Date: Tuesday, December 18, 2018Time: 02:00 PM Eastern Standard TimeDuration: 1 hour Most people think firewalls when it comes to network security and defending against cyber-threats. But with today’s increasingly sophisticated cyber-security threats
Continue reading...
Original release date: May 29, 2018
Systems Affected
Network systems
Overview
This joint Technical Alert (TA) is the result of analytic efforts between the Department of Homeland Security (DHS) and the Federal Bureau of Investigation (FBI). Working with U.S. government partners, DHS and FBI...
Original release date: July 01, 2017
Systems Affected
Microsoft Windows operating systems
Overview
On June 27, 2017, NCCIC was notified of Petya ransomware events occurring in multiple countries and affecting multiple sectors. Petya ransomware encrypts the master boot records of infected...
Microsoft solution available to protect additional products
Today many of our customers around the world and the critical systems they depend on were victims of malicious “WannaCrypt” software. Seeing businesses and individuals affected by cyberattacks, such as the ones reported today, was...
antivirus
custom support
cybersecurity
defense strategies
itsecurity
malware
malware protection center
microsoft
patch management
phishing
ransomware
security
system protection
update
vulnerability
wannacrypt
windows 8
windows defender
windows server 2003
windows xp
Original release date: April 27, 2017
Systems Affected
Networked Systems
Overview
The National Cybersecurity and Communications Integration Center (NCCIC) has become aware of an emerging sophisticated campaign, occurring since at least May 2016, that uses multiple malware implants. Initial...
Severity Rating: Critical
Revision Note: V1.0 (March 14, 2017): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Windows. The most severe of the vulnerabilities could allow remote code execution if an authenticated attacker on a guest operating system runs...
We anticipate threats like files being deleted from servers by disgruntled employees.
1. Can someone suggest what preventive measures that can be implemented ? (DLP implementation is in pipeline, but would like to see if there are alternate measures)
2. If somehow files are deleted, we would...
access control
audit events
data loss prevention
data security
dlp
employee threats
environment
file auditing
file deletion
file tampering
incident response
it governance
itsecurity
log monitoring
monitoring tools
preventive measures
server 2008
server 2012
server management
Severity Rating: Moderate
Revision Note: V1.0 (October 11, 2016): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if an attacker successfully convinces a user of an affected system to visit a...
bulletin
cross-site
cve
cybersecurity
internet messaging api
itsecurity
malicious websites
microsoft
moderate
ms16-126
october 2016
patch
protection
remote code execution
revision note
security
update
vulnerability
web threats
windows
Severity Rating: Important
Revision Note: V1.0 (October 11, 2016): Bulletin published.
Summary: This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow elevation of privilege if an attacker logs on to an affected system and runs a specially crafted...
application
cybersecurity
diagnostics
important
itsecurity
microsoft windows
monitoring
ms16-125
october 2016
patch
privilege
protection
revision
risk management
security
system security
threats
update
vulnerability
Severity Rating: Important
Revision Note: V1.0 (June 14, 2016): Bulletin published.
Summary: This security update resolves vulnerabilites in Microsoft Exchange Server. The most severe of the vulnerabilities could allow information disclosure if an attacker sends a specially crafted image URL in...
bulletin
cybersecurity
email security
exchange server
information disclosure
information technology
itsecurity
june 2016
microsoft
ms16-079
networking
owa
patch
security
server management
threat mitigation
update
version 1.0
vulnerabilities
We designed Windows 10 from the very beginning to be our most secure platform ever. With features like Credential Guard, Device Guard, Windows Hello, and Enterprise Data Protection, Windows 10 offers unique defenses from attacks. Windows Defender, our free anti-malware service, provides...
Revision Note: V1.0 (September 24, 2015): Advisory published.
Summary: Microsoft is aware of four digital certificates that were inadvertently disclosed by D-Link Corporation that could be used in attempts to spoof content. The disclosed end-entity certificates cannot be used to issue other...
Severity Rating: Important
Revision Note: V1.0 (September 8, 2015): Bulletin published.
Summary: This security update resolves a vulnerability in Active Directory. The vulnerability could allow denial of service if an authenticated attacker creates multiple machine accounts. To exploit the...
access control
active directory
authentication
bulletins
denial of service
itsecurity
machine accounts
microsoft
ms15-096
network security
patch management
privileged access
security update
september 2015
system admin
threat mitigation
vulnerability
windows server
windows update
Severity Rating: Critical
Revision Note: V1.0 (August 11, 2015): Bulletin published.
Summary: This security update resolves vulnerabilities in Internet Explorer. The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using Internet...
2015
administrative
critical
cumulative
exploitation
internet explorer
itsecurity
microsoft
ms15-079
patch
remote code execution
revision note
risk
security update
software
support
update
user rights
vulnerabilities
webpage
Severity Rating: Critical
Revision Note: V1.0 (August 11, 2015): Bulletin published.
Summary: This security update resolves vulnerabilities in Microsoft Office. The most severe of the vulnerabilities could allow remote code execution if a user opens a specially crafted Microsoft Office file. An...
Revision Note: V1.0 (July 14, 2015):
Summary: Microsoft is announcing the availability of an update to harden scenarios in which Data Encryption Standard (DES) encryption keys are used with accounts. Microsoft disabled DES by default starting in Windows 7 and Windows Server 2008 R2. However...
application compatibility
compatibility
data protection
des
encryption
encryption keys
enhancements
itsecurity
microsoft
security
software
update
update availability
user protection
version 1.0
windows 7
windows server