home contact keylogger.org add keylogger.org to favorites set keylogger.org as homepage Anti-Keylogger.org
Monitoring Software
Keylogger home Keylogger testing and reviews Keylogger testing policy Press-releases Keylogger developers Keylogger articles Links Sponsorship & services Keylogger forum
Search for software: Powered by RegNow
Free online TV and internet radio
Current section
Site News
DISCLAIMER: Logging other people's keystrokes or breaking into other people's computer without their permission can be considered illegal by the courts of many countries. The monitoring software reviewed here is ONLY for authorized system administrators and/or owners of computers. We assume no liability and are not responsible for any misuse or damage caused by the keylogging software. The end user of this software is obliged to obey all applicable local, state, federal and other laws in his country of residence.

July 04th, 2008

Microsoft promises four patches next week

Microsoft Corp. on Thursday chalked in four security updates for next week that would fix vulnerabilities in Windows, SQL Server and Exchange Server.

All four were labeled "important," the company's second-highest ranking, even though one of the Windows updates will quash a bug that attackers could use to execute malicious code remotely. That kind of vulnerability has been regularly rated as "critical" by Microsoft in the past.

As is its practice for pre-patch notifications, Microsoft disclosed few details today of next week's updates other than their severity ranking and the affected software.

"None of these were on my radar," admitted Andrew Storms, director of security operations at nCircle Network Security Inc. "I'm doing quite a bit of head scratching given the variety and interesting details [in the bulletins]."

One of the two Windows bulletins will patch Windows 2000 and Windows XP -- including the recently released XP Service Pack 3 (SP3) -- but not Windows Vista, while the second update slated for the client operating system will patch Vista, including Vista SP1, but not the older OSes.

The Vista bug caught Storms' eye because while Microsoft said it could result in remote code execution -- a description reserved for a serious vulnerability that could let hackers hijack a PC -- the company ranked it as important, not critical.

"I read that kind of bug as 'critical'," said Storms. "Microsoft seems to have stepped it up a notch," he said, noting that it appears the company is taking a harder line in defining "critical" flaws as only those that don't require any user action to be exploited.

Microsoft described both the SQL Server bug and the Exchange vulnerability as elevation of privilege flaws, and will provide patches for the former to Windows Server 2003, Server 2008, Windows 2000 and all still-supported versions of SQL Server, the company said. The Exchange update applies to both Exchange Server 2003 and the newer Exchange Server 2007.

The amount of detail Microsoft tucked into the pre-patch notification for the SQL Server and Exchange Server vulnerabilities puzzled Storms, who pointed out that Microsoft specified that the former's flaw affected both WMSDE, the SQL engine added to Windows clients, and WYukon, the engine within Windows server software. "I don't know whether this is a clue [about the vulnerability] or whether they're just being more promiscuous with information," Storms said.

It doesn't appear the Microsoft will be patching an Internet Explorer vulnerability first reported in 2006, but which returned to the limelight last month when security researcher Aviv Raff claimed that it could be combined with a bug in Apple Inc.'s Safari to pose a danger to users. At the end of May, Microsoft warned users of the blended threat, and recommended that people stop using Safari.

Apple patched Safari for Windows to quash the browser's so-called "carpet bomb" bug two weeks ago.

But Storms thought there was an outside chance that Microsoft would fix IE, even though it didn't explicitly label any of the prospective patches as intended for Internet Explorer. Last year, he said, Microsoft dealt with protocol handler bugs that could be exploited by attacks against IE by fixing Windows, not the browser.

The four security updates will be posted Tuesday, July 8, around 1 p.m. EDT.


Source: ComputerWorld




All news for July 03rd, 2009:
15:20Virus Bulletin names top spam blockers
15:18Hackers take aim at ColdFusion development tool
15:17Judge overturns MySpace bullying conviction
15:07Google sees new spam players on the horizon
15:03PayPal techies hit fraudsters where it hurts
14:58Chinese web filter doesn't work on Macs
14:55Lenovo, Acer, Sony sued over China web filter
14:54Sharapova, Serena Williams used to spread malware
14:54Michael Jackson X-file scam steals passwords
14:52Waledac worm targeting July 4 spam offensive
14:51Met Police signs identity management deal
14:48Conficker: Forgotten but not Gone
14:45SmartGate hits Sydney Airport
14:44Court orders spammers to pay $3.7 million
14:43'Jailbroken' iPhones leave users more vulnerable

All news for July 02nd, 2009:
15:13Conficker cost Manchester council £1.5m
15:13Unisys puts stealth into the cloud
15:12Postini: Google's take on e-mail security
15:10Rally the troops for war on cyber crime
15:09Q&A: Jerry Thompson - BT Business director of business products and online
15:07Mozilla slates first Firefox 3.5 patch
15:05Apple patching serious SMS vulnerability on iPhone
15:03Security guard charged with hacking hospital systems
15:01Chinese security company shares huge malware database
15:00Facebook simplifies privacy settings, calls them too complex
14:59Lawsuit seeks refund for Clear subscribers
14:58TSA asked to ensure safety of customer data after Clear closing
14:56Microsoft to push IE8 at businesses next month
14:54Google: Spammers regroup after ISP takedowns
14:52We're serious about cybersecurity this time, says U.S. official



All news for July, 2009
All news for 2009 year
All news for 2008 year
All news for 2007 year
All news for 2006 year
All news for 2005 year
All news for 2004 year


DONATION: www.Anti-Keylogger.Org and www.Keylogger.Org is an independent research projects supported by a team of enthusiasts. If you find this project useful and would like to help foster its continued development, please consider making a donation.

Thanks in advance for your support!


Computer monitoring spy software |  Employee monitoring |  Internet activity everywhere |  Invisible keylogger surveillance |  Invisible keystroke recorder |  Keylogger |  Monitor kids |  Monitoring solution |  Network sniffer |  Parental control |  Password protected |  Powerful spy tool |  Powerful surveillance tool |  Record all keystrokes typed |  Record every action |  Records users activity |  Remote installation |  Remote spy software |  Remotely monitor |  Screenshot recorder |  Security tools |  Spy software |  Spying on employees |  Visited web pages | 
Keylogger.Org Site News

July 01st, 2009

Handy Keylogger added!

Spector Pro 2009 - Email Activity
Security World News
Keylogger.Org Security World News

July 03rd, 2009

Virus Bulletin names top spam blockers

Hackers take aim at ColdFusion development tool

Judge overturns MySpace bullying conviction

Google sees new spam players on the horizon

PayPal techies hit fraudsters where it hurts

Chinese web filter doesn't work on Macs

Lenovo, Acer, Sony sued over China web filter

Sharapova, Serena Williams used to spread malware

Michael Jackson X-file scam steals passwords

Waledac worm targeting July 4 spam offensive

Met Police signs identity management deal

Conficker: Forgotten but not Gone

SmartGate hits Sydney Airport

Court orders spammers to pay $3.7 million

'Jailbroken' iPhones leave users more vulnerable

Free online TV and internet radio
Voting

We are planning to redesign our site. We would like You to express your opinion in this respect. Would you like to leave the site as it is? What changes would you like to suggest?

Yes, I like the site as it is.
It's ok, but some changes are necessary.
It should be changed completely.
VotingView results

Top | home | testing and reviews | testing policy | press_releases | developers |

| articles | contest | chat | forum | sponsorship & services | contacts | links |
Top
Copyright © 2003-2009, Keylogger.Org Team. All Rights Reserved.
Use of any information from this website is permitted only with hypertext link to www.keylogger.org.