Is Cloud Computing Really Risk Transference?
Wed, 18/02/09 – 13:07 | No Comment

The current buzz in the technology industry is all about this idea of Cloud Computing. It goes by many many names but we’ll just stick with this one to eliminate confusion.

Read the full story »
Articles

Patch management and related articles.

Bulletins

Microsoft’s monthly security bulletins.

Downloads

Security-related downloads from Microsoft download center.

Exploits

Various exploits seen in the wild.

KB Articles

Microsoft knowledge base articles.

Home » Archive by Tags

Articles tagged with: updates

[SQL] KB 961930 - Cumulative update package 2 for SQL Server 2005 Service Pack 3
Tuesday, 17 Feb, 2009 – 2:02 | No Comment

INTRODUCTION Microsoft SQL Server 2005 hotfixes are created for specific SQL Server service packs. You must apply a SQL Server 2005 Service Pack 3 hotfix to an installation of SQL Server 2005 Service Pack 3. By default, any hotfix that is provided in Read More……( read more )

Treat these like Service Packs
Monday, 16 Feb, 2009 – 19:22 | No Comment

I posted this to someone today and thought I’d blog this here as well: Regarding the patches that came out last week, consider two of them to be Service Packs and plan accordingly:  There are two BIG hunking patches in this go round that one really needs to treat like service packs. 1.  Exchange.  This is a denial of service and there’s no mitigation.  Big whoop they will target Vlad first and his big Exchange servers first, I can make a backup and install carefully.  You are replacing store.exe so it’s like it’s a sp1 or sp2.  Treat accordingly.  2007 does not need a reboot but I have seen these Update rollups sometimes need to be reinstalled as the initial install may mess up.  2k3 does need a reboot and a mere stopping of services and restarting on a SBS 2k3 box isn’t enough. 2.  SQL and on a SBS box we have ‘em coming out of our ears.  It’s replacing SQL engine as well.  Also treat like a service pack.  Only nails you if you have an external web site exposed and they can get in through cross site scripting, so I don’t see that we should be patching quickly on this one, we have time.  Treat also like a service pack as if the permissions in that database are horked you are calling a PSS SQL expert as there’s no easy blog answer as someone has to dig out the log file and read it

Killing off the Red X
Monday, 16 Feb, 2009 – 18:59 | No Comment

In the SBS 2003 R2 patch report sometimes you’ll get a computer that indicates it has patching issues: So you go in and see that a workstation is having issues…. And when you click on it, it says…”What errors?” So what’s going on here is that an event does occur with the patch.  But the workstation usually fixes itself up.  BUT that error only gets cleared out of the Update screen after 15 days.  Sooooooo…

Microsoft Updates for Multiple Vulnerabilities « JusticeDept.com …
Friday, 13 Feb, 2009 – 6:01 | No Comment

As part of the Microsoft Security Bulletin Summary for February 2009, Microsoft released updates to address vulnerabilities that affect Microsoft Windows, Internet Explorer, Exchange Server, SQL Server, Office, …

Microsoft offers $250k reward, forms alliance to fight worm
Friday, 13 Feb, 2009 – 1:39 | No Comment

Microsoft this morning announced a $250,000 reward and an industry alliance in an effort to stop the spread of the Conficker worm, which targets a Windows Server service vulnerability that the company patched last October . The worm, also known as Downadup, has continued to spread by infecting unpatched systems

Should Microsoft decouple IE from Patch Tuesday?
Thursday, 12 Feb, 2009 – 20:51 | No Comment

Should Microsoft decouple IE from Patch Tuesday? | Zero Day | ZDNet.com: http://blogs.zdnet.com/security/?p=2558 This comes up now and then.  Should Microsoft release patches at any time and not wait for Patch Tuesday

February monthly security bulleting release
Wednesday, 11 Feb, 2009 – 7:08 | No Comment

I just saw that the folks over on the MSRC blog just posted the info for the February security bulleting release.

Update for Outlook Junk E-mail Filter (February 2009)
Wednesday, 11 Feb, 2009 – 5:47 | No Comment

Microsoft has recently released the February update for the Outlook 2003/2007 Junk E-mail Filter. ” This update provides the Junk E-mail Filter in Microsoft Office Outlook with a more current definition of which e-mail messages should be considered junk e-mail

New Advanced Installer 6.8 brings Inno Setup project importing
Wednesday, 11 Feb, 2009 – 4:04 | No Comment

On February 5th, 2009 Caphyon Ltd. announced the latest edition of its Windows Installer authoring tool. The new Advanced Installer enables developers and system administrators to easily build and repackage complex applications into reliable, ready to deploy MSI and EXE installers, patches and on-line updates

US-CERT Technical Cyber Security Alert TA09-041A — Microsoft …
Tuesday, 10 Feb, 2009 – 17:28 | No Comment

The security bulletin describes any known issues related to the updates.

US-CERT Technical Cyber Security Alert TA09-041A — Microsoft …
Tuesday, 10 Feb, 2009 – 17:28 | No Comment

The security bulletin describes any known issues related to the updates. Administrators are encouraged to note these issues and test for any potentially adverse effects.

Microsoft Security Bulletin MS09-005 - Important: Vulnerabilities …
Tuesday, 10 Feb, 2009 – 13:52 | No Comment

Microsoft Security Bulletin MS09-005 - Important: Vulnerabilities in Microsoft Office … - This security update resolves three privately reported vulnerabilities in Microsoft Office Visio that could allow remote code execution if a …