Security

Brief: Firms fail to secure mobile, cloud data

Security Focus - Fri, 11/20/2009 - 12:00am
Firms fail to secure mobile, cloud data
Categories: Security News

Infocus: WiMax: Just Another Security Challenge?

Security Focus - Wed, 11/18/2009 - 1:05am
WiMax: Just Another Security Challenge?
Categories: Security News

Brief: No cyberwar yet, but soon, says firm

Security Focus - Tue, 11/17/2009 - 12:00am
No cyberwar yet, but soon, says firm

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Categories: Security News

Brief: Survey: Majority of Web sites vulnerable

Security Focus - Mon, 11/16/2009 - 12:00am
Survey: Majority of Web sites vulnerable
Categories: Security News

News: Researcher busts into Twitter via SSL reneg hole

Security Focus - Mon, 11/16/2009 - 12:00am
Researcher busts into Twitter via SSL reneg hole

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Categories: Security News

Infocus: Enterprise Intrusion Analysis, Part One

Security Focus - Thu, 11/12/2009 - 1:05am
Enterprise Intrusion Analysis, Part One
Categories: Security News

Brief: Microsoft fixes kernel, Office flaws

Security Focus - Wed, 11/11/2009 - 12:00am
Microsoft fixes kernel, Office flaws
Categories: Security News

News: Security firm chokes sprawling spam botnet

Security Focus - Wed, 11/11/2009 - 12:00am
Security firm chokes sprawling spam botnet
Categories: Security News

MS09-068 - Important: Vulnerability in Microsoft Office Word Could Allow Remote Code Execution (976307)

Microsoft Security - Tue, 11/10/2009 - 3:00am
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability that could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Categories: Security News

MS09-067 - Important: Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (972652)

Microsoft Security - Tue, 11/10/2009 - 3:00am
Bulletin Severity Rating:Important - This security update resolves several privately reported vulnerabilities in Microsoft Office Excel. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file. An attacker who successfully exploited any of these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Categories: Security News

MS09-066 - Important: Vulnerability in Active Directory Could Allow Denial of Service (973309)

Microsoft Security - Tue, 11/10/2009 - 3:00am
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Active Directory directory service, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS). The vulnerability could allow denial of service if stack space was exhausted during execution of certain types of LDAP or LDAPS requests. This vulnerability only affects domain controllers and systems configured to run ADAM or AD LDS.
Categories: Security News

MS09-065 - Critical: Vulnerabilities in Windows Kernel-Mode Drivers Could Allow Remote Code Execution (969947)

Microsoft Security - Tue, 11/10/2009 - 3:00am
Bulletin Severity Rating:Critical - This security update resolves several privately reported vulnerabilities in the Windows kernel. The most severe of the vulnerabilities could allow remote code execution if a user viewed content rendered in a specially crafted Embedded OpenType (EOT) font. In a Web-based attack scenario, an attacker would have to host a Web site that contains specially crafted embedded fonts that are used to attempt to exploit this vulnerability. In addition, compromised Web sites and Web sites that accept or host user-provided content could contain specially crafted content that could exploit this vulnerability. An attacker would have no way to force users to visit a specially crafted Web site. Instead, an attacker would have to convince the user to visit the Web site, typically by getting them to click a link in an e-mail message or Instant Messenger message that takes the user to the attacker's site.
Categories: Security News

MS09-064 - Critical: Vulnerability in License Logging Server Could Allow Remote Code Execution (974783)

Microsoft Security - Tue, 11/10/2009 - 3:00am
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Microsoft Windows 2000. The vulnerability could allow remote code execution if an attacker sent a specially crafted network message to a computer running the License Logging Server. An attacker who successfully exploited this vulnerability could take complete control of the system. Firewall best practices and standard default firewall configurations can help protect networks from attacks that originate outside the enterprise perimeter.
Categories: Security News

MS09-063 - Critical: Vulnerability in Web Services on Devices API Could Allow Remote Code Execution (973565)

Microsoft Security - Tue, 11/10/2009 - 3:00am
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in the Web Services on Devices Application Programming Interface (WSDAPI) on the Windows operating system. The vulnerability could allow remote code execution if an affected Windows system receives a specially crafted packet. Only attackers on the local subnet would be able to exploit this vulnerability. This security update is rated Critical for all supported editions of Windows Vista and Windows Server 2008. For more information, see the subsection, Affected and Non-Affected Software, in this section.
Categories: Security News

Brief: Point-and-click forensics tool leaks to Net

Security Focus - Mon, 11/09/2009 - 12:00am
Point-and-click forensics tool leaks to Net
Categories: Security News

Brief: iPhone worm spreads via default password

Security Focus - Mon, 11/09/2009 - 12:00am
iPhone worm spreads via default password
Categories: Security News

Adam O'Donnell: The Scale of Security

Security Focus - Fri, 11/06/2009 - 9:05am
The Scale of Security
Categories: Security News

Infocus: Responding to a Brute Force SSH Attack

Security Focus - Thu, 11/05/2009 - 12:05am
Responding to a Brute Force SSH Attack
Categories: Security News

Brief: Gov't warns firms about online robberies

Security Focus - Thu, 11/05/2009 - 12:00am
Gov't warns firms about online robberies
Categories: Security News

Brief: Vulnerability sales help secure Microsoft

Security Focus - Thu, 10/29/2009 - 11:00pm
Vulnerability sales help secure Microsoft
Categories: Security News
Syndicate content