Latest news
A little over a month ago, Mozilla has announced that Firefox will be preventing all plug-ins except the current version of Flash from loading automatically, requiring users who explicitly want to use them to start them themselves.
Last week, Apple has decided to do the same with older versions of the Adobe Flash Player plug-in.
Users who attempt to view Flash content in Safari with an outdated plugin will be seeing the "Blocked Plug-in" notification. Clicking on it will show them the reason:

In order to view the content, they will be forced to update it.
The change was announced by Apple in a security note that stated that "to help protect users from a recent vulnerability, Apple has updated the web plug-in-blocking mechanism to disable older versions of the web plug-in: Adobe Flash Player."
There was no explanation as to which vulnerability it is, but it's probably one of the three fixed with the latest Flash Player update released two days earlier.

Follow @zeljkazorz


Spotlight

Review: Logging and Log Management
Posted on 22 May 2013. | Every security practitioner should be aware of the overwhelming advantages of logging and perusing logs for discovering system intrusions. But logging and log management comes with its own set of difficulties.

Experts highlight top data breach vulnerabilities
Posted on 22 May 2013. | Hidden vulnerabilities lie in everyday activities that can expose personal information and lead to data breach, including buying gas with a credit card or wearing a pacemaker.

A closer look at Mega cloud storage
Posted on 21 May 2013. | Once a novelty, nowadays many cloud storage services are fighting for their piece of the market in the virtual world. Mega offers 50GB of free space with great pricing on Pro accounts.

The CSO perspective on healthcare security and compliance
Posted on 20 May 2013. | Randall Gamby is the CSO of the Medicaid Information Service Center of New York. In this interview he discusses healthcare security and compliance challenges and offers a variety of tips.

Cyber espionage campaign uses professionally-made malware
Posted on 20 May 2013. | A massive cyber espionage campaign has been hitting government ministries, IT companies, academic research institutions, and more.
By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.




