-
Advance Notification Service for the January 2013 Security Bulletin Release
On behalf of all of us here at Microsoft, I’d like to wish everyone a very happy New Year! With 2013 starting on a Tuesday, our monthly bulletin release is upon us a bit earlier than usual. Next Tuesday we’ll release seven bulletins; two Critical and five Important, which address...- News
- Thread
- 2013 bulletin critical update deployment guidance impact analysis important updates microsoft msrc net framework news office risk assessment security server software testing trustworthy computing update process vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
December 2012 Security Bulletin Webcast, Q&A, and Slide Deck
Hello, Today we’re publishing the Link Removed. During the webcast, we fielded five questions focusing primarily on Microsoft Word and the Office compatibility pack in Link Removed. All questions are included on the Q&A page. We invite our customers to join us for the next public webcast...- News
- Thread
- bulletin compatibility december event microsoft office q&a security trustworthy computing webcast
- Replies: 0
- Forum: Security Alerts
-
It’s That Time of Year, For the December 2012 Bulletin Release
Happy holidays! I hope everyone is enjoying the festive season. I like to get my holiday shopping done early, and this year was no exception. In the middle of my holiday shopping last week, as I passed my cash from one store to the next, I was reminded of “Pass-the-Hash.” (My mind...- News
- Thread
- adobe flash bulletin release critical update cybersecurity december deployment exploitability extended security updates holiday internet explorer microsoft microsoft word pass-the-hash patch management remote code execution rtf file technical advisory trustworthy computing vulnerabilities webcast
- Replies: 0
- Forum: Security Alerts
-
November 2012 Security Bulletin Webcast, Q&A, and Slide Deck
Hello, Today we’re publishing the Link Removed - Invalid URL. During the webcast, we fielded ten questions focusing primarily Windows RT, Windows 8, and Windows Server 2012 detection and deployment, MS12-072 (Windows Shell), and MS12-073 (IIS). All questions are included on the Q&A page...- News
- Thread
- bulletin customer engagement cybersecurity deployment event microsoft ms12-072 ms12-073 online event q&a security technology trustworthy computing update webcast webinar windows 8 windows rt windows server
- Replies: 0
- Forum: Security Alerts
-
Verifying update hashes
Some of you may have noticed us improving our defense-in-depth practices for bulletins by supplying sha1 and sha2 hashes in the Knowledge Base (KB) articles. This has been most visible in the KB with the addition of the “File hash information” section, but it is also noted in the...- News
- Thread
- automatic updates code integrity cryptography defense in depth download verification faq file check file hash hashes improvements kb article microsoft msu files powershell scripting security sha1 sha256 trustworthy computing update
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for November 2012 Security Bulletin Release
Today, we’re providing advance notification for six bulletins to help protect customers against 19 CVEs. The four Critical-rated updates will address 13 vulnerabilities in Microsoft Windows, Internet Explorer and the .NET Framework. One bulletin rated Important will address four...- News
- Thread
- advance notification bulletin critical cve deployment important internet explorer microsoft moderate msrc net framework november office patch management security testing trustworthy computing update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
October 2012 Security Bulletin Webcast, Q&A, and Slide Deck
Hello, Today we published the Link Removed due to 404 Error. During the webcast, we fielded five questions focusing primarily on Link Removed addressing trust certificates with RSA keys less than 1024 bit key lengths. One additional question was answered after the webcast. All questions are...- News
- Thread
- certificate live event november bulletin october bulletin q&a registration rsa keys security trustworthy computing webcast
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for October 2012 Security Bulletin Release
Today we’re providing advance notification of the release of seven bulletins, one Critical and six Important, for October 2012. The Critical bulletin addresses vulnerabilities in Microsoft Word. The six Important-rated bulletins will address issues in Windows, Microsoft Office, and SQL...- News
- Thread
- advisory bulletin critical deployment fast search server important microsoft msrc notifications october office release date rsa keys security sql server trustworthy computing update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
September 2012 Out-of-Band Security Bulletin Webcast, Q&A, and Slide Deck
Hello. Today we’re publishing the Link Removed due to 404 Error. During the webcast, we fielded 19 questions. Those were focused on MS12-063, the out-of-band cumulative release for Internet Explorer, and Link Removed, which involves an issue with the Adobe Flash Player implementation for...- News
- Thread
- adobe flash bulletin cumulative internet explorer ms12-063 q&a security trustworthy computing update webcast
- Replies: 0
- Forum: Security Alerts
-
Microsoft releases MS12-063 – Cumulative Security Update for Internet Explorer
Today we released Security Update MS12-063 to address limited attacks against a small number of computers through a vulnerability in Internet Explorer versions 9 and earlier. The majority of customers have automatic updates enabled and will not need to take any action because protections will be...- News
- Thread
- advisory automatic computer cumulative exploitation internet explorer manual update microsoft ms12-063 security trustworthy computing update vulnerability webcast
- Replies: 0
- Forum: Security Alerts
-
September 2012 Security Bulletin Webcast, Q&A, and Slide Deck
Hello, Today we published the Link Removed due to 404 Error. During the webcast, we fielded thirteen questions, focusing primarily on Link Removed due to 404 Error, covering Visual Studio Team Foundation Server; MS12-062, affecting System Center Configuration Manager; and Link Removed due to...- News
- Thread
- activex bulletin configuration manager microsoft october event q&a security trustworthy computing visual studio webcast
- Replies: 0
- Forum: Security Alerts
-
Update Tuesday overview for September 2012
As I previously mentioned in the Advance Notification blog on Thursday, today we are releasing two security bulletins, both of which are rated Important. These bulletins will increase protection by addressing two unique vulnerabilities in the following Microsoft products: MS12-061 (Visual...- News
- Thread
- 2012 advisory bulletin configuration manager deployment exploitability microsoft patch risk security september service pack system center team foundation trustworthy computing update visual studio vulnerabilities webcast
- Replies: 0
- Forum: Security Alerts
-
Security Advisory 2743314 released
Today, we published Security Advisory 2743314, which provides guidance that will help protect customers from a technique that could allow a man-in-the middle attack to obtain a user’s domain credentials when VPN is configured to use PPTP and MSCHAPv2. Customers concerned with this...- News
- Thread
- advisory credentials cybersecurity data security guidance man-in-the-middle microsoft mschapv2 msrc network security pptp risk management security tech updates threat mitigation trustworthy computing user protection vpn
- Replies: 0
- Forum: Security Alerts
-
August 2012 Security Bulletin Webcast, Q&A, and Slide Deck
Hello. Today we’re publishing the Link Removed due to 404 Error. During the webcast, we fielded twelve questions focusing primarily on MS12-060 covering Windows Common Controls, MS12-052 regarding Internet Explorer, and Link Removed addressing trust certificates with RSA keys less than...- News
- Thread
- broadcast bulletin certificate internet explorer live event microsoft q&a questions rsa keys security september technet trustworthy computing update webcast windows
- Replies: 0
- Forum: Security Alerts
-
Advance Notification Service for August 2012 Security Bulletin Release
Today we're providing advanced notification on the release of nine bulletins, five Critical and four Important, for August 2012. The five Critical security bulletins are addressing ten vulnerabilities in Microsoft Windows, Internet Explorer, Exchange, SQL Server, Server Software, and Developer...- News
- Thread
- advisory august 2012 bulletin critical developer tools exchange important internet explorer microsoft office msrc notifications pdt release security sql server trustworthy computing update vulnerabilities windows
- Replies: 0
- Forum: Security Alerts
-
Announcing the BlueHat Prize winners!
Minutes ago in Las Vegas at the Microsoft Researcher Appreciation Party, we completed the journey we set out on together at the 2011 Black Hat briefings. There, we asked the security research community to focus its talent and expertise on defense, to design and prototype novel runtime mitigation...- News
- Thread
- awards bluehat prize collaboration community defense event finalists incentive prize innovation las vegas memory safety microsoft mitigation prototype research rop attack security technology trustworthy computing vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Blue Hat Prize technology available in Tech Preview
One year ago this week we challenged the security community to take an unconventional focus on defensive innovation. We called that challenge the Link Removed due to 404 Error, and tomorrow night, we will award the grand prize of $200,000 to one of the finalists - Jared DeMott, Ivan Fratric, or...- News
- Thread
- black hat bluehat prize collaboration defense innovation emet exploit exploit economics innovation mapp mitigation msvr prizes protection research rop techniques security security community technology trustworthy computing vulnerabilities
- Replies: 0
- Forum: Security Alerts
-
Security Advisory 2737111 released
Hello – Today we published Security Advisory 2737111, which provides mitigations and workarounds that will help protect customers from a known vulnerability in one of Oracle’s Outside In libraries, which were updated earlier this month. Microsoft licenses the libraries from Oracle...- News
- Thread
- advisory exchange server fast search microsoft oracle security server trustworthy computing vulnerability workaround
- Replies: 0
- Forum: Security Alerts
-
Countdown to the BlueHat Prize announcement and a chance for you to win $5000
Hello, To mark the start of the 10-day countdown to the BlueHat Prize award ceremony, the MSRC Ecosystem Strategy Team is announcing the BlueHat Prize Question Sweepstakes that will give you a chance to win $5,000 at Black Hat this year! Be sure to check out the official announcement here and...- News
- Thread
- black hat bluehat prize contest discussion ecosystem microsoft prizes security sweepstakes trustworthy computing
- Replies: 0
- Forum: Security Alerts
-
July 2012 Security Bulletin Webcast, Q&A, and Slide Deck
Today we published the Link Removed due to 404 Error, and the Link Removed due to 404 Error. We fielded 15 questions on various topics during the webcast, including bulletins and advisory details, deployment questions, and plans for later updates. We also received a question that we...- News
- Thread
- advisory answers august bulletin customer engagement deployment live event microsoft on-demand q&a questions security topics trustworthy computing update view webcast
- Replies: 0
- Forum: Security Alerts