Today we released Security Advisory 2896666 regarding an issue that affects customers using Microsoft Windows Vista and Windows Server 2008, Microsoft Office 2003 through 2010, and all supported versions of Microsoft Lync. We are aware of targeted attacks, largely in the Middle East and South...
antivirus
customer guidance
emet
exploit
firewall
malware
microsoft
microsoft office
risk management
security advisory
software update
threatlandscape
tiff codec
user interaction
vulnerability
windows server
windows vista
Today we released Security Advisory 2887505 regarding an issue that affects Internet Explorer. There are only reports of a limited number of targeted attacks specifically directed at Internet Explorer 8 and 9, although the issue could potentially affect all supported versions. This issue could...
Today, we released Security Advisory 2847140 regarding an issue that impacts Internet Explorer 8. Internet Explorer 6, 7, 9 and 10 are not affected by the vulnerability. This issue allows remote code execution if users browse to a malicious website with an affected browser. This would typically...
Today, we released Security Advisory 2794220 regarding an issue that impacts Internet Explorer 6, 7, and 8. We are only aware of a very small number of targeted attacks at this time. This issue allows remote code execution if users browse to a malicious website with an affected browser. This...
activex
advisory
antivirus
blog
emet
exploit
firewall
internet explorer
malware
microsoft
mitigation
remote code execution
scripting
security
security zone
threatlandscape
trusted sites
update
usability
vulnerabilities
Today we released Security Advisory 2755801 that addresses vulnerabilities in Adobe Flash Player in Internet Explorer 10 on Windows 8. The majority of customers have automatic updates enabled and will not need to take any action because protections will be downloaded and installed automatically...
adobe
advisory
automatic
coordination
customers
flash player
information disclosure
internet explorer
management
microsoft
protection
quality
release cycle
security
software
threatlandscape
update
update process
vulnerabilities
windows 8
Today we released Security Advisory 2757760 to address an issue that affects Internet Explorer 9 and earlier versions if a user views a website hosting malicious code. Internet Explorer 10 is not affected.
We have received reports of only a small number of targeted attacks and are working to...
On March 15, we became aware of public proof-of-concept code that results in denial of service for the issue addressed by MS12-020, which we released Tuesday.
We continue to watch the threat landscape and we are not aware of public proof-of-concept code that results in remote code execution...
Protecting the general computing ecosystem is a really tough job, and given some of the media headlines, it’s easy to get discouraged and wallow in the problems. It seems like we’re constantly bombarded with statistics measuring the number of bugs, vulnerabilities, or attacks in an...
active protections program
bluehat prize
collaboration
computing ecosystem
customers
cybersecurity
defense technology
exploit prevention
global security
incentives
industry collaboration
innovation
microsoft
prizes
research community
security challenges
security research
security vendors
threatlandscape
vulnerabilities
Hello all --
Today, as part of our monthly security bulletin release, we have three bulletins addressing four vulnerabilities in Microsoft Windows and Microsoft Office. One bulletin is rated Critical, and this is the bulletin we recommend for priority deployment:
Link Removed due to 404...
Hello,
Today we released Security Advisory 2488013 to address a public vulnerability that could affect customers using Internet Explorer 6, 7 and 8 if they visit a website hosting malicious code. Currently the impact of this vulnerability is limited and we are not aware of any affected...
Hello all. As part of our usual cycle of monthly updates, todayMicrosoft is releasing three security bulletins, addressing 11 vulnerabilities.One of the bulletins has a Critical severity rating, while the other two arerated Important. Recapping the trio:
Link Removed due to 404 Error This...
BH Landscape
Next week, many of us here will be heading down to Las Vegas for Black Hat. The MSRC, and other teams in Microsoft, have been attending Black Hat for years. In fact, we've been sponsoring the show for the last eight years-the last five as a platinum sponsor. Some might ask why...
attack
black hat
bluehat
collaboration
community
coordinated disclosure
crisis management
fix
information disclosure
microsoft
msrc
network security
research
security
telemetry
threatlandscape
training
trustworthy computing
update
vulnerabilities
Hello -
Today we provided Link Removed due to 404 Error to customers that we will release an out-of-band security update to address the vulnerability discussed in Security Advisory Link Removed due to 404 Error. The update is scheduled for release tomorrow, Tuesday, September 28, 2010 at...
advisory
asp.net
automatic updates
bulletin
customer service
distribution
download center
enterprise
microsoft
net framework
out-of-band
security
testing
threatlandscape
trustworthy computing
update
vulnerability
web server
webcast
windows server