Tag: microsoft

  • MS to release out-of-band patch for critical IE vulnerability

    Users advised to patch ASAP. Microsoft is set to release an emergency out-of-band patch for the vulnerability in its Internet Explorer browser reported last week. Attacks via the vulnerability have been shown to work on a wide range of Windows and IE variants, and have been widely seeded to both malicious websites and legitimate sites…

  • IE zero-day danger growing

    Large numbers of users vulnerable to unpatched problem. The as-yet unpatched vulnerability in Microsoft ‘s Internet Explorer browser, reported last week and coinciding with the release of the monthly ‘Patch Tuesday’ security updates, is becoming more serious by the day as more and more infected websites appear to be attempting to exploit the flaw to…

  • Patch Tuesday released closely followed by emergency update

    Bumper crop of patches plus further fix leave known holes open. This month’s ‘Patch Tuesday’ security bulletin from Microsoft contained eight separate updates, two more than previously announced, covering a total of 28 vulnerabilities. Six of the updates were labelled ‘critical’, although some sources rate all equally high and find the flaws covered susceptible to…

  • FTC goes after scareware scammers

    Courts crack down on pushers of rogue anti-malware. The US Federal Trade Commission (FTC) has announced a successful move to persuade a US district court to shut down a major player in the rogue anti-spyware business. The company behind the notorious WinFixer and XP Antivirus scams has been issued with a temporary restraining order barring…

  • Worm targets MS08-067 vulnerability

    Exploit attack patches flaw once system penetrated. A worm has been seen taking advantage of the vulnerability in Microsoft ‘s Windows Server Service , patched out-of-cycle last month in the MS08-067 announcement. The worm takes advantage of machines yet to be patched by tardy administrators, and once it is installed it proceeds to patch the…

  • Microsoft to replace OneCare with free AV product

    OneCare retirement announced, new product will be lighter on systems and pockets. Microsoft has announced plans to put an end to its home-user security product Live OneCare , and to replace it with a simpler, free anti-malware product aimed at reducing numbers of unprotected Windows PCs. The end date for OneCare sales has been set…

  • Two updates in Microsoft’s November’s patch release

    Just two updates released by Microsoft this month: one rated critical, one important. Microsoft has issued two updates in the November round of its monthly patch release cycle, one of them rated ‘critical’. The critical update addresses vulnerabilities in Microsoft XML Core Services which could be exploited to create a web page that would cause…

  • Microsoft issues emergency patch

    Out-of-cycle update fixes serious, wormable flaw. Microsoft has issued an emergency update to cover a serious vulnerability in the Windows Server service, breaking its usual monthly ‘Patch Tuesday’ cycle of security fixes. The flaw was considered serious enough to merit an urgent patch release, although Microsoft will only confirm having seen the usual ‘limited, targeted’…

  • Four critical updates this Patch Tuesday

    11 updates to be issued by Microsoft in October’s monthly patch release: 4 critical. Microsoft has prepared a total of 11 updates for the October round of its monthly patch release cycle, with four updates being rated ‘critical’. The four critical updates cover vulnerabilities in Active Directory , Internet Explorer , Microsoft HIS ( Host…

  • Four critical updates in Patch Tuesday release

    Monthly security update small but vital. Microsoft has released its monthly ‘Patch Tuesday’ batch of security updates, with only four items on the list but all of them marked ‘critical’. The four updates affect Microsoft Office , Windows Media Player , Media Encoder , and GDI+ , a core component of Windows . All the…