Skype Plugs New Security HoleBest Security Tips offers daily news, information, advices and tips about spyware, adware, viruses, trojans, web vulnerabilities, hackers, other threats    | Register now | Login
   
TIPS NEWS TOOLS DOWNLOADS MALWARE FORUM BOOKS FREE MAGAZINES FREE WEBCASTS & VIDEOS
GFI LANguard Network Security Scanner - Dld 30-day trial! del.icio.us  digg  Furl  NewsVine  Spurl  Blinklist  Ma.gnolia  Reddit  Tailrank  YahooMyWeb 
Best Tips
Security Scanner
Security Categories
Advertise With Us!
Latest Viruses / Threats
Downloads
RSS / Atom Feeds
Windows Security : Skype Plugs New Security Hole
Posted by Max on 2007/12/11 12:48:54 (533 reads)
Windows Security

Harsh criticism has targeted VoIP company Skype both for its handling of a critical security hole and supposedly ignoring users' bug reports.Skype has managed to fix quite a serious security gap in the latest version of its Windows VoIP software, which could have had bad consequences for PC users as it would have made possible for some fraudulent websites to load and run malicious code.

The URI handler skype4com, which the Skype software creates to deal with web addresses, is liable to failing during short strings handling, generating a memory violation that opens to code writing to memory.

According to security website Heise Security, Skype has undoubtedly fixed critical holes in secrecy without letting its users know.It is thus recommendable for those still using older versions of the software to step up with the latest version of Skype — version 3.6.

Secunia, a security research firm, comes with a solution in the form of a Software Inspector that should establish whether a PC is vulnerable.Still, the point is , Skype received the thumb down from its users for supposedly not responding to bug reports.

Taken from a Skype forum, apparently Skype was generating 10,000 page faults per second on a user's PC, stated Jamie Watson, applications development professional and ZDNet.co.uk member.
For a while, Skype wanted everyone to believe that the software was meant to produce such a high number of faults. However, in the end, the VoIP company seemed to admit the origin of the error to have been a thread, which Skype programmers installed for debugging but then forgot to remove.

At the time of writing this in his blog, Skype could put out no reply to Watson's remarks and it seems that lately the VoIP company has got a bit behind with its popularity.




Other articles
2008/8/21 15:52:01 - BitRoll and Torrent101 Used to Distribute the Lop Adware
2008/8/20 15:06:33 - FRAUDFacts Helps You Fight Identity Theft and Fraud for Life
2008/8/13 16:42:03 - 10 Million Zombies Are Spreading Spam and Malware Every Day
2008/8/11 9:03:35 - Nearly $8.5 Billion Lost by US Consumers because of Online Threats
2008/8/8 6:35:36 - EDS' Eight Tips for Consumers to Protect Themselves from Identity Theft

The comments are owned by the poster. We aren't responsible for their content.