Security Quest #16: WordPress Edition

WordPress has released version 2.3.2 which it calls an “urgent security release”. WordPress 2.3.2 contains a total of 7 bug fixes. The security vulnerability would allow someone to see future posts by giving access to draft posts. Sixteen WordPress files were changed in this update. This version will also suppress some DB error messages to avoid giving out to much information. The error messages will still be displayed if debug mode is enabled. Details on all the changes can be found at Westi on WordPress. The update was released on [...] Read the rest »

Knox – For OS X

Knox, as in Fort Knox, is Mac software that manages encrypted disk images. I came across Knox while looking for a replacement to Stuffit Deluxe. I’d been using Stuffit to create an encrypted archive as part of my backup process. This was the only piece of Stuffit Deluxe that I used and I don’t want to install it on my new Mac. Knox is used to manage OS X encrypted disk images. At $30 it’s targeted to people who use a lot of encrypted disk images but don’t want to [...] Read the rest »

Wallet – Secure Data Organization on a Mac

Publisher: Waterfall Software (http://www.waterfallsw.com) Price: $14.95 (Demo has 10 entry limit) Version: 2.6 (326) [Universal binaries] As the name implies, Wallet is used to keep track of passwords, credit cards and other information. Wallet uses 448-bit Blowfish Encryption. Read the rest »

Windows XP Security Update

Microsoft sent a security patch to my Windows XP SP2 machine. It’s “MSXML 4.0 SP2 Security Update (KB927978). The details provided are: ————————————————— Size: 5.4 MB A vulnerability exists in the XMLHTTP ActiveX control within Microsoft XML Core Services that could allow for remote code execution More information for this update can be found at http://support.microsoft.com/kb/927978 ————————————————— I installed the patch and a reboot was needed. Read the rest »