Today, we released Link Removed to provide guidance to customers in response to the SSL/TLS issue referred to by researchers as “FREAK” (Factoring attack on RSA-EXPORT Keys).
Our investigation continues and we’ll take the necessary steps to protect our customers.
MSRC Team
Continue reading...
Severity Rating: Important
Revision Note: V1.0 (January 13, 2015): V1.0 (January 13, 2015): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow security feature bypass by unintentionally relaxing the...
attacker
awareness
bulletin
configuration
dns
firewall
important
january
ldap
location
microsoft
network
patch
policy
protection
security
services
threats
update
vulnerability
For years our customers have been in the trenches against cyberattacks in an increasingly complex digital landscape. We’ve been there with you, as have others. And we aren’t going anywhere. Forces often seek to undermine and disrupt technology and people, attempting to weaken the very devices...
advisory
best practices
collaboration
complexity
consumer
coordinated
cvd
cybersecurity
google
information disclosure
microsoft
patch
phishing
protection
research
security
software
threats
trustworthiness
vulnerability
Severity Rating: Important
Revision Note: V1.0 (December 9, 2014): Bulletin published.
Summary: This security update resolves four privately reported vulnerabilities in Microsoft Exchange Server. The most severe of these vulnerabilities could allow elevation of privilege if a user clicks a...
attack
bulletin
crafted url
cybersecurity
elevation
email
exchange server
important
links
messenger
microsoft
outlook
privilege
protection
revision
security
severity rating
update
vulnerabilities
web apps
Had build 9841 running fine w/MacAfee Security running. Updated to build 9860 and MacAfee live protection would not turn on. Contacted forum and was told not to use 3rd party antivirus software. There are still compatibility issues. Removed MacAfee security and windows firewall and defender...
Severity Rating: Moderate
Revision Note: V1.0 (November 11, 2014): Bulletin published.
Summary: This security update resolves a privately reported vulnerability in Microsoft Input Method Editor (IME) (Japanese). The vulnerability could allow sandbox escape based on the application sandbox policy...
access
administrative
attack
cybersecurity
data
elevation
exploit
ime
japanese
microsoft
moderate
patch
privilege
protection
risk
sandbox
security
software
update
vulnerability
Original release date: October 27, 2014
Systems Affected
Microsoft Windows
Overview
Since mid-October 2014, a phishing campaign has targeted a wide variety of recipients while employing the Dyre/Dyreza banking malware. Elements of this phishing campaign vary from target to target including...
Today, we released Security Advisory 3010060 to provide additional protections regarding limited, targeted attacks directed at Microsoft Windows customers. A cyberattacker could cause remote code execution if someone is tricked into opening a maliciously-crafted PowerPoint document that contains...
Greetings.
I suspect that I have a keylogger installed on my PC. Luckly I suspected this quite fast and managed to secure most of my important accounts.
What I want to do now, is re-install my windows. However I need to know something before I begin doing this: Can I safely back-up files to a...
Hi,
I am using Windows defender as my antivirus as well as malwarebytes for malware removal. I want to know if there is any other security software I should probably install.
Thanks!
Lifehacker just posted a article on the 5 best antivirus programs. Here's the article link : http://lifehacker.com/five-best-desktop-antivirus-applications-1607557993?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed: lifehacker/full (Lifehacker)
Dear Forum,
Please ignore this question:-
Hostsxpert has a make writeable option at the top!!
Shame on me.
_______________
Dear Forum
I have just installed windows 8 for the first time.
I have been using hostsxpert to amend the hosts file to control some of the rubbish that infiltrates...
Today, we released Security Advisory 2974294 to inform global customers about an update for the Microsoft Malware Protection Engine. This update addresses a privately disclosed issue and fixes a vulnerability that could allow a denial of service if the Microsoft Malware Protection Engine scans a...
The news on anti-virus death is greatly exaggerated. The right way to look at it is that antivirus is not, and may never have been, a sufficient means by which to protect the user against attack. But, for most users, it's still an important front-line defense.
One great advantage of Windows 8.1...
Revision Note: V1.0 (May 13, 2014): Advisory published.
Summary: Microsoft is announcing the availability of an update for supported editions of Windows 8, Windows RT, Windows Server 2012, Windows 7, and Windows Server 2008 R2 that improves credential protection and domain authentication...
2014
authentication
client computer
credential theft
credentials
credssp
domain user
lsa
management
microsoft
policy enforcement
protection
restricted admin
security
server 2008
server 2012
update
windows 7
windows 8
windows rt