SANS is reporting that alongside this Month's MS patches, Adobe has patches for Flash and other things out. Not acroread, fortunately, but for anyone who doesn't use flashblock to turn flash off, their browser only needs to go to one subverted site for their machine to belong to someone else
Sigh
This is one of the big problems with Virtualisation. Any VM image you don't keep up to date is a security risk, cost of keeping up to date is therefore proportional to the #of VM images you have. And any backed-up VM from months earlier is danger.
SANS also have a good article on Keeping SSH keys
secure, including some find
commands to locate keys in tar files and temp dirs. Better not
forget those VM disks too though...