Security Hero Rotating Header Image

Posts Tagged ‘Microsoft’

Understanding Microsoft’s KB971492 IIS WebDAV Vuln

New paper: Understanding Microsoft’s KB971492 IIS WebDAV Vuln <!– Envelope-to: email@address Delivery-date: Wed, 27 May 2009 22:28:52 +0100 Received: from outgoing.securityfocus.com ([205.206.231.27] helo=outgoing3.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1M9Qg8-0000My-E2 for email@address; Wed, 27 May 2009 22:28:52 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing3.securityfocus.com (Postfix) with QMQP id E968C236F94; Wed, 27 May 2009 [...]

Microsoft Removes Windows 7′s “Crippleware” 3 App Limit

Microsoft Removes Windows 7′s “Crippleware” 3 App Limit A reversal seemed highly likely from the moment Microsoft announced a 3 application limit in the Windows 7 Starter Edition OS planned for netbooks. You could practically hear the industry utter a collective boo even before the electronic ink was dry on that Microsoft decision. Credit Paul [...]

Microsoft releases Vista SP2 to the public

Microsoft releases Vista SP2 to the public The latest service packs (SP2) for Windows Vista and Windows Server 2008 have been released to manufacturing and are now publically available as standalone installers. URL: http://feedproxy.google.com/~r/SCMagazineHome/~3/S5lWQq0qNa4/

Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs

PAPER: Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs <!– Envelope-to: email@address Delivery-date: Mon, 25 May 2009 21:27:50 +0100 Received: from outgoing.securityfocus.com ([205.206.231.27] helo=outgoing3.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1M8gly-0007Hw-9E for email@address; Mon, 25 May 2009 21:27:50 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing3.securityfocus.com (Postfix) with QMQP id DBED2236FD1; Mon, 25 May [...]

Microsoft cuts Windows Live Messenger access for users in five countries

Microsoft cuts Windows Live Messenger access for users in five countries Microsoft is confirming that it is cutting off Windows Live Messenger service for users in five countries that are :subject to United States sanctions.; As reported first by LiveSide.net earlier this week, :users in Cuba, Syria, Iran, Sudan and North Korea can no longer [...]

Microsoft Fined $200M USD for Violating Open Source Patent

Microsoft Fined $200M USD for Violating Open Source Patent In its early days Microsoft, oft ignored the open source movement, instead pushing for proprietary standards. However, more recently the company has made a practice of embracing open standards and then “extending” them in ways that tend to tie them to the Windows operating system, according [...]

Microsoft sets July kill date for Office 2000

Microsoft sets July kill date for Office 2000 Microsoft yesterday reminded Office 2000 users that it will discontinue security updates for the aged suite in less than two months as it drops all support for the software. At the same time, the company also reminded users that it’s dumping the Office Update site at the [...]

Google Accelerates Chrome 2 For Windows

Google Accelerates Chrome 2 For Windows Google’s Chrome browser got faster Thursday with the release of Chrome 2.0.172.28. No, that’s not an IP address. While Microsoft prefers to hide incremental update designations in Internet Explorer to confound hackers, Google wants everyone to know that its engineers are upgrading everything as fast as they can. At [...]

Attackers exploit IIS hole to breach university server

Attackers exploit IIS hole to breach university server It didn’t take long for hackers to take advantage of a zero-day hole in Microsoft Internet Information Services (IIS). Ball State University in Muncie, Ind., told The Register that servers running the program were breached on Monday, the same day Microsoft warned the public about the vulnerability. [...]

Adobe to release security updates a la Patch Tuesday

Adobe to release security updates a la Patch Tuesday Adobe said on Wednesday it will release quarterly security updates to coincide with Microsoft’s Patch Tuesday as part of a new approach to product security for Adobe Reader and Acrobat. The security updates will be delivered on a second Tuesday once a quarter, beginning this summer, [...]

CiscoWorks TFTP Directory Traversal Vulnerability, (Wed, May 20th)

CiscoWorks TFTP Directory Traversal Vulnerability, (Wed, May 20th) Cisco has announced that a directory traversal flaw has been discovered in its CiscoWorks product line. According to the announcement: Products that have TFTP services enabled and that run CiscoWorks Common Services versions 3.0.x, 3.1.x, and 3.2.x are vulnerable. Only CiscoWorks Common Services systems running on Microsoft [...]

Where is Vista SP2?

Where is Vista SP2? Even though Microsoft seems increasingly reticent to say the :V; word (Vista), some users still do care. I・ve had several readers ask me when the Redmondians are going to release Vista SP2 on the Microsoft Download site. The answer, from Microsoft, is no answer (beyond the already-stated :some time in the [...]

Just skip Windows Vista

Gartner: Just skip Windows Vista Gartner analysts Michael Silver and Stephen Kleynhans have released an advisory recommending that businesses skip Vista in favor of Windows 7. Windows 7 is currently on schedule and is expected to hit the market as a finished product just before this year’s holiday season. Their recommendation includes organizations that have [...]

Microsoft takes Security Development Lifecycle to all developers

Microsoft takes Security Development Lifecycle to all developers Microsoft will launch new additions to its Security Development Lifecycle (SDL) programme today, designed to enable all software developers to integrate the SDL more tightly into the development process, and ultimately create a more secure software ecosystem. A free Visual Studio process template has been made available [...]

OS X CFNetwork advisory

n.runs-SA-2009.001 – OS X CFNetwork advisory <!– Envelope-to: email@address Delivery-date: Tue, 19 May 2009 23:37:42 +0100 Received: from outgoing.securityfocus.com ([205.206.231.27] helo=outgoing3.securityfocus.com) by lt.network5.net with esmtp (Exim 4.43) id 1M6XwM-00038v-6z for email@address; Tue, 19 May 2009 23:37:42 +0100 Received: from lists2.securityfocus.com (lists2.securityfocus.com [205.206.231.20]) by outgoing3.securityfocus.com (Postfix) with QMQP id A824B23725A; Tue, 19 May 2009 12:05:47 -0600 [...]

Bad Behavior has blocked 162 access attempts in the last 7 days.