Monthly Archives: August 2009

Clinic 3402: ASP.NET for PHP Developers: Introduction to ASP.NET

In this clinic, you learn about ASP.NET as a Web development platform and how it compares to PHP. You will explore features including Server Controls, Master Pages, and Profiles. Additionally you will also learn about Visual Web Developer Express, a powerful free tool for authoring ASP.NET Web sites.
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment

Clinic 6258: New Features Of Microsoft SQL Server 2008 Reporting Services

This Clinic covers topics on new Reporting Services Features in SQL Server 2008 (BETA)
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment

Microsoft Security Advisory (973882): Vulnerabilities in Microsoft Active Template Library (ATL) Could Allow Remote Code Execution - 8/25/2009

Revision Note: V3.0 (August 25, 2009): Advisory revised to provide details about the Windows Live Messenger 14.0.8089 release and to communicate the removal of the Windows Live Hotmail “Attach Photo” feature. Advisory Summary:Security Advisory
Go to full Article at Microsoft.com

Posted in MS Security | Leave a comment

Microsoft Security Advisory (967940): Update for Windows Autorun - 8/25/2009

Revision Note: V1.1 (August 25, 2009): Summary revised to notify users of an update to Autorun that restricts AutoPlay functionality to CD-ROM and DVD-ROM media, available for Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008 from Microsoft Knowledge Base Article 971029. Advisory Summary:Microsoft is announcing the availability of an update that corrects [...]

Posted in MS Security | Leave a comment

Is virtualization a new channel for data loss?

Sophos security news:
Sophos publishes new podcast exploring the data loss risks associated with virtualization.
More information at Sophos.com

Posted in Sophos Security | Leave a comment

MS09-044 - Critical: Vulnerabilities in Remote Desktop Connection Could Allow Remote Code Execution (970927)

Bulletin Severity Rating:Critical - This security update resolves two privately reported vulnerabilities in Microsoft Remote Desktop Connection. The vulnerabilities could allow remote code execution if an attacker successfully convinced a user of Terminal Services to connect to a malicious RDP server or if a user visits a specially crafted Web site that exploits this vulnerability. [...]

Posted in MS Security | Leave a comment

MS09-043 - Critical: Vulnerabilities in Microsoft Office Web Components Could Allow Remote Code Execution (957638)

Bulletin Severity Rating:Critical - This security update resolves several privately reported vulnerabilities in Microsoft Office Web Components that could allow remote code execution if a user viewed a specially crafted Web page. An attacker who successfully exploited these vulnerabilities could gain the same user rights as the local user. Users whose accounts are configured to [...]

Posted in MS Security | Leave a comment

MS09-042 - Important: Vulnerability in Telnet Could Allow Remote Code Execution (960859)

Bulletin Severity Rating:Important - This security update resolves a publicly disclosed vulnerability in the Microsoft Telnet service. The vulnerability could allow an attacker to obtain credentials and then use them to log back into affected systems. The attacker would then acquire user rights on a system identical to the user rights of the logged-on user. [...]

Posted in MS Security | Leave a comment

MS09-041 - Important: Vulnerability in Workstation Service Could Allow Elevation of Privilege (971657)

Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in the Windows Workstation Service. The vulnerability could allow elevation of privilege if an attacker created a specially crafted RPC message and sent the message to an affected system. An attacker who successfully exploited this vulnerability could execute arbitrary code and take complete [...]

Posted in MS Security | Leave a comment

Microsoft Security Advisory (973882): Vulnerabilities in Microsoft Active Template Library (ATL) Could Allow Remote Code Execution - 8/11/2009

Revision Note: V2.0 (August 11, 2009): Advisory revised to add entries in the Updates related to ATL section to communicate the release of Microsoft Security Bulletin MS09-037, Vulnerabilities in Microsoft Active Template Library (ATL) Could Allow Remote Code Execution, and the rerelease of Microsoft Security Bulletin MS09-035, Vulnerabilities in Visual Studio Active Template Library Could [...]

Posted in MS Security | Leave a comment