Security


Microsoft Office ActiveX Security Flaws Disclosed

On the eve of its July security patch release, Redmond issued a security advisory on flaws in the ActiveX control function -- the second such advisory in as many weeks.

Half Dozen Fixes Baked Up For July Patch

Plus: What Microsoft knew about ActiveX flaws; what makes ActiveX flaws like 'Conficker'; Twitter gets down

Six Security Fixes Expected on Patch Tuesday

On Tuesday, Microsoft is planning to roll out six fixes -- three "critical" and three "important" -- in its July security update.

Recent Cyber Attacks Have Little Impact on U.S.

Recent denial-of-service attacks against government Web sites in the United States and South Korea appear to have had little impact and are not particularly sophisticated, experts say.

Microsoft Sounds the Alarm on ActiveX Flaw

Plus: hackers aren't letting up on DirectShow; Microsoft helps defend against XSS; Apple and Mozilla work on patches.

Microsoft Probing ActiveX Bug in Internet Explorer

Microsoft continues to investigate a new vulnerability revealed at the top of the week regarding an ActiveX control component in Internet Explorer.

Forefront Bug Deletes Data in SharePoint Files

Microsoft last week described a problem with its Forefront enterprise security solution for SharePoint Server, cautioning that document data could get deleted as a result of the bug.

Microsoft Ends Java Virtual Machine Support

Microsoft gave notice on Thursday that it removed 10 security patch downloads, all associated with Microsoft Java Virtual Machine technology

Microsoft's 'Gazelle' Browser Concept Going on Tour

Why can't a Web browser be more like an operating system? That's a question being investigated with "Gazelle," an ongoing project at Microsoft Research.

Microsoft and DOD Defining Windows 7 Security

Microsoft is working with the government to establish secure system settings that are expected to become the Federal Desktop Core Configuration for Windows 7.

Microsoft Making Waves With Consumer Security Beta

The beta trial for Microsoft Security Essentials (MSE) 1.0 is now closed after 75,000 testers downloaded it following Tuesday's debut.

Microsoft's 'Geneva' Convention

Plus: DirectShow bug not fixed yet; MasterCard makes PCI auditing even more difficult; accidently hacking Twitter via shortened URLs.

Microsoft Security Essentials Beta Available June 23

Microsoft on Tuesday will roll out a public test version of its free consumer security application, which was previously known by its code name, "Morro."

Adobe Patch Irks Windows Users

Plus: Microsoft's "Morro"; U.S. Senator ticked at cyber coordinator role.

IT Underestimates Risk from 'Zombie Accounts'

A report shows many organizations have limited or no knowledge of the systems to which their active and terminated employees actually have access.

Microsoft Rolls Out New Forefront Betas

Microsoft is releasing new betas of Forefront enterprise security products, according to announcements issued this week.

Use 'Protected Mode' To Secure IE 7, Microsoft Says

A setting in Internet Explorer 7 running on Windows Vista can help stave off a particular remote code execution attack, according to Microsoft's security team.

Microsoft Breaks Record With Massive June Patch

It only took six months for Microsoft to break its own record for addressing the most vulnerabilities in a single patch.

June Just Got 'Patchier'

Adobe inaugurates cyclical patching schedule. Plus: T-Mobile looks into hacks; most security pros favor data breach laws

Hackers Tunnel In Via DirectShow

Plus: Obama names fed ITSec chief; QuickTime, iTunes fixed; Twitter users targeted yet again.

Most   Popular