camera. It does not support HDR. Otherwise itjust fixes oroblems and should not effect performance.

  • Sync To CRM Time - Does This Cause Issues For Anyone Else?

    I have been a long-time Eloqua user. Primarily, the companies that I have worked are B-to-B and serve small businesses.  In the small business lead generation world, when you wait to respond to leads - you lose. The first one in usually gets the deal.  We have all of our lead generation activities running through Eloqua, including our PPL campaigns where multiple competitors are also responding to RFQ's and also our inbound sales call center uses it (via form) to submit leads in order to take advantage of the de-duplication and validation power in Eloqua.  The latter causes my sales team to wait 15 minutes while they are they are waiting for the lead to get created and transferred to them in CRM. 
    Here is my issue.  At best, it takes Eloqua 15 minutes to sync the leads to SFDC.  These programs are "straight to queue" integrations too.  I am running integration events straight from the form processing steps, so there are no program builder delays here.  The guys in Support have been really great, and have been working with me to see what can be done to decrease the lag time, but 15 minutes seems to be the acceptable rate. So, I am starting to think of ways to take them directly to SFDC and just live with the issues of duplicates and no validation.
    I can't be the only one that this causes issues for.  Does anyone else have this issue?

    Hi John,
    I too have had these issues.  The main problem is not program builder.  The integration queue/engine is prone to backlogs.  Rumor has it that the integration engine is shared by the campaign engine and a bunch of other services in the platform.  Either way, the integration queue will always have a lag.
    My solution was:
    1.  Push data from ELQ form to a SFDC Web-toLead Form IF ELQ contact has blank LeadID and ContactID (does not exist in SFDC) -- this creates leads instantly in SFDC.
    2.  Run an apex trigger from SFDC to do a blind form submit to Eloqua with the email address and SFDC Lead ID for the leads created from step1 -- this will ensure that creating duplicate leads in SFDC is minimized.
    3.  Send notifications from ELQ form to Sales Reps if ELQ contact already exists in SFDC as Lead or Contact. -- even without the updates on the lead or contact records in sfdc, this gives the reps an immediate heads up. 
    4.  Send the rest of the information that I couldn't fit into the post-data-to-server step for the new lead.
    Of course I also baked into the form processing steps a bunch of conditions to mitigate spam.

  • Can having 1 I cloud account with more than 1 phone connected? Does this reate issues?

    Can using 1 I cloud account with 1 apple ID connected to 3 different I phones create issues.?

    All 3 phones are not 1 persons, they have different networks and numbers. The reason I ask is I recently upgraded my i phone and also downloaded the ios6 and it seemed my phone had a funny turn. I would text a contact and she replied but it didnt show on my phone, it showed on my sons who is a completely different number to me and network?
    Its now changed and she can reply to me but it also still shows on my sons phone. The only link I can think of is icloud.
    Also a genius told me that I should have my own apple id etc and not use my husbands?

  • Does this support Iphone(3G) from Sprint?

    I have a iphone from sprint and I have been watching video on youtube all the time.  But yesterday I could not watch video anymore because youtube does not support my cell phone device anymore?
    So, my question is does this flash player support my iphone from sprint?
    what shall I do to watch video on youtube just like before?

    FCPX doesn't import AVCHD files from my Panasonic GH-2, even though importing works perfectly into iMovie.  So just because camera X imports natively into iMovie, it isn't certain it will import natively into FCPX.
    iMovie archives will always import because the AVCHD has already been converted to ProRes on import.
    In FCPX the AVCHD files from say a GH-2 can be edited natively if you don't want to re-render into ProRes, but to date I can't import them to test this.
    Chris.

  • Flash problem persists after 6 months...does this new information help?

    Hi All!
    I posted my problem almost 6 months ago, (I'll paste some of the info below to bring you up to date), but I STILL can't access only FOUR sites because I get a "Plugin file is missing" error, (after my previous post I found 2 other sites).  I've been trying to solve this problem off & on, but I got more dedicated the other day because I'll be needing access to these sites very soon.  I found some new information today that I hope will solve this awful problem; however, since I'm not very technically inclined I know I have to ask a "Flash Expert", so here goes....
    I run Windows 8 & I use Mozilla exclusively.  I updated Flash the other day to version 15.0.0.152 & I wanted to make sure the plugins had been updated, so I opened the "Flash Player Settings Manager" & under the "Advanced" tab it lists:
                                            NPAPI Plugin Version 15.0.0.152
                                            PPAPI Plugin Version Not installed
    Is it significant that the PPAPI Plugin is "Not installed", or does Mozilla only require the NPAPI plugin? 
    My second question regards the installation of Flash.  I know that when a program is problematic, it sometimes helps to uninstall & reinstall it...I recently had a game that went nuts & that's the procedure I had to do.  Also, someone on Mozilla's forum said they were having a Flash issue & they went to your site & downloaded the .exe AND the .msi Installers from the Distribution Page, then manually installed them & their problem was resolved.  Would this help me resolve MY Flash problem?  If you think it's worth a try, do I have to uninstall Flash first?
    Well, that's all the new info I have.  I have to figure this out before December because that's when the nest-cam comes back on...I really have to get this problem fixed!  I'll paste my previous post below, but I hope the uninstall/reinstall method will be the answer!
    Thanks in advance for your help!
    Best Regards,
    DogPal
    Here's my previous post:
    Flash 13.0.0.214 does NOT work on some sites, but works fine on all others in Using Flash Player
    Hi!
    I watch several wildlife nest-cams every day running Windows 8 using Firefox 29.0.1, but yesterday morning, (after I'd already watched the 6 cams I view every day), I started getting a solid, black screen with, "Error loading plugin: Plugin file not found", on TWO of these sites.
    My attempts to resolve the problem were:
    1.  Checked all the other web-cam sites I view daily, and there's only a problem on 2 of them.
    2.  Went to You Tube, Facebook & other similar sites and I can view streaming media.
    3.  Refreshed pages-when that didn't help, I closed & reopened Firefox & still 2 sites with "plugin loading error"
    4.  Completely shut-down my laptop & rebooted.
    5.  Did "System Restore" to earlier in the day when ALL web-cam sites were working.
    6.  Went to Adobe Flash site & verified that I had the most current version...I do, & I saw the animations on Flash site.
    7.  Verified my Flash Plugins in Firefox...AGAIN...they're all activated & up-to-date
    8.  Checked & re-checked ALL the web-cam sites I view every day, (for, at least the 10th time), and the
         same 2 sites are still showing the "Error loading plugin: Plugin file not found" on a black screen.  Even
         though the video isn't seen the "chat" area is functioning, (I don't know if that's important, but I
         thought I should mention it).
    9.  I posted the issue on Firefox's Forum but no one has an answer since Flash works everywhere except
         for 2 sites.
    I've tried everything I can think of to troubleshoot this, but as you can see, I've had no success in solving this "mystery".
    As for the 2 sites I can't view, they are: 
                                        http://www.pixcontroller.com/eagles/    And
                                        http://www.westmorelandconservancy.org/BlueBirdWebcam-1.htm
    I've been watching these sites for MONTHS, so why I can't view them all of a sudden, well, I'm clueless, (I guess you already figured that out...ha ha ha).  I was watching the 2 sites listed above early yesterday morning, then when I looked at one of the other cams I view and came back to these 2 sites, I got the "error message".
    I hope you have a solution for me, as I'm desperate!  I'm WAY behind in my documentation for these 2 sites, so hopefully you'll have an easy answer.  If it's a technical thing, please use LOTS of details, as I'm not very technically inclined.
    Thanks in advance for your help!
    Best Regards,
    DogPal 
    P.S.  I just checked on another site that offers many different wildlife cams, & I CAN view the "Pittsburgh Bald Eagles" if I go through: http://www.ustream.tv/channel/pittsburgh-bald-eagles    I'm sure this means something, but since I don't understand this technical stuff I don't know what that is!  (I told you I'm clueless!) 

    I definitely see a problem with the pixcontroller/eagles site on Windows 8.1.  It works fine for me in the same version of Firefox on Windows 7.  It's unclear to me whether it's a Firefox or a Flash Player issue, but I'm happy to look into it further and get some bugs filed.
    As a temporary workaround, both sites work fine with Google Chrome and Internet Explorer.

  • My clips have a yellow line on the timeline sequence. Does this affect my video quality output if I don't render?

    I use Adobe CS 6 to edit and I use Sony NX 3 to record. Every time I import my clips. It has a yellow line on the timeline sequence, even when I make new clip from the sequence.. My question is, does this affect my video quality output if i did not render the yellow line out? Please someone help me

    Please see this link for more info about red and yellow bars - http://blogs.adobe.com/premierepro/2011/02/red-yellow-and-green-render-bars.html
    If you shoot 1080p, you will likely have better results going to DVD than if you start with 1080i. It's hard enough downscaling with decent quality, then if you add in interlacing issues...
    When exporting from Premiere to create a DVD, choose "MPEG-2 DVD" as the format, and then choose a preset such as "NTSC Widescreen Progressive".
    There is a checkbox at bottom of export window for "Max Render Quality"  - use that for best downscaling results.
    Use 2-Pass VBR encoding. Use a bitrate calculator to determine best bitrate for length of movie, or quick option is 560/minutes = bitrate. But don't exceed 8.0 on shorter movies. I typically round down a little for safety margin, such as 560/120 = 4.6, encode at 4.5 and no worries.
    The export will result in TWO files, .m2v video and .wav audio, import both into Encore for authoring. Encore will convert the .wav to Dolby AC3, reducing file size. Video should NOT get transcoded. And as others said, don't expect HD quality when viewing a DVD...definitely not HD video any longer. But do be sure to use an upscaling player, this makes all the difference. If you run a yellow composite cable from DVD to TV, it will look horrible. Use HDMI with upscaling DVD/Blu-ray player for improved result.
    Good luck
    Jeff Pulera
    Safe Harbor Computers

  • HT1222 So with OSX 10.5.8 does this online banking security problem affect me?

    So with OSX 10.5.8 does this online banking security problem affect me?

    @ stedman1 and Apple computer Inc.
    Believe is religion.
    Is that a private opinion about current security issues or an official statement of the company?

  • How does one update Flash? I currently cannot watch videos on You Tube, it says I need to upgrade, I have no problem doing this on a PC.

    How does one update Flash? I currently cannot watch videos on You Tube, it says I need to upgrade, I have no problem doing this on a PC.

    If you're not using chrome you can just go to adobe's website (http://get.adobe.com/flashplayer/) and download the newest flash player.  You run the .dmg and then open the application, which updates flash.  With the latest version of flash there should be a preference pane within system preferences to allow you to change settings and check for updates.

  • I am having a hard drive issue with code 4MEM/6/4000000:6x7a5db418. What does this mean and how do I fix it?

    I recently ran the Utility Disk and was verifying the Hard Drive due to some permission issues and found a problem.  It told me to run the application startup disk to do another diagnostic which I did.  It confirmed there is an issue and gave me the following code = 4MEM/6/4000000:6x7a5db418.  What does this code mean and how can I go about fixing the problem?  Any wisdom with this would be greatly appreciated. Thanks!

    the meanings to those codes are not made public and only Apple certified technicians have access to them.

  • I can't log in to my computer- when it turns on it has a white/gray screen with a flashing folder with a question mark in it.  What does this mean and how can I get it to stop to log in?

    Hi
    I dropped my macbook yesterday and it turned itself off. When I tried to turn it back on all I got was a white/gray screen with a flash folder with a ? in the middle of it?  What does this mean and how do I get it to stop so I can log onto my laptop?

    Deev
    Normally the question mark on the gray screen means it can't find the operating system. Have you tried booting up from the installation DVD? Do that, and when you come to the screen where it wants to begin a system installation you'll notice in the menubar where it say's utilites. Click on that and choose disk utility. from there choose your disk and try to verify and repair the disk. If you can you may want to also try and new install of the system. I don't know how much critical data you have, but reinstalling is an option. did you purcahse you from an Apple store? If you did you may want them to look at it. Hope this helps.
    Regards,
    Joseph

  • I have just upgraded from an iPhone 3Gs to an iPhone 5. I am trying to transfer all my content via icloud but having problems logging in - it keeps telling me the server is not responding. Nano sim hasn't yet been registered - does this affect things?

    i have just upgraded from an iPhone 3Gs to an iPhone 5. I am trying to transfer all my content via icloud but having problems logging in - it keeps telling me the server is not responding. Nano sim hasn't yet been registered - does this affect things?

    Have you activated your phone with your carrier yet?

  • Newbie Web Programmer. Does this require Flash or less?

    Hey Guys!
    This is my first post and I am hoping you are not a bunch of sharks that are after my bleeding appendages. I need some guidance with a current web design project that I am doing.
    The site itself is a fixed framing of about 800 x 600 pixels.
    At the bottom of the site there are six navigation buttons.
    The 6 buttons trigger a SMALLER inset frame in the middle of the site design.
    How can I achieve the following?
    When the user highlights one of these navigation buttons, the following happens:
    The navigation button font changes colors and plays a sound signifying hover, and a sub-menu extends above revealing sub-catgeories for the user to pick.
    ONCE A sub category is SELECTED,
    The following happens:
    Information in the little INSET window CHANGES
    AND
    The background of the "HOST" site, carrying the frame with changing content, FADES SMOOTHLY into a different set image. (The portions of the website that are BEHIND the text information frame.)
    Id like to avoid using flash if possible, so if having a sound means flash id rather do without.
    Does this make sense?
    If anyone can help Id be so thankful!
    have a happy day!
    sam

    Hey Sam!
    If you are looking to avoid a Flash solution, you should post this in a non-Flash forum.  Try the Dreamweaver forum: http://forums.adobe.com/community/dreamweaver/dreamweaver_general... there's plenty of folks there that don't care for Flash that should hopefully be able to offer a non-Flash solution.... though what you described sounds like a complete Flash design may be appropriate, not just the sound aspect.

  • My Iphone 4 32GB started having this issue when I downloaded the 2 last 6.1.X... VOICE CONTROL pops-up even when I sleep and calls random people just by the sound of the snoring... in FACETIME even more annoying. I confirm that it does this day and night

    My Iphone 4 32GB started having this issue when I downloaded the 2 last 6.1.X... VOICE CONTROL pops-up even when I sleep and calls random people just by the sound of the snoring... in FACETIME even more annoying. I confirm that it does this day and night

    Turn off Voice Control.
    Otherwise, basic troubleshooting from the User's Guide is reset, restart, restore (first from backup then as new).

Maybe you are looking for

  • HOWTO: Control Printer Attributes for a Report at Run Time Reports 6i

    HOWTO: Control Printer Attributes for a Report at Run Time Like page width , height etc my problem is i had installed a printer and it is set for printing different reports ( like invoice slips , legal size , A3 etc ) each time i have to manually set

  • Unable to open PDF file in browser using Reader 9 with IE8

    I just updated to IE8 and when trying to open a PDF file on the browser, I received a message stating to use Adobe Reader 8 or 9.  I downloaded AR9 and still receive the same message and cannot open PDF files in browser window.  It defaults to my Ado

  • Post to internal order and cost center

    we want system show error message if user post to expense account 5****** with cost center and internal order together, i.e. we can only post to cost center or internal order, but can't be both, can it be done by co validation? or do we use user exit

  • Trace not showing Global container variable at mapping test time.

    Hi Folks , I have a scenario file to Proxy scenario. At mapping time I am doing a lookup inside a UDF using JCO connections. Lookup is taking 2 fields(ex X an dY) as input and coming up with couple of fields in output. Output fileds I am storing in g

  • Again: iTunes 10.1.1.4 not working

    So I've read every post on here about the issues people are having with iTunes 10.1.1.4 and Windows 7. Unfortunately, nothing has addressed my issue and none of the solutions I've tried have worked. I'm not computer illiterate by any means and I've t