-
January 2012 Security Bulletins Released
Hello. As I previously mentioned in the Advance Notification Service blog post on Thursday, today we are releasing seven security bulletins, one of which is rated Critical in severity, with the remaining six classified as Important. These bulletins will address eight vulnerabilities in Microsoft...- News
- Thread
- bulletin compatibility critical update customer guidance deployment exploitability knowledge base media player microsoft ms12-004 patch management remote code execution risk assessment security security advisory ssl trustworthy computing update vulnerabilities webcast
- Replies: 0
- Forum: Security Alerts
-
December 2011 Out-Of-Band Security Bulletin Webcast Q&A
Hosts: Jonathan Ness, Security Development Manager, MSRC Pete Voss, Sr. Response Communications Manager, Trustworthy Computing Website: TechNet/Security Chat Topic: December 2011 Out-Of-Band Security Bulletin Release Date...- News
- Thread
- asp.net authentication custom code cve denial of service exchange 2010 exploitability forms authentication hashtable iis internet-facing patch management security server environment technical guidance update vulnerability web server windows server windows update
- Replies: 0
- Forum: Security Alerts
-
Summary for December 2011 - Version: 1.1
Revision Note: V1.1 (December 13, 2011): For MS11-099, corrected the severity ratings in the Affected Software table. For MS11-088, corrected the Key Note in the Exploitability Index. These are informational changes only. There were no changes to the security update files or detection logic...- News
- Thread
- bulletin december exploitability ms11-088 ms11-099 security software update version
- Replies: 0
- Forum: Security Alerts
-
Summary for December 2011 - Version: 1.1
Revision Note: V1.1 (December 13, 2011): For MS11-099, corrected the severity ratings in the Affected Software table. For MS11-088, corrected the Key Note in the Exploitability Index. These are informational changes only. There were no changes to the security update files or detection logic...- News
- Thread
- 2011 affected software bulletin exploitability microsoft revision note security update
- Replies: 0
- Forum: Security Alerts
-
Microsoft hosts BlueHatv11, releases four bulletins
Hello, On this November Update Tuesday, we’re recapping the Link Removed, which Microsoft hosted in Redmond last week. We are also releasing four security updates, so please read on for details. Microsoft hosted its Link Removed of the BlueHat conference Nov. 2-4. The event featured...- News
- Thread
- bluehat bulletin cve deployment exploitability installation microsoft november protection remote code execution research research community security tcp/ip trustworthy computing update vulnerability webcast
- Replies: 0
- Forum: Security Alerts
-
Summary for August 2011 - Version: 1.1
Revision Note: V1.1 (August 10, 2011): For MS11-059, corrected restart requirement information in the Executive Summaries section. For MS11-065, corrected key note in the Exploitability Index for CVE-2011-1968. For MS11-068, revised Server Core notation for Windows Server 2008 and Windows Server...- News
- Thread
- 2011 bulletin cve-2011-1968 exploitability ms11-059 ms11-065 ms11-068 revision note security server core summary update windows server
- Replies: 0
- Forum: Security Alerts
-
A live BlueHat Prize webcast and the August 2011 security updates
Hello all. It has been very nearly a week since our Link Removed due to 404 Error at Black Hat. Now that everyone’s had some time to digest the basics, we’ve asked Senior Security Strategist and chief BlueHat Prize architect Katie Moussouris to stop by the Trustworthy Computing...- News
- Thread
- 2011 bluehat prize bulletin community engagement critical update customer guidance deployment dns exploitability internet explorer jerry bryant microsoft remote code execution risk assessment security bulletin security updates technet trustworthy computing vulnerabilities webcast
- Replies: 0
- Forum: Security Alerts
-
MSRC Progress Report Shows Continued Progress of MSRC Key Initiatives
Today, the MSRC released its Link Removed due to 404 Errort highlighting advancements of key Microsoft programs designed to help prevent and defend against online threats. The Microsoft programs featured in this paper include the following: The Link Removed due to 404 Error (MAPP) and Link...- News
- Thread
- adobe collaboration conference customers exploitability feedback indexing industry information disclosure initiatives mapp msrc msvr progress protection report security software update vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Autorun-Related Malware Declines and the June 2011 Security Bulletin Release
Hello there. First off, I’d like to share some news regarding the updates we made to the Autorun feature in Security Advisory 967940, which we released in February 2011. The advisory made changes to how Autorun handles “non-shiny” media (eg., USB thumb drives). The change was...- News
- Thread
- 2011 autorun bulletin critical update deployment exploitability infection rates internet explorer malware msrt security security advisory smb client update virus removal windows 7 windows update windows vista windows xp
- Replies: 0
- Forum: Security Alerts
-
Advance Notice of Critical Java Update
Oracle provided advance notification regarding the Oracle Java SE Critical Patch Update for June 2011. The update is scheduled to be released on Tuesday, June 7, 2011. The Critical Patch Update contains seventeen (17) new security vulnerability fixes for Java SE. As explained in the...- reghakr
- Thread
- authentication components critical exploitability java jdk jre june linux notifications oracle patch products remote sdk security solaris update vulnerabilities windows
- Replies: 1
- Forum: Software Updates
-
May 2011 Security Bulletin Release
Hello everyone, Pete Voss here again, and as I previously mentioned in the Advanced Notification on Thursday, today we are releasing two bulletins to help protect customers. The bulletins address a Critical vulnerability in Microsoft Windows and two Important vulnerabilities in Microsoft Office...- News
- Thread
- bulletin customer service deployment exploitability installation internet name service malware microsoft microsoft office office powerpoint remote code execution risk security technical update vulnerability webcast windows wins
- Replies: 0
- Forum: Security Alerts
-
Exploitability Index Improvements & Advance Notification Service for May 2011 Bulletin Release
Hello everyone, Today we are announcing changes to Microsoft’s Link Removed Since October 2008, we have used the Exploitability Index to provide customers with valuable exploitability analysis for our security bulletins, and starting Tuesday this information will become even more...- News
- Thread
- 2011 advance notification critical update cve-2011-0097 exploit exploitability microsoft msrc office 2010 patch management risk assessment security bulletin security risks security software update vulnerabilities windows 7
- Replies: 0
- Forum: Security Alerts
-
Exploitability Index Improvements Now Offer Additional Guidance
Exploitability Index Improvements Now Offer Additional Guidance In October of 2008, Microsoft published its first Link Removed a rating system that helps customers identify the likelihood that a specific vulnerability would be exploited within the first 30 days after bulletin release. As of...- News
- Thread
- assessment cooperation cve denial of service environmental risks exploitability indexing it administration microsoft mitigation monthly review recent platforms risk assessment security security updates software update technical analysis vulnerability windows 7
- Replies: 0
- Forum: Security Alerts
-
Announcing the Microsoft Security Update Guide, Second Edition
Hi all -- We're pleased to announce the release of the new Link Removed due to 404 Error. Fully revised and updated from the first edition, which was released in 2009, this edition focuses on best practices for prioritizing and testing security updates before deployment within your...- News
- Thread
- automatic updates best practices configuration manager deployment enterprise exploitability guidance insights it professionals microsoft pre-deployment prioritization resources security testing update validation windows wsus
- Replies: 0
- Forum: Security Alerts
-
March 2011 Security Bulletin Release
Hello all -- Today, as part of our monthly security bulletin release, we have three bulletins addressing four vulnerabilities in Microsoft Windows and Microsoft Office. One bulletin is rated Critical, and this is the bulletin we recommend for priority deployment: Link Removed due to 404...- News
- Thread
- 2011 bulletin critical deployment dll exploitability important mhtml microsoft monitoring office remote desktop security service pack technet threat landscape update vulnerabilities webcast windows
- Replies: 0
- Forum: Security Alerts
-
Microsoft Security Bulletin Summary for February 2011
Revision Note: V1.1 (February 9, 2011): For MS11-013, corrected the Exploitability Index Assessment for CVE-2011-0091 to "3 – Functioning exploit code unlikely." This is an informational change only.Summary: This bulletin summary lists security bulletins released for February 2011. Link Removed...- News
- Thread
- assessment bulletin cve exploitability february microsoft ms11-013 security update vulnerability
- Replies: 0
- Forum: Security Alerts
-
VIDEO February 2011 Security Bulletin Release
Hello all -- Today, as part of our monthly security bulletin release, we have 12 bulletins addressing 22 vulnerabilities in Microsoft Windows, Office, Internet Explorer, and IIS (Internet Information Services). Three bulletins are rated Critical, and these are the bulletins we recommend for...- News
- Thread
- 2011 autorun bulletin critical deployment exploitability internet explorer malware microsoft opentype remote code execution risk management security technet update vulnerabilities webcast windows 7 windows vista windows xp
- Replies: 0
- Forum: Security Alerts
-
January 2011 Security Bulletin Release
Hello - Today as part of our monthly security bulletin release we have two bulletins addressing three vulnerabilities in Microsoft Windows and Windows Server. This first bulletin is rated Important, while the second is rated Critical. Link Removed due to 404 Error. This bulletin resolves...- News
- Thread
- bulletin compatibility critical css deployment exploitability fix important mdac memory office security technical update vulnerabilities webcast windows windows server windows vista windows xp
- Replies: 0
- Forum: Security Alerts
-
November 2010 Security Bulletin Release
Hello all. As part of our usual cycle of monthly updates, todayMicrosoft is releasing three security bulletins, addressing 11 vulnerabilities.One of the bulletins has a Critical severity rating, while the other two arerated Important. Recapping the trio: Link Removed due to 404 Error This...- News
- Thread
- 2010 cybersecurity deployment priority exploitability malicious files microsoft office outlook patch management powerpoint remote code execution response communications risk assessment security bulletin security updates threat landscape unified access gateway user interaction vulnerabilities webcast
- Replies: 1
- Forum: Security Alerts
-
Community-Based Defense: Looking Outward, Moving Forward
Two years ago, in front of a standing-room only crowd here at Black Hat, we introduced three new information sharing programs as well as the concept of Community-Based Defense. The underlying concept shared by all three programs was simple-collaboration will be key to preventing and defending...- News
- Thread
- adobe black hat collaboration community defense coordinated vulnerability customer needs cybersecurity digital crime emet exploitability feedback information sharing mitigation toolkit protection providers research community security ecosystem security landscape trustworthy computing vulnerabilities vulnerability disclosure
- Replies: 0
- Forum: Security Alerts