Posts Tagged ‘Microsoft’

Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability

Vuln: Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability

Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability
URL: http://www.securityfocus.com/bid/35631

Why Karma Matters

Microsoft Silverlight vs Google Wave: Why Karma Matters

Inevitable comparisons are made between the hugely enthusiastic developer response (including from us at Zoho) to Google Wave yesterday with the relatively tepid reponse to Microsoft’s new search engine Bing. The real interesting contrast to us, as independent software developers, is the way developers responded to Silverlight as [...]

Microsoft DirectShow Remote Code Execution Vulnerability

Microsoft DirectShow Remote Code Execution Vulnerability

Summary:
Fortinet’s FortiGuard Global Security Research Team investigates a vulnerability in Microsoft DirectX (DirectShow) through a specially crafted QuickTime media file.
Impact:
Remote Code Execution.
Affected Software:

DirectX 7.0 on Microsoft Windows 2000 Service Pack 4
DirectX 8.1 on Microsoft Windows 2000 Service Pack 4
DirectX 9.0 on Microsoft Windows 2000 Service Pack 4
DirectX 9.0 on Windows [...]

Microsoft DirectShow vulnerability, (Thu, May 28th)

Microsoft DirectShow vulnerability, (Thu, May 28th)

Microsoft have recently announced aMicrosoft DirectShow vulnerability via an advisory and multiple blog entries. The advisory indicates that Microsoft are investigating public reports of a vulnerability within the DirectShow element of DirectX – CVE-2009- 1537 has been allocated to this vulnerability. Microsoft have published quite a detailed set of actions [...]

Technitium MAC Address Changer v5 R3 (FREEWARE) Released

Tool Release: Technitium MAC Address Changer v5 R3 (FREEWARE) Released

Posted by Shreyas Zare on May 29

Hi,
I am happy to announce that Technitium MAC Address Changer v5 R3 has been released. Release 3 adds support for Microsoft Windows Vista/Server 2008 Service Pack 2. Visit tmac.technitium.com for more information and [...]

New Windows zero-day

New Windows zero-day

Microsoft on Thursday issued a security advisory for a new vulnerability in DirectX, used on Windows to enable graphics and sound, that could enable a remote hacker to execute arbitrary code if users open specially crafted QuickTime files. Microsoft said that it was aware of active attacks using exploit code for the vulnerability. [...]

Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution – 5/28/2009

Microsoft Security Advisory (971778): Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution – 5/28/2009

Revision Note: Advisory published. Advisory Summary:Microsoft is investigating new public reports of a new vulnerability in Microsoft DirectX. The vulnerability could allow remote code execution if user opened a specially crafted Quicktime media file. Microsoft is aware of limited, active [...]

Microsoft DirectX DirectShow QuickTime Video Remote Code Execution Vulnerability

Vuln: Microsoft DirectX DirectShow QuickTime Video Remote Code Execution Vulnerability

Microsoft DirectX DirectShow QuickTime Video Remote Code Execution Vulnerability
URL: http://www.securityfocus.com/bid/35139

Understanding Microsoft’s KB971492 IIS WebDAV Vuln

Bugtraq: New paper: Understanding Microsoft’s KB971492 IIS WebDAV Vuln

New paper: Understanding Microsoft’s KB971492 IIS WebDAV Vuln
URL: http://www.securityfocus.com/archive/1/503857

Understanding Microsoft’s KB971492 IIS WebDAV Vuln

New paper: Understanding Microsoft’s KB971492 IIS WebDAV Vuln

<!– Envelope-to: email@address Delivery-date: Wed, 27 May 2009 22:28:52 +0100 Received: from outgoing.securityfocus.com ([205.206.231.27] helo=outgoing3.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1M9Qg8-0000My-E2 for email@address; Wed, 27 May 2009 22:28:52 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing3.securityfocus.com (Postfix) with QMQP id E968C236F94; Wed, 27 May 2009 15:25:07 [...]

Microsoft Removes Windows 7’s “Crippleware” 3 App Limit

Microsoft Removes Windows 7’s “Crippleware” 3 App Limit

A reversal seemed highly likely from the moment Microsoft announced a 3 application limit in the Windows 7 Starter Edition OS planned for netbooks. You could practically hear the industry utter a collective boo even before the electronic ink was dry on that Microsoft decision. Credit Paul Thurrott [...]

Microsoft releases Vista SP2 to the public

Microsoft releases Vista SP2 to the public

The latest service packs (SP2) for Windows Vista and Windows Server 2008 have been released to manufacturing and are now publically available as standalone installers.

URL: http://feedproxy.google.com/~r/SCMagazineHome/~3/S5lWQq0qNa4/

Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs

PAPER: Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs

<!– Envelope-to: email@address Delivery-date: Mon, 25 May 2009 21:27:50 +0100 Received: from outgoing.securityfocus.com ([205.206.231.27] helo=outgoing3.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1M8gly-0007Hw-9E for email@address; Mon, 25 May 2009 21:27:50 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing3.securityfocus.com (Postfix) with QMQP id DBED2236FD1; Mon, 25 May 2009 [...]

Microsoft cuts Windows Live Messenger access for users in five countries

Microsoft cuts Windows Live Messenger access for users in five countries

Microsoft is confirming that it is cutting off Windows Live Messenger service for users in five countries that are ˇ§subject to United States sanctions.ˇ¨ As reported first by LiveSide.net earlier this week, ˇ§users in Cuba, Syria, Iran, Sudan and North Korea can no longer IM [...]

Microsoft Fined $200M USD for Violating Open Source Patent

Microsoft Fined $200M USD for Violating Open Source Patent

In its early days Microsoft, oft ignored the open source movement, instead pushing for proprietary standards. However, more recently the company has made a practice of embracing open standards and then “extending” them in ways that tend to tie them to the Windows operating system, according [...]