Security


IFrames Resurface as Popular Attack Vector for Hackers

Security experts warn of rise in "poisoning" of thousands of Web pages via iFrame exploit.

Windows XP SP3 RC2 Refresh: The Pause That Refreshes

Want Windows XP SP3 for real? You can't have it now, but there is a beta Refresh to play with in the mean time.

April Release for Windows XP SP3 RTM?

Windows XP service pack 3 will have its release-to-manufacturing debut in April of this year, according to the Tech ARP Web site.

NIST Unveils Tool To Foil DNS Attacks

Network researchers at the National Institute of Standards and Technology (NIST) have unveiled a method that federal systems administrators can use to protect their systems from increasingly complex attacks launched via the Domain Name System (DNS) of the Internet and private IP networks.

Microsoft May Release Out-of-Cycle Patch for Word Flaw

Microsoft confirmed "very limited, targeted" attacks on an open Word security flaw. The company is researching a patch.

Rootkit Security Vendor Snapped Up by Microsoft

Microsoft is on a buying spree, and its latest acquisition is rootkit security vendor Komoku.

Microsoft Reissues Security Patch for Excel 2003

A calculation-error bug in Microsoft Office Excel 2003, which was acknowledged by Microsoft last Friday, has been resolved with a security update.

Grocery Chain Data Breach Extends Security Debate

A data security breach within Massachusetts grocery chain Hannaford Bros. on Monday not only led to 1,800 known cases of fraud but is also serving as debate fodder in the ongoing argument about data ownership and Payment Card Industry (PCI) compliance.

Vista SP1 Goes Live

Microsoft announced the availability of Windows Vista SP1 via Windows Update. The company has also posted the upgrade to its download site.

VMware Fixes Vulnerabilities

VMware has issued patches that will eliminate the vulnerabilities found last month, according to an announcement the company posted on some security news mailing lists today.

Vista SP1, Windows XP SP3 May Arrive This Week

According to numerous reports on the Web, Vista Service Pack 1 (SP1) and Windows XP SP3 may both be released this week, possibly as soon as Tuesday.

NSA Teams Up with Sun on OpenSolaris Security

Sun Microsystems and the National Security Agency (NSA) announced last week that they are working together to develop new security tools for the OpenSolaris operating system.

Excel Patch Causing Calculation Errors

Microsoft admitted on Friday that a patch it released last week is causing Excel 2003 to make some incorrect calculations.

Security Experts Weigh In on Excel Bug

IT pros looking at solutions to the Microsoft Excel bug that popped up as part of last week's patch release said Monday that the cell calculation snafu plaguing Excel 2003 isn't so much a security issue as it is a pain in the neck for programmers and Windows application developers.

Windows Home Server Data Corruption Fix Coming in June

A Windows Home Server bug that's corrupting some users' data won't be fixed until June, Microsoft announced this week.

Patch Tuesday Fixes Critical Excel, Outlook, Web Component and Office Flaws

Microsoft rolled out four "critical" security bulletins -- all with as many as 12 remote code execution (RCE) vulnerabilities, according to security experts.

Microsoft To Release 4 Critical Office Patches Tuesday

Microsoft announced that it will be releasing four patches, all rated critical because they allow remote-code execution, and all involving Microsoft Office in some way.

Apple To Add Exchange Support to iPhones

Is Apple acknowledging the power and ubiquity of Microsoft's messaging platform? That might be a stretch, but the company has announced a forthcoming update to its iPhone 2.0 software that will include built-in support for Microsoft's Exchange ActiveSync.

Google-Hacking Made Easy

With a name like "Cult of the Dead Cow" you know these guys are probably up to no good, and they are living up to expectations with the release of Goolag Scan, a tool to automate the use of search engines to scan for vulnerable applications, back doors and sensitive information on Web sites.

Trustworthy Computing: Examining Trust

Microsoft's Trustworthy Academic Advisory Board has been keeping tabs on security issues -- external as well as internal -- that continue to challenge Microsoft's developers. Here's a peek into the board, which marks five years on watch.

Subscribe on YouTube