12 New Cisco Patches
GSA Reference Number: AD080926-01
Simply Put: Cisco has announced twelve vulnerabilities in multiple Cisco products. The vulnerabilities range from denial of service to remote exploitation, for some systems. The denial of service issues will cause the device to reload, if exploited. Remote exploitation only affects the Cisco uBR10012 model devices. For a comprehensive list of affected IOS versions, refer to the Cisco article linked below. Gladiator will be reviewing all monitored client Cisco devices to determine what IOS version they are running. If a device is out of date, it will be updated.
Beware Fake Antivirus Sites
We’ve seen a lot of fake antivirus sites and warnings for a while now, but they’re really starting to pick up. If you see anything for Antivirus 2009 or Antivirus 2008, these are fakes, and will install a trojan horse onto your system. Unfortunately, these sites look very professional and legitimate. The malware database blog (linked below) has some good screenshots of these sites. Remember, do not install any products from vendors you do not know. If you are unsure if an antivirus vendor is reputable, a good list of respected AV vendors is at Virus Total (http://www.virustotal.com/sobre.html). Be sure to inform your coworkers so they don’t install this product at work or at home.
Cisco Advisories – VPN and SIP vulnerabilities
GSA Reference Number: AD080903-01
Simply Put: Cisco has announced five vulnerabilities in their Cisco ASA 5500 and PIX devices. The vulnerabilities deal with denial of service to the device or information disclosure. The denial of service issues will cause the device to reload, if exploited. For a comprehensive list of affected IOS versions, refer to the Cisco article linked below. Gladiator will be reviewing all client Cisco devices to determine what IOS version they are running. If a device is out of date, it will be updated starting this weekend.
Previous Articles
Gladiator Research and Security
This site is here to provide security related information and articles to better protect your financial institutions. We'll be posting advisories, blog entries and trends often so be sure to check back weekly.