Contacts displayed as containers
Sun, 17/05/09 – 1:58 | No Comment

At TechEd I was staffing the Windows Server 2008 R2 Active Directory-Booth. We had a lot of interesting questions, scenarios and discussions there

Read the full story »
Articles

Patch management and related articles.

Bulletins

Microsoft’s monthly security bulletins.

Downloads

Security-related downloads from Microsoft download center.

Exploits

Various exploits seen in the wild.

KB Articles

Microsoft knowledge base articles.

Home » Archive by Tags

Articles tagged with: exploit

MS08-078 and the SDL
Thursday, 18 Dec, 2008 – 17:59 | No Comment

Hi, Michael here. Every bug is an opportunity to learn, and the security update that fixed the data binding bug that affected Internet Explorer users is no exception.

Re: VMSA-2008-0019 VMware Hosted products and patches for ESX and ESXi resolve a critical security issue and update bzip2
Wednesday, 3 Dec, 2008 – 10:42 | No Comment

Posted by Steve Shockley on Dec 03
On 12/3/2008 12:24 AM, VMware Security team wrote:
> A memory corruption condition may occur in the virtual machine
> hardware. A malicious request sent from the guest operating
> system to …

Microsoft takes 7 years to solve a problem?!
Monday, 24 Nov, 2008 – 22:44 | No Comment

Posted by Memisyazici Aras on Nov 25
<RANT>
<snip:: taken from MSRC Blog: http://blogs.technet.com/msrc/archive/2008/11/11/ms08-068-and-smbrelay.aspx>
What we released today with MS08-068 is that security update. It addresses the SMBRelay issue (discovered in 2001) does so in a …

Re: Giving back to the open source community (A solution to blackhat hackers)
Thursday, 20 Nov, 2008 – 22:48 | No Comment

Posted by Valdis.Kletnieks_at_vt.edu on Nov 21
On Thu, 20 Nov 2008 23:28:31 CST, Fredrick Diggle said:
> everyone’s best interest. Also Diggle Sec is working on iptables
> patches to allow those who do not want to …

Microsoft Windows Server Service (MS08-067) Exploit
Sunday, 16 Nov, 2008 – 14:08 | No Comment

Posted by Debasis Mohanty on Nov 17
Having not found one (except msf) that reliably works against my own setup
thought of writing my own MS08-067 exploit piece. Plugged the shellcode for
win2k and win2k3[sp2]. No plans for …

47962: Microsoft Windows Media Encoder wmex.dll ActiveX Overflow
Monday, 10 Nov, 2008 – 22:20 | No Comment

Click the edit link above to add more information. … team has released new revisions for MS08-053 (KB954156) and MS08-0… Read more…

Read the rest here:
47962: Microsoft Windows Media Encoder wmex.dll ActiveX Overflow

Re: Two bulletins from Microsoft on Patch Tuesday
Saturday, 8 Nov, 2008 – 6:45 | No Comment

Posted by n3td3v on Nov 8
There is no evidence of 0day in the wild for the upcoming patches and
Microsoft have released no information to suggest so.
On Fri, Nov 7, 2008 at 4:18 PM, <Valdis.Kletnieks_at_vt.edu> …

Re: Windows RPC worm (MS08-067) in the wild
Monday, 3 Nov, 2008 – 6:39 | No Comment

Posted by Juha-Matti Laurio on Nov 3
Kaspersky detect the new wave as
Exploit.Win32.MS08-067.g
and Microsoft as
Exploit:Win32/MS08067.gen!A
Sophos uses name Mal/Generic-A.
One of the reported file size is 16,384 bytes:
http://www.threatexpert.com/report.aspx?uid=919a973d-9fe1-4196-b202-731ebaaffa5d
Windows RPC vulnerability…

Read the rest of the …

Re: [Full-disclosure] Windows RPC worm (MS08-067) in the wild
Monday, 3 Nov, 2008 – 6:39 | No Comment

Posted by Juha-Matti Laurio on Nov 3
Kaspersky detect the new wave as
Exploit.Win32.MS08-067.g
and Microsoft as
Exploit:Win32/MS08067.gen!A
Sophos uses name Mal/Generic-A.
One of the reported file size is 16,384 bytes:
http://www.threatexpert.com/report.aspx?uid=919a973d-9fe1-4196-b202-731ebaaffa5d
Windows RPC vulnerability…
Read more:
Re: [Full-disclosure] Windows RPC …

Windows RPC worm (MS08-067) in the wild
Monday, 3 Nov, 2008 – 5:52 | No Comment

Posted by Juha-Matti Laurio on Nov 3
The worm-type exploitation has started. More information at
http://www.f-secure.com/weblog/archives/00001526.html
The worm component has reportdly detection name Exploit.Win32.MS08-067.g and the kernel component Rootkit.Win32.KernelBot.dg, in turn.
Symantec uses Worm category too and …

Microsoft Security Advisory (958963): Exploit Code Published Affecting the Server Service
Monday, 27 Oct, 2008 – 16:39 | No Comment

[Crossposted to Security, Security Home Users, and Windows Update
newsgroups; Followup To set for Security newsgroup]
Microsoft Security Advisory (958963): Exploit Code Published Affecting the
Server Service
<QP>
Microsoft is aware that detailed exploit code demonstrating code execution
has …

Windows RPC MS08-067 FAQ document updated
Monday, 27 Oct, 2008 – 8:41 | No Comment

Posted by Juha-Matti Laurio on Oct 27
Several updates to Windows RPC vulnerability (MS08-067) FAQ has been done.
-major updates to Gimmiv.A Trojan section (new malware names, signature information added)
-added Snort and Nessus references
-added credits
-added file …