<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Hero &#187; Microsoft</title>
	<atom:link href="http://sechero.com/tag/microsoft/feed/" rel="self" type="application/rss+xml" />
	<link>http://sechero.com</link>
	<description>If it's about security, you heard it here first</description>
	<lastBuildDate>Mon, 12 Jul 2010 23:27:38 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>Mozilla disables Microsoft plug-ins?, (Sat, Oct 17th)</title>
		<link>http://sechero.com/mozilla-disables-microsoft-plug-ins-sat-oct-17th/</link>
		<comments>http://sechero.com/mozilla-disables-microsoft-plug-ins-sat-oct-17th/#comments</comments>
		<pubDate>Sat, 17 Oct 2009 02:45:26 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20972</guid>
		<description><![CDATA[Mozilla disables Microsoft plug-ins?, (Sat, Oct 17th) A couple of readers have indicated that this evening when they started Firefox it disabled the Microsoft plug-ins Windows Presentation Foundation and Microsoft .NET Framework Assistant 1.1. These plug-ins have been the source of some controversy since it was revealed earlier this week that Microsoft had patched them [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://isc.sans.org/diary.html?storyid=7384&amp;rss">Mozilla disables Microsoft plug-ins?, (Sat, Oct 17th)</a></h1>
<p>A couple of readers have indicated that this evening when they started Firefox it disabled the Microsoft plug-ins Windows Presentation Foundation and Microsoft .NET Framework Assistant 1.1. These plug-ins have been the source of some controversy since it was revealed earlier this week that Microsoft had patched them as part of patch Tuesday.</p>
<p>While the people over at Mozilla have recommended disabling these plug-ins, their is no indication over at the Mozilla Blogs of why this action was taken. </p>
<p>Anybody have any details of what is going on?</p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/mozilla-disables-microsoft-plug-ins-sat-oct-17th/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft GDI+ WMF File Processing Remote Code Execution Vulnerability</title>
		<link>http://sechero.com/microsoft-gdi-wmf-file-processing-remote-code-execution-vulnerability/</link>
		<comments>http://sechero.com/microsoft-gdi-wmf-file-processing-remote-code-execution-vulnerability/#comments</comments>
		<pubDate>Sat, 17 Oct 2009 00:45:54 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20970</guid>
		<description><![CDATA[Vuln: Microsoft GDI+ WMF File Processing Remote Code Execution Vulnerability Microsoft GDI+ WMF File Processing Remote Code Execution Vulnerability URL: http://www.securityfocus.com/bid/36619]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/bid/36619">Vuln: Microsoft GDI+ WMF File Processing Remote Code Execution Vulnerability</a></h1>
<p>Microsoft GDI+ WMF File Processing Remote Code Execution Vulnerability
<p>URL: <a href="http://www.securityfocus.com/bid/36619">http://www.securityfocus.com/bid/36619</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/microsoft-gdi-wmf-file-processing-remote-code-execution-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Office BMP Image Colour Handling Integer Overflow</title>
		<link>http://sechero.com/microsoft-office-bmp-image-colour-handling-integer-overflow/</link>
		<comments>http://sechero.com/microsoft-office-bmp-image-colour-handling-integer-overflow/#comments</comments>
		<pubDate>Thu, 15 Oct 2009 04:59:35 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20965</guid>
		<description><![CDATA[Bugtraq: Secunia Research: Microsoft Office BMP Image Colour Handling Integer Overflow Secunia Research: Microsoft Office BMP Image Colour Handling Integer Overflow URL: http://www.securityfocus.com/archive/1/507174]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/archive/1/507174">Bugtraq: Secunia Research: Microsoft Office BMP Image Colour Handling Integer Overflow</a></h1>
<p>Secunia Research: Microsoft Office BMP Image Colour Handling Integer Overflow
<p>URL: <a href="http://www.securityfocus.com/archive/1/507174">http://www.securityfocus.com/archive/1/507174</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/microsoft-office-bmp-image-colour-handling-integer-overflow/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>0562 (isa_server, office, office_web_components)</title>
		<link>http://sechero.com/0562-isa_server-office-office_web_components/</link>
		<comments>http://sechero.com/0562-isa_server-office-office_web_components/#comments</comments>
		<pubDate>Thu, 13 Aug 2009 05:44:03 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Arbitrary Code]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20943</guid>
		<description><![CDATA[CVE-2009-0562 (isa_server, office, office_web_components) The Office Web Components ActiveX Control in Microsoft Office XP SP3, Office 2003 SP3, Office XP Web Components SP3, Office 2003 Web Components SP3, Office 2003 Web Components SP1 for the 2007 Microsoft Office System, Internet Security and Acceleration (ISA) Server 2004 SP3 and 2006 SP1, and Office Small Business Accounting [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0562">CVE-2009-0562 (isa_server, office, office_web_components)</a></h1>
<p>The Office Web Components ActiveX Control in Microsoft Office XP SP3, Office 2003 SP3, Office XP Web Components SP3, Office 2003 Web Components SP3, Office 2003 Web Components SP1 for the 2007 Microsoft Office System, Internet Security and Acceleration (ISA) Server 2004 SP3 and 2006 SP1, and Office Small Business Accounting 2006 does not properly allocate memory, which allows remote attackers to execute arbitrary code via unspecified vectors that trigger &#8220;system state&#8221; corruption, aka &#8220;Office&#8230;
<p>URL: <a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0562">http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-0562</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/0562-isa_server-office-office_web_components/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>computer crime statistics</title>
		<link>http://sechero.com/computer-crime-statistics/</link>
		<comments>http://sechero.com/computer-crime-statistics/#comments</comments>
		<pubDate>Mon, 27 Jul 2009 21:48:29 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20936</guid>
		<description><![CDATA[RE: computer crime statistics &#60;!&#8211; Envelope-to: email@address Delivery-date: Mon, 27 Jul 2009 22:22:29 +0100 Received: from outgoing.securityfocus.com ([205.206.231.27] helo=outgoing3.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1MVXeP-0004ru-8D for email@address; Mon, 27 Jul 2009 22:22:29 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing3.securityfocus.com (Postfix) with QMQP id 7CBE42371F8; Mon, 27 Jul 2009 15:19:13 -0600 (MDT) Mailing-List: [...]]]></description>
			<content:encoded><![CDATA[<h1><a href="http://lists.rootsecure.net/?p=view&amp;l=bugtraq&amp;m=88325">RE: computer crime statistics</a></h1>
<p>&lt;!&#8211;<br />
Envelope-to: email@address<br />
Delivery-date: Mon, 27 Jul 2009 22:22:29 +0100<br />
Received: from <a href="http://outgoing.securityfocus.com" title="http://outgoing.securityfocus.com" target="_blank">outgoing.securityfocus.com</a> ([205.206.231.27] helo=outgoing3.securityfocus.com)<br />
by <a href="http://lt.network5.net" title="http://lt.network5.net" target="_blank">lt.network5.net</a> with esmtp (Exim 4.43)<br />
id 1MVXeP-0004ru-8D<br />
for email@address; Mon, 27 Jul 2009 22:22:29 +0100<br />
Received: from <a href="http://lists2.securityfocus.com" title="http://lists2.securityfocus.com" target="_blank">lists2.securityfocus.com</a> (<a href="http://lists2.securityfocus.com" title="http://lists2.securityfocus.com" target="_blank">lists2.securityfocus.com</a> [205.206.231.20])<br />
by <a href="http://outgoing3.securityfocus.com" title="http://outgoing3.securityfocus.com" target="_blank">outgoing3.securityfocus.com</a> (Postfix) with QMQP<br />
id 7CBE42371F8; Mon, 27 Jul 2009 15:19:13 -0600 (MDT)<br />
Mailing-List: contact &lt;a<br />
  href=&#8221;mailto:bugtraq-help@securityfocus.com&#8221;&gt;bugtraq-help@securityfocus.com</a>; run by ezmlm<br />
Precedence: bulk<br />
List-Id: &amp;lt;bugtraq.list-id.securityfocus.com&amp;gt;<br />
List-Post: &amp;lt;mailto:bugtraq@securityfocus.com&amp;gt;<br />
List-Help: &amp;lt;mailto:bugtraq-help@securityfocus.com&amp;gt;<br />
List-Unsubscribe: &amp;lt;mailto:bugtraq-unsubscribe@securityfocus.com&amp;gt;<br />
List-Subscribe: &amp;lt;mailto:bugtraq-subscribe@securityfocus.com&amp;gt;<br />
Delivered-To: mailing list &lt;a<br />
  href=&#8221;mailto:bugtraq@securityfocus.com&#8221;&gt;bugtraq@securityfocus.com</a><br />
Delivered-To: moderator for &lt;a<br />
  href=&#8221;mailto:bugtraq@securityfocus.com&#8221;&gt;bugtraq@securityfocus.com</a><br />
Received: (qmail 10596 invoked from network); 27 Jul 2009 21:15:21 -0000<br />
Content-class: urn:content-classes:message<br />
MIME-Version: 1.0<br />
Subject: RE: computer crime statistics<br />
X-MimeOLE: Produced By Microsoft Exchange V6.5<br />
Date: Mon, 27 Jul 2009 15:15:13 -0600<br />
Content-Type: multipart/signed;<br />
micalg=SHA1;<br />
protocol=&amp;quot;application/x-pkcs7-signature&amp;quot;;<br />
boundary=&amp;quot;&#8212;-=_NextPart_000_057C_01CA0ECD.09DC2F70&amp;quot;<br />
Message-ID: &amp;lt;631BA9640B7F2246936CD03153E2F92E20F909@Libmail2.ualibrary.ualberta.ca&amp;gt;<br />
In-Reply-To: &amp;lt;001a01ca0dfa$d7dde8b0$8799ba10$@com&amp;gt;<br />
X-MS-Has-Attach: yes<br />
X-MS-TNEF-Correlator:<br />
Thread-Topic: computer crime statistics<br />
Thread-Index: AcoN+oX+xKj011IHRImdAYPfW8fNdQAADRdwAEEC6NA=<br />
References: &amp;lt;001a01ca0dfa$d7dde8b0$8799ba10$@com&amp;gt;<br />
From: &amp;quot;McDonnell, Michael&amp;quot; &amp;lt;michael.mcdonnell@ualberta.ca&amp;gt;<br />
To: &amp;quot;Choon Ming&amp;quot; &amp;lt;choonming2002@gmail.com&amp;gt;,<br />
&amp;lt;bugtraq@securityfocus.com&amp;gt;,<br />
&amp;lt;full-disclosure-bounces@lists.grok.org.uk&amp;gt;<br />
X-IMAPbase: 1176125385 9714<br />
Status: O<br />
X-UID: 9714<br />
Content-Length: 5925<br />
X-Keywords:</p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/computer-crime-statistics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability</title>
		<link>http://sechero.com/microsoft-directx-directshow-length-record-remote-code-execution-vulnerability/</link>
		<comments>http://sechero.com/microsoft-directx-directshow-length-record-remote-code-execution-vulnerability/#comments</comments>
		<pubDate>Thu, 23 Jul 2009 17:48:16 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false">http://sechero.com/?p=20886</guid>
		<description><![CDATA[Vuln: Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability URL: http://www.securityfocus.com/bid/35616]]></description>
			<content:encoded><![CDATA[<h1><a href="http://www.securityfocus.com/bid/35616">Vuln: Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability</a></h1>
<p>Microsoft DirectX DirectShow Length Record Remote Code Execution Vulnerability
<p>URL: <a href="http://www.securityfocus.com/bid/35616">http://www.securityfocus.com/bid/35616</a></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/microsoft-directx-directshow-length-record-remote-code-execution-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability</title>
		<link>http://sechero.com/microsoft-isa-server-radius-otp-authentication-bypass-vulnerability/</link>
		<comments>http://sechero.com/microsoft-isa-server-radius-otp-authentication-bypass-vulnerability/#comments</comments>
		<pubDate>Mon, 20 Jul 2009 00:00:00 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Vuln: Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability URL: http://www.securityfocus.com/bid/35631]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.securityfocus.com/bid/35631">Vuln: Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability</a></h1>
</p>
<p>Microsoft ISA Server Radius OTP Authentication Bypass Vulnerability
<p>URL: <a href="http://www.securityfocus.com/bid/35631">http://www.securityfocus.com/bid/35631</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/microsoft-isa-server-radius-otp-authentication-bypass-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Why Karma Matters</title>
		<link>http://sechero.com/why-karma-matters/</link>
		<comments>http://sechero.com/why-karma-matters/#comments</comments>
		<pubDate>Sun, 31 May 2009 02:05:41 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PHP]]></category>

		<guid isPermaLink="false">http://sechero.com/why-karma-matters/</guid>
		<description><![CDATA[Microsoft Silverlight vs Google Wave: Why Karma Matters Inevitable comparisons are made between the hugely enthusiastic developer response (including from us at Zoho) to Google Wave yesterday with the relatively tepid reponse to Microsoft&#8217;s new search engine Bing. The real interesting contrast to us, as independent software developers, is the way developers responded to Silverlight [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=31537">Microsoft Silverlight vs Google Wave: Why Karma Matters</a></h1>
</p>
<p>Inevitable comparisons are made between the hugely enthusiastic developer response (including from us at Zoho) to Google Wave yesterday with the relatively tepid reponse to Microsoft&#8217;s new search engine Bing. The real interesting contrast to us, as independent software developers, is the way developers responded to Silverlight as opposed to the reaction yesterday to Google Wave. Both Silverlight and Wave are aimed at taking the internet experience to the next level. To be perfectly honest, Silverlight is a great piece of technology. Google Wave, as yet, is not much more than a concept and an announcement. </p>
<p>It is easy to dismiss all this with &#8220;Oh, the press just loves to hype everything Google, and loves to hate Microsoft,&#8221; but that cannot explain why even competitors like us are willing to embrace Google&#8217;s innovations, but stay away from perfectly good innovations from Microsoft, such as Silverlight?
<p>URL: <a href="http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=31537">http://www.hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=31537</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/why-karma-matters/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft DirectShow Remote Code Execution Vulnerability</title>
		<link>http://sechero.com/microsoft-directshow-remote-code-execution-vulnerability/</link>
		<comments>http://sechero.com/microsoft-directshow-remote-code-execution-vulnerability/#comments</comments>
		<pubDate>Fri, 29 May 2009 08:00:00 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Disclosure]]></category>
		<category><![CDATA[Mail]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Virus]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Microsoft DirectShow Remote Code Execution Vulnerability Summary: Fortinet&#8217;s FortiGuard Global Security Research Team investigates a vulnerability in Microsoft DirectX (DirectShow) through a specially crafted QuickTime media file. Impact: Remote Code Execution. Affected Software: DirectX 7.0 on Microsoft Windows 2000 Service Pack 4 DirectX 8.1 on Microsoft Windows 2000 Service Pack 4 DirectX 9.0 on Microsoft [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.fortiguardcenter.com/advisory/FGA-2009-20.html">Microsoft DirectShow Remote Code Execution Vulnerability</a></h1>
</p>
<p><b>Summary:</b></p>
<p>Fortinet&#8217;s FortiGuard Global Security Research Team investigates a vulnerability in Microsoft DirectX (DirectShow) through a specially crafted QuickTime media file.</p>
<p><b>Impact:</b></p>
<p>Remote Code Execution.</p>
<p><b>Affected Software:</b>
<ul>
<li>DirectX 7.0 on Microsoft Windows 2000 Service Pack 4</li>
<li>DirectX 8.1 on Microsoft Windows 2000 Service Pack 4</li>
<li>DirectX 9.0 on Microsoft Windows 2000 Service Pack 4</li>
<li>DirectX 9.0 on Windows XP Service Pack 2 and Windows XP Service Pack 3</li>
<li>DirectX 9.0 on Windows XP Professional x64 Edition Service Pack 2</li>
<li>DirectX 9.0 on Windows Server 2003 Service Pack 2</li>
<li>DirectX 9.0 on Windows Server 2003 x64 Edition Service Pack 2</li>
<li>DirectX 9.0 on Windows Server 2003 with SP2 for Itanium-based Systems</li>
</ul>
<p><b>Solutions:</b>
<ul>
<li>The FortiGuard Global Security Research Team released a signature &#8220;MS.DirectShow.NULL.Byte.Overwrite&#8221;, which covers this specific vulnerability.</li>
</ul>
<p>The FortiGuard Global Security Research Team continues to monitor attacks against this vulnerability.</p>
<p>Fortinet customers who subscribe to Fortinetˇ¦s intrusion prevention (IPS) service should be protected against this remote code execution vulnerability. Fortinetˇ¦s IPS service is one component of FortiGuard Subscription Services, which also offer comprehensive solutions such as antivirus, Web content filtering and antispam capabilities. These services enable protection against threats on both application and network layers. FortiGuard Services are continuously updated by the FortiGuard Global Security Research Team, which enables Fortinet to deliver a combination of multi-layered security intelligence and true zero-day protection from new and emerging threats. These updates are delivered to all FortiGate, FortiMail and FortiClient products. Fortinet strictly follows responsible disclosure guidelines to ensure optimum protection during a threat&#8217;s lifecycle. </p>
<p><b>References:</b>
<ul>
<li>Microsoft Security Advisory: <a href="http://www.microsoft.com/technet/security/advisory/971778.mspx">http://www.microsoft.com/technet/security/advisory/971778.mspx</a></li>
<li>CVE ID: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1537">CVE-2009-1537</a></li>
</ul>
<p>URL: <a href="http://www.fortiguardcenter.com/advisory/FGA-2009-20.html">http://www.fortiguardcenter.com/advisory/FGA-2009-20.html</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/microsoft-directshow-remote-code-execution-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft DirectShow vulnerability, (Thu, May 28th)</title>
		<link>http://sechero.com/microsoft-directshow-vulnerability-thu-may-28th/</link>
		<comments>http://sechero.com/microsoft-directshow-vulnerability-thu-may-28th/#comments</comments>
		<pubDate>Thu, 28 May 2009 22:56:56 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Microsoft DirectShow vulnerability, (Thu, May 28th) Microsoft have recently announced aMicrosoft DirectShow vulnerability via an advisory and multiple blog entries. The advisory indicates that Microsoft are investigating public reports of a vulnerability within the DirectShow element of DirectX &#8211; CVE-2009- 1537 has been allocated to this vulnerability. Microsoft have published quite a detailed set of [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://isc.sans.org/diary.php?storyid=6481&amp;rss">Microsoft DirectShow vulnerability, (Thu, May 28th)</a></h1>
</p>
<p>Microsoft have recently announced aMicrosoft DirectShow vulnerability via an advisory and multiple blog entries.<br /> The advisory indicates that Microsoft are investigating public reports of a vulnerability within the DirectShow element of DirectX &#8211; CVE-2009- 1537 has been allocated to this vulnerability.<br /> Microsoft have published quite a detailed set of actions which provide a temporary workaround for this issue to prevent the download of a crafted QuickTime formated file.<br /> The following information has been posted:<br /> <a href="http://blogs.technet.com/msrc/default.aspx<br" title="http://blogs.technet.com/msrc/default.aspx<br" target="_blank">blogs.technet.com/msrc/default.aspx<br</a> /></p>
<p> <a href="http://www.microsoft.com/technet/security/advisory/971778.mspx<br" title="http://www.microsoft.com/technet/security/advisory/971778.mspx<br" target="_blank">www.microsoft.com/technet/security/advisory/971778.mspx<br</a> /></p>
<p> <a href="http://blogs.technet.com/srd/<br" title="http://blogs.technet.com/srd/<br" target="_blank">blogs.technet.com/srd/<br</a> /> In the advisory Microsoft have indicated that a patch will be produced for this but give no timescales. To reduce the potential risk you should consider the impact of applying the workaround versus the period of nil-protection whilst it&#8217;s MAPP/MSRA partners get definitions out for detection, etc.<br /> SecurityFocus have reported that targeted exploits of this issue have been seen in the wild.
<p>URL: <a href="http://isc.sans.org/diary.php?storyid=6481&amp;rss">http://isc.sans.org/diary.php?storyid=6481&amp;rss</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/microsoft-directshow-vulnerability-thu-may-28th/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Technitium MAC Address Changer v5 R3 (FREEWARE)  Released</title>
		<link>http://sechero.com/technitium-mac-address-changer-v5-r3-freeware-released/</link>
		<comments>http://sechero.com/technitium-mac-address-changer-v5-r3-freeware-released/#comments</comments>
		<pubDate>Thu, 28 May 2009 20:13:52 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Tool Release: Technitium MAC Address Changer v5 R3 (FREEWARE) Released Posted by Shreyas Zare on May 29 Hi, I am happy to announce that Technitium MAC Address Changer v5 R3 has been released. Release 3 adds support for Microsoft Windows Vista/Server 2008 Service Pack 2. Visit tmac.technitium.com for more information and to download the software. [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://seclists.org/pen-test/2009/May/0065.html">Tool Release: Technitium MAC Address Changer v5 R3 (FREEWARE)  Released</a></h1>
</p>
<p>Posted by Shreyas Zare on May 29
</p>
<p>
<p> Hi, <br /> 
<p>I am happy to announce that Technitium MAC Address Changer v5 R3 has <br /> been released. Release 3 adds support for Microsoft Windows <br /> Vista/Server 2008 Service Pack 2. Visit <a href="http://tmac.technitium.com" title="http://tmac.technitium.com" target="_blank">tmac.technitium.com</a> for <br /> more information and to download the software. <br /> 
<p>Technitium MAC Address Changer allows you&#8230;
<p>URL: <a href="http://seclists.org/pen-test/2009/May/0065.html">http://seclists.org/pen-test/2009/May/0065.html</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/technitium-mac-address-changer-v5-r3-freeware-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Windows zero-day</title>
		<link>http://sechero.com/new-windows-zero-day/</link>
		<comments>http://sechero.com/new-windows-zero-day/#comments</comments>
		<pubDate>Thu, 28 May 2009 17:48:10 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Arbitrary Code]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Proxy]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[New Windows zero-day Microsoft on Thursday issued a security advisory for a new vulnerability in DirectX, used on Windows to enable graphics and sound, that could enable a remote hacker to execute arbitrary code if users open specially crafted QuickTime files. Microsoft said that it was aware of active attacks using exploit code for the [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://feedproxy.google.com/~r/SCMagazineHome/~3/ia20FTYLVFQ/">New Windows zero-day</a></h1>
</p>
<p>Microsoft on Thursday issued a security advisory for a new vulnerability in DirectX, used on Windows to enable graphics and sound, that could enable a remote hacker to execute arbitrary code if users open specially crafted QuickTime files. Microsoft said that it was aware of active attacks using exploit code for the vulnerability. Windows 2000 (SP4), Windows XP, and Windows Server 2003 are vulnerable; all versions of Windows Vista and Windows Server 2008 are not. ˇX CAM
<p><a href="http://feedads.g.doubleclick.net/~a/vyyUj_hTJjeLEjQXdXJmgAODsB0/0/da"><img border="0" src="http://feedads.g.doubleclick.net/~a/vyyUj_hTJjeLEjQXdXJmgAODsB0/0/di" /></a><br /> <a href="http://feedads.g.doubleclick.net/~a/vyyUj_hTJjeLEjQXdXJmgAODsB0/1/da"><img border="0" src="http://feedads.g.doubleclick.net/~a/vyyUj_hTJjeLEjQXdXJmgAODsB0/1/di" /></a></p>
<p><img height="1" src="http://feeds2.feedburner.com/~r/SCMagazineHome/~4/ia20FTYLVFQ" width="1" />
<p>URL: <a href="http://feedproxy.google.com/~r/SCMagazineHome/~3/ia20FTYLVFQ/">http://feedproxy.google.com/~r/SCMagazineHome/~3/ia20FTYLVFQ/</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/new-windows-zero-day/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution &#8211; 5/28/2009</title>
		<link>http://sechero.com/vulnerability-in-microsoft-directshow-could-allow-remote-code-execution-5282009/</link>
		<comments>http://sechero.com/vulnerability-in-microsoft-directshow-could-allow-remote-code-execution-5282009/#comments</comments>
		<pubDate>Thu, 28 May 2009 07:00:00 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Microsoft Security Advisory (971778): Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution &#8211; 5/28/2009 Revision Note: Advisory published. Advisory Summary:Microsoft is investigating new public reports of a new vulnerability in Microsoft DirectX. The vulnerability could allow remote code execution if user opened a specially crafted Quicktime media file. Microsoft is aware of limited, active [...]]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.microsoft.com/technet/security/advisory/971778.mspx">Microsoft Security Advisory (971778): Vulnerability in Microsoft DirectShow Could Allow Remote Code Execution  &#8211; 5/28/2009</a></h1>
</p>
<p>Revision Note: Advisory published. Advisory Summary:Microsoft is investigating new public reports of a new vulnerability in Microsoft DirectX. The vulnerability could allow remote code execution if user opened a specially crafted Quicktime media file. Microsoft is aware of limited, active attacks that use this exploit code. While our investigation is ongoing, our investigation so far has shown that Windows 2000 Service Pack 4, Windows XP, and Windows Server 2003 are vulnerable; all versions of Windows Vista and Windows Server 2008 are not vulnerable.  Microsoft has activated its Software Security Incident Response Process (SSIRP) and is continuing to investigate this issue.
<p>URL: <a href="http://www.microsoft.com/technet/security/advisory/971778.mspx">http://www.microsoft.com/technet/security/advisory/971778.mspx</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/vulnerability-in-microsoft-directshow-could-allow-remote-code-execution-5282009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft DirectX DirectShow QuickTime Video Remote Code Execution Vulnerability</title>
		<link>http://sechero.com/microsoft-directx-directshow-quicktime-video-remote-code-execution-vulnerability/</link>
		<comments>http://sechero.com/microsoft-directx-directshow-quicktime-video-remote-code-execution-vulnerability/#comments</comments>
		<pubDate>Thu, 28 May 2009 00:00:00 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Vulnerability]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Vuln: Microsoft DirectX DirectShow QuickTime Video Remote Code Execution Vulnerability Microsoft DirectX DirectShow QuickTime Video Remote Code Execution Vulnerability URL: http://www.securityfocus.com/bid/35139]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.securityfocus.com/bid/35139">Vuln: Microsoft DirectX DirectShow QuickTime Video Remote Code Execution  Vulnerability</a></h1>
</p>
<p>Microsoft DirectX DirectShow QuickTime Video Remote Code Execution  Vulnerability
<p>URL: <a href="http://www.securityfocus.com/bid/35139">http://www.securityfocus.com/bid/35139</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/microsoft-directx-directshow-quicktime-video-remote-code-execution-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Understanding Microsoft&#8217;s KB971492 IIS WebDAV Vuln</title>
		<link>http://sechero.com/understanding-microsofts-kb971492-iis-webdav-vuln-2/</link>
		<comments>http://sechero.com/understanding-microsofts-kb971492-iis-webdav-vuln-2/#comments</comments>
		<pubDate>Wed, 27 May 2009 22:45:05 +0000</pubDate>
		<dc:creator>invalid string</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bugtraq]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false"></guid>
		<description><![CDATA[Bugtraq: New paper: Understanding Microsoft&#8217;s KB971492 IIS WebDAV Vuln New paper: Understanding Microsoft&#8217;s KB971492 IIS WebDAV Vuln URL: http://www.securityfocus.com/archive/1/503857]]></description>
			<content:encoded><![CDATA[</p>
<p>
<h1><a href="http://www.securityfocus.com/archive/1/503857">Bugtraq: New paper: Understanding Microsoft&#8217;s KB971492 IIS WebDAV Vuln</a></h1>
</p>
<p>New paper: Understanding Microsoft&#8217;s KB971492 IIS WebDAV Vuln
<p>URL: <a href="http://www.securityfocus.com/archive/1/503857">http://www.securityfocus.com/archive/1/503857</a></p>
</p></p>
]]></content:encoded>
			<wfw:commentRss>http://sechero.com/understanding-microsofts-kb971492-iis-webdav-vuln-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

