-
Security Update for SQL Server 2008 R2 Service Pack 2 (KB2977320)
A security issue has been identified in the SQL Server 2008 R2 SP2 that could allow an attacker to compromise your system and gain control over it. Link Removed- News
- Thread
- attack compromise control database security service pack sql server update vulnerability
- Replies: 0
- Forum: Live RSS Feeds
-
Security Update for SQL Server 2008 R2 Service Pack 2 (KB2977319)
A security issue has been identified in the SQL Server 2008 R2 SP2 that could allow an attacker to compromise your system and gain control over it. Link Removed- News
- Thread
- 2008 r2 attack compromise security service pack sql server system control update
- Replies: 0
- Forum: Live RSS Feeds
-
MS14-046 - Important: Vulnerability in .NET Framework Could Allow Security Feature Bypass...
Severity Rating: Important Revision Note: V1.0 (August 12, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft .NET Framework. The vulnerability could allow security feature bypass if a user visits a specially crafted website. In a...- News
- Thread
- aslr attack bypass framework microsoft remote code execution security update vulnerability web browsing
- Replies: 0
- Forum: Security Alerts
-
MS14-051 - Critical: Cumulative Security Update for Internet Explorer (2976627) - Version: 1.0
Severity Rating: Critical Revision Note: V1.0 (August 12, 2014): Bulletin published. Summary: This security update resolves one publicly disclosed and twenty-five privately reported vulnerabilities in Internet Explorer. The most severe of these vulnerabilities could allow remote code execution...- News
- Thread
- attack critical update cumulative update internet explorer microsoft remote code execution security update user rights vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
MS14-050 - Important: Vulnerability in Microsoft SharePoint Server Could Allow Elevation of...
Severity Rating: Important Revision Note: V1.0 (August 12, 2014): Bulletin published. Summary: This security update resolves one privately reported vulnerability in Microsoft SharePoint Server. An authenticated attacker who successfully exploited this vulnerability could use a specially crafted...- News
- Thread
- attack authenticated exploitation javascript microsoft security sharepoint update vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS14-044 - Important: Vulnerabilities in SQL Server Could Allow Elevation of Privilege...
Severity Rating: Important Revision Note: V1.0 (August 12, 2014): Bulletin published. Summary: This security update resolves two privately reported vulnerabilities in Microsoft SQL Server (one in SQL Server Master Data Services and the other in the SQL Server relational database management...- News
- Thread
- attack bulletin client-side crafted websites data services database email security internet explorer malware management microsoft phishing privilege escalation revision note security sql server update user actions vulnerabilities web security
- Replies: 0
- Forum: Security Alerts
-
TA14-017A: UDP-based Amplification Attacks
Original release date: January 17, 2014 | Last revised: March 07, 2014 Systems Affected Certain UDP protocols have been identified as potential attack vectors: DNS NTP SNMPv2 NetBIOS SSDP CharGEN QOTD BitTorrent Kad Quake Network Protocol Steam Protocol Overview A Distributed Reflective...- News
- Thread
- amplification attack bandwidth ddos detection dns drdos filters impact mitigation network ntp protocol security services solutions spoofing traffic trust udp
- Replies: 0
- Forum: Security Alerts
-
TA14-013A: NTP Amplification Attacks Using CVE-2013-5211
Original release date: January 13, 2014 | Last revised: February 05, 2014 Systems Affected NTP servers Overview A Network Time Protocol (NTP) Amplification attack is an emerging form of Distributed Denial of Service (DDoS) that relies on the use of publically accessible NTP servers to...- News
- Thread
- amplification attack configuration cve-2013-5211 ddos exploitation linux monitoring network ntp recommendations response restrict security server system udp unix upgrade vulnerability
- Replies: 0
- Forum: Security Alerts
-
Security Advisory 2982792 released, Certificate Trust List updated
Today, we are updating the Certificate Trust List (CTL) for all supported releases of Microsoft Windows to remove the trust of mis-issued third-party digital certificates. These certificates could be used to spoof content and perform phishing or man-in-the-middle attacks against web properties...- News
- Thread
- advisory attack certificate digital certificates mitigation phishing security ssl certificates trust update windows server
- Replies: 0
- Forum: Security Alerts
-
MS14-038 - Critical: Vulnerability in Windows Journal Could Allow Remote Code Execution...
Severity Rating: Critical Revision Note: V1.0 (July 8, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a specially crafted Journal file. An attacker...- News
- Thread
- attack critical journal microsoft patch remote code execution security update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
AVAST forum offline due to attack
I'll give you the whole post; what this incident underlines, in my opinion, is the importance of having individual usernames in each Forum you attend, and creating passwords that are NOT names of family members or pets or such - individual passwords, too. I use Random Password Generator by...- Pauli
- Thread
- attack avast community data breach encryption forum hacked inconvenience iobit offline password random password rebuild safety security sensitive data software support usernames
- Replies: 12
- Forum: Windows Security
-
Vulnerabilities in Gadgets Could Allow Remote Code Execution - Version: 1.1
Severity Rating: Revision Note: V1.1 (July 3, 2013): Clarified that disabling Windows Sidebar and Gadgets can help protect customers from potential attacks that leverage Gadgets to execute arbitrary code. This is an informational change only. Summary: Microsoft is announcing the availability of...- News
- Thread
- attack fix gadgets microsoft remote code execution security vulnerabilities windows 7 windows vista
- Replies: 0
- Forum: Security Alerts
-
Wireless PEAP-MS-CHAPv2 Authentication Could Allow Information Disclosure - Version: 1.0
Severity Rating: Revision Note: V1.0 (August 4, 2013): Advisory published. Summary: Microsoft is aware of a public report that describes a known weakness in the Wi-Fi authentication protocol known as PEAP-MS-CHAPv2 (Protected Extensible Authentication Protocol with Microsoft Challenge Handshake...- News
- Thread
- attack authentication information disclosure microsoft peap-ms-chapv2 security advisory vulnerability windows phone wireless wpa2
- Replies: 0
- Forum: Security Alerts
-
Extended Protection for Authentication - Version: 1.14
Severity Rating: Revision Note: V1.14 (January 8, 2013): Updated the FAQ and Suggested Actions with information about attacks against NTLMv1 (NT LAN Manager version 1) and LAN Manager (LM) network authentication. Microsoft Fix it solutions for Windows XP and Windows Server 2003 are available to...- News
- Thread
- attack authentication credentials extended protection faq fix iwa lan manager microsoft microsoft solutions network ntlm protection security suggested actions update v2 settings version 1.14 windows server windows xp
- Replies: 0
- Forum: Security Alerts
-
Fraudulent Digital Certificates Could Allow Spoofing - Version: 1.1
Severity Rating: Revision Note: V1.1 (January 14, 2013): Corrected the disallowed certificate list effective date to "Monday, December 31, 2012 (or later)" in the FAQ entry, "After applying the update, how can I verify the certificates in the Microsoft Untrusted Certificates Store?" Summary...- News
- Thread
- attack digital certificates fraud microsoft phishing root certification security spoofing untrusted store update
- Replies: 0
- Forum: Security Alerts
-
Update For Minimum Certificate Key Length - Version: 2.0
Severity Rating: Revision Note: V2.0 (October 9, 2012): Revised advisory to rerelease the KB2661254 update for Windows XP and to announce that the KB2661254 update for all supported releases of Microsoft Windows is now offered through automatic updating. Customers who previously applied the...- News
- Thread
- advisory attack automatic updates certificate kb2661254 key length microsoft phishing rsa keys security update virtualization windows xp
- Replies: 0
- Forum: Security Alerts
-
Fraudulent Digital Certificates Could Allow Spoofing - Version: 5.0
Severity Rating: Revision Note: V5.0 (September 19, 2011): Revised to announce the rerelease of the KB2616676 update. See the Update FAQ in this advisory for more information. Summary: Microsoft is aware of active attacks using at least one fraudulent digital certificate issued by DigiNotar, a...- News
- Thread
- attack certificate diginotar fraud internet explorer phishing security spoofing update windows
- Replies: 0
- Forum: Security Alerts
-
MS14-006 - Important : Vulnerability in IPv6 Could Allow Denial of Service (2904659) -...
Severity Rating: Important Revision Note: V1.0 (February 11, 2014): Bulletin published. Summary: This security update resolves a publicly disclosed vulnerability in Microsoft Windows. The vulnerability could allow denial of service if an attacker sends a large number of specially crafted IPv6...- News
- Thread
- attack denial of service ipv6 microsoft patch security threats update vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS14-007 - Critical : Vulnerability in Direct2D Could Allow Remote Code Execution (2912390) -...
Severity Rating: Critical Revision Note: V1.0 (February 11, 2014): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user views a specially crafted webpage using Internet...- News
- Thread
- attack bug fixes critical cybersecurity email internet explorer malware microsoft patch remote code execution revision risk security software update threats update vulnerability web security webpage windows
- Replies: 0
- Forum: Security Alerts
-
MS14-009 - Important : Vulnerabilities in .NET Framework Could Allow Elevation of Privilege...
Severity Rating: Important Revision Note: V1.0 (February 11, 2014): Bulletin published. Summary: This security update resolves two publicly disclosed vulnerabilities and one privately reported vulnerability in Microsoft .NET Framework. The most severe vulnerability could allow elevation of...- News
- Thread
- attack bulletin elevation of privilege email microsoft net framework security update vulnerabilities website
- Replies: 0
- Forum: Security Alerts