Security


Oracle Patch Includes 20 Java Flaw Fixes

Oracle's quarterly Critical Patch Update (CPU) arrived on Tuesday with 113 security flaw fixes for multiple Oracle products, including 20 for Java Standard Edition (Java SE).

Microsoft's July Patch Causing 2 Different Crash Flaws

Issues concerning Microsoft's July security update, released last week, have led to crashes for many users. One is connected to the InstallShield application and another is a compatibility issue with Dell Data Protection suite.

Spoofed Google and Yahoo SSL Certs Blocked by Microsoft

In a security advisory released by Microsoft today, 45 sensitive secure sockets layer (SSL) certificates that have been unofficially issued by hackers are now blocked for Windows systems.

Microsoft Security Update for July Released, 29 Flaws Addressed

Microsoft today released its monthly security update, which includes two items rated "critical," three "important" bulletins and one "moderate" fix.

Microsoft Tweaks Windows Update Client

An update to Microsoft's Windows Update/Microsoft Update client was released this week.

Man-in-the-Middle OpenSSL Vulnerability Gets Fix

Those using the online encryption protocol OpenSSL are urged to upgrade their client due to a recently discovered flaw, according to the OpenSSL Foundation.

Microsoft Offers Security Bulletin Reporting Tool

Microsoft this week has released the "myBulletins" online service -- a tool that allows IT to pick and choose which product patches to be informed about.

Windows XP Hack Allows Access to Windows Embeded Updates

According to Betanews, a registry workaround can push through official security updates to Windows XP -- but there's a catch.

'Just Enough Administration' PowerShell Security Controls Previewed at TechEd

This week at Microsoft's TechEd conference, the company showed off the new PowerShell-based server protection scheme for IT pros called "Just Enough Administration" (JEA).

MDM TechEd Announcements Explained by Microsoft Exec

Microsoft's themes coming out of the TechEd keynote this year included mobile device management and security controls.

App Compatability Issues May Occur with Microsoft's EMET Security Tool

Microsoft's free Enhanced Mitigation Experience Toolkit (EMET) may not operate correctly for some apps.

Internet Explorer Zero-Day RCE Flaw Revealed

A new zero-day Internet Explorer flaw that has been seen to be used in limited online attacks, according to Microsoft.

Report Cites Busy 2013 for Web App and POS Incidents

According to findings in the latest Verizon security report, the majority of security attacks last year related to Web app attacks and retailer point-of-sale (POS) breaches.

New Exchange Operations Assessment App Announced

Tech firm Splunk announced its latest Microsoft Exchange Server performance, operations and security issues app will be released next month.

Office 0-Day Flaw Being Used in Active Limited Attacks

An unpatched vulnerability in Microsoft Word is currently being used in limited attacks according to Microsoft

Pop Quiz: Windows Server 2008 R2 Password Policies

Applies to the "Creating and maintaining Active Directory objects" objective of Exam 70-640.

Security Tips for Windows XP Stragglers

Microsoft on Monday offered some last-minute security advise for those who plan to still be on Windows XP after support ends.

Microsoft Criticized by Antivirus Maker for XP Support End

Free antivirus maker Avast had some harsh words for Microsoft's decision to end support for Windows XP in April.

WinSxS Cleanup To Be Automated in Windows 8.1

Microsoft's Component Store Cleanup utility will undergo improvements for Windows 8.1 users.

IE Zero-Day Attack Targets U.S. Military Web Site

An Adobe Flash vulnerability in Internet Explorer 9 and 10 was used in attacks n targeting those who visit the Web site for Veterans of Foreign Wars (VFW).

Most   Popular