Security


Testing Begins for Vista SP2 Release Candidate, Reports Say

Microsoft has advanced to the next testing phase by issuing Release Candidate "Escrow"-build versions of Service Pack 2.

Monster.com Gets Hacked Again, Data Stolen

For the second time in as many weeks, after a breach at Heartland Payment Systems, a company storing a large volume of personal data has been hit by a major theft.

Windows 7 Beta Availability Extended to Feb. 9

Microsoft has extended the general public availability of its Windows 7 Beta yet again, with a new final date of Feb. 9 to get it.

Security Change From the Top

MSRC gets new leader, while old leader moves up; IE8 stems clickjacking; Conficker continues to confound; payment cards -- now, more vulnerable.

Microsoft Security Director Steps Down

Redmond's security team is undergoing a revamp with the announcement that Andrew Cushman, director of Microsoft's Security Response Center, will be stepping down to be replaced by group manager Mike Reavey.

Microsoft Battles Worm, Rebuts CERT Claim

Microsoft is still trying to control the Conficker worm, both the bug itself and news about how it's handling it.

Data Theft Hits the Heartland

A malicious keystroke logging exploit hit Heartland Payment Systems in what many are already calling the biggest data theft ever, with nearly 100 million records siphoned from the large payment-processing company.

Spammers To Target Job-Hunting, Networking Sites in 2009

A new report from security consultancy AppRiver confirms what many of us have long expected: Spammers are becoming both savvier and sneakier.

Conficker Worm Still Wreaking Havoc on Windows Systems

Users of Windows Server service that haven't patched a previously disclosed worm hole (MS08-067) are taking a big risk.

January's Patch Addresses Bug in Server Message Block

As expected, it's a one-patch Tuesday, with a single item deemed "critical" in Microsoft's first security update for the year.

The Good, The Bad, The Ugly

Oracle fixes piled onto Microsoft fixes; October out-of-band patch still makes admins twitch; common programming errors resulting in security lapses.

One Fix Expected for Patch Tuesday

Microsoft's first security update rollout of 2009 may be a quiet one, according to an advance notification released Thursday.

Security Researchers Find Hole in Intel's vPro

A pair of researchers are claiming to have sussed out how to circumnavigate the security protections in Intel's vPro remote management technology.

Enterprise Data Breaches on the Rise, Report Finds

If last year was any indication, enterprise IT security pros will be busy in 2009.

Microsoft, Mozilla, Verisign Team Up on E-Commerce Security Flaw

Plus: Windows Media Player RCE flaw not serious, says Redmond; Twitter phishing; more.

You Can't Always Trust SSL

Don't be fooled by that lock icon in your browser. Outgoing SSL traffic can still give you something to worry about.

Copy Protection: Aaarrrrrgh

When it comes to licensing, some companies might make it seem like everyone's a pirate -- including you.

SQL Injection Hits Amid the Holidays

Redmond continues to investigate a new zero-day bug affecting popular database application SQL Server.

Enterprises Ill Served by Antivirus Alerts, Study Finds

How do you know that your antivirus (AV) program is working?

Off-Cycle Internet Explorer Security Update Released

As expected, Microsoft released its second out-of-cycle patch in three months -- this time to plug a widely discussed and "critical" vulnerability in Internet Explorer.

Subscribe on YouTube