IT Security

IT Security

It Security need to be address by today organizations. This should start from the top down but in most cases IT Security start from the bottom and in most cases never reach the top. The blog on IT Security are to help everyone better... [more]

It Security need to be address by today organizations. This should start from the top down but in most cases IT Security start from the bottom and in most cases never reach the top. The blog on IT Security are to help everyone better understand how knowledge of the subject. The bad guys are working hard to gain access to your network and/or computer, we need to work at keeping them out.

Sorted by: Top Picks
Written by gregorylambert on
The November Patch Tuesday update from Microsoft follows the largest patch and security update in Microsoft’s history. This month there are six updates to Office, Active Directory and Microsoft’s Office application suite. These six updates have a low impact, bar one patch to Excel which may cause compatibility issues for some applications. The main cause for concern here is that Excel is a primary if not essential element to many environments. For example most banking, trading floor and insurance platforms. Therefore any change must be tested rigorously. Whilst there are few applications in our sample that are affected, the ChangeBASE AOK team recommends that ... Read Full Story
Written by bare4t on
Trojan.Backdoor.Agent is a certain backdoor Trojan which you want to keep as far away from your computer as possiable.Trojan.Backdoor.Agent is actually able to open up a backdoor within your computer system which will allow Trojan.Backdoor.Agent to gain direct access to your machine,without your consent or your permission.There are many dangers and risks involved with regard to Trojan.Backdoor.Agent and one of these risks includes a malicious remote attacker being able to have complete control over your computer and everything that you do on it. Trojan.Backdoor.Agent may go by the following names: Trojan.BackdoorAgent Trojan.Backdoor Agent TrojanBackdoorAgent Trojan.Backdoor.Agent may display some of the following symptoms: Processes may ... Read Full Story
Written by eljaholic on
From:   mildtech.net
Microsoft has released six security bulletins today as part of their monthly Tuesday patch day which fix a total of 15 different security vulnerabilities in Microsoft Office and Microsoft Windows . The maximum severity rating for the bulletins contain three critical and three important patches for vulnerabilities that can allow remote code execution and denial of service attacks. Microsoft Windows and Microsoft Office users are encouraged to update their computer systems as soon as possible to protect the PCs from possible exploits that could attack the systems successfully. The usual options to download the patches are provided including automatic updates, Windows updates, Microsoft update ... Read Full Story
Written by ghacks on
Microsoft has released six security bulletins today as part of their monthly Tuesday patch day which fix a total of 15 different security vulnerabilities in Microsoft Office and Microsoft Windows. The maximum severity rating for the bulletins contain three critical and three important patches for vulnerabilities that can allow remote code execution and denial of service attacks. Microsoft Windows and Microsoft Office users are encouraged to update their computer systems as soon as possible to protect the PCs from possible exploits that could attack the systems successfully. The usual options to download the patches are provided including automatic updates, Windows updates, Microsoft update or ... Read Full Story
ActiveX vulnerabilities have posed a security challenge for some time, and they're likely to be a challenge for quite some time to come. Look at examples such as Microsoft's patches this summer, which included a fix for Internet Explorer (MS-09034) and another (MS-09035) for Visual Studio 2005 and 2008. These updates were released to protect users from a security hole in technology employed by developers to create powerful web-based application elements. More specifically, the flaws resided in the Active Template Library (ATL), which is a framework of code that helps to ease the creation of Component Object Models (COM) and ActiveX controls. Microsoft has ... Read Full Story
LinuxSecurity.com: Description ========== * CVE-2009-3384: Multiple security flaws (integer underflow, invalid pointer dereference, buffer underflow and a denial of service) were found in the way WebKit's FTP parser used to process remote FTP directory listings. If a remote FTP server issued a specially-crafted FTP command, it could lead to disclosure of sensitive information, denial of service (application crash) or, potentially to...  
From linuxsecurity.com ()
More perspectives...
An anonymous reader writes "Researchers have found several security holes in popular Firefox extensions that have an estimated total of 30 million downloads from AMO (the Addons Mozilla community site). Three 0-days were also released. Mozilla doesn't have a security model for extensions and Firefox fully trusts the code of the extensions. There are no security boundaries between extensions and, to make things even worse, an extension can...  
From rss.slashdot.org ()
Related news:
More perspectives...
Phil Muncaster, V3.co.uk, Thursday 19 November 2009 at 17:37:00 Users tricked into divulging banking details Security experts warned today that the Verified by Visa online authentication scheme has become the latest lure used by phishers hoping to harvest personal information from unsuspecting shoppers....  
From vnunet.com ()
More perspectives...
CentOS has updated libvorbis (C5: arbitrary code execution), wget (C5: certificate spoofing), and httpd (C5: multiple vulnerabilities). Fedora has updated qt (F10, F11, F12: multiple vulnerabilities), java-1.6.0-openjdk (F10, F11, F12: multiple vulnerabilities), and asterisk (F11: access control violation). Mandriva has updated xine-lib (Corporate 3.0, 2009.0: multiple vulnerabilities), FFmpeg (multiple vulnerabilities), apache-conf...  
From lwn.net ()
Related news:
More perspectives...
Jack Spine writes "VeriSign has said that the main obstacle to DNSSEC implementation has been technical delays. The large size of the .com and .net domains would have made it impractical to deploy earlier versions of DNSSEC, according to VeriSign vice president of naming services Pat Kane. Deployment of DNSSEC will close a major security flaw in the DNS, the internet's equivalent to a telephone directory. The problem of DNS cache poisoning was...  
From rss.slashdot.org ()
Related news:
More perspectives...
Badly configured cable modems cause headaches for security experts.Security experts say that misconfigured DSL and cable modems are worsening a well-known DNS problem making it easier for hackers to launch distributed denial-of-service (DDoS) attacks against their victims.  
From techworld.com ()
Related news:
More perspectives...
Microsoft released six security bulletins addressing a total of 15 vulnerabilities. Four affect Windows and Windows Server and two affect Microsoft Office products (Excel and Word). Only one of the three vulnerabilities (CVE-2009-2514) is critical. That vulnerability only affects Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 (it does not affect Windows Vista or Windows Server 2008 so if you are using either of these...  
From feedburner.com ()
More perspectives...
Sponsors
Sorted by: Top Rated
Click to play video
Sorted by: Top Rated

Picture

Picture

Linked from: vt.edu

Sorted by: Top Rated
  1
More From Zimbio
Copyright © 2009 - Zimbio, Inc. Some rights reserved.