Showing posts with label Windows update. Show all posts
Showing posts with label Windows update. Show all posts

Wednesday, December 27, 2006

First major flaw in Windows Vista !!

Getting all excited to deploy Vista in your agency? You might want to think again. The New York Times reports that researchers and hackers are finding serious problems with "the last Windows."

Among the flaws: one described by Russian programmers that allows hackers to increase a user’s privileges on all of the company’s recent operating systems, including Vista. Another major flaw was found by the firm Determina in the new Internet Explorer 7, which could be a gateway for infecting user machines with malware if they visit certain sites. 7 browser.

“I don’t think people should become complacent,” said Nand Mulchandani, a vice president at Determina. “When vendors say a program has been completely rewritten, it doesn’t mean that it’s more secure from the get-go. My expectation is we will see a whole rash of Vista bugs show up in six months or a year.”

The Determina executives said that by itself, the browser flaw that was reported to Microsoft could permit damage like the theft of password information and the attack of other computers.

Theoretically, IE7 is a sandbox that prevents attacks on Windows systems outside of the browser, even if the browser itself is compromised.

However, when coupled with the ability of the first flaw that permits the change in account privileges, it might then be possible to circumvent the sandbox controls, said Alexander Sotirov, a Determina security researcher. In that case it would make it possible to alter files and potentially permanently infect a target computer. This kind of attack has yet to be proved, he acknowledged.

Determina also discovered a bug that would make it possible for an attacker to repeatedly disable a Microsoft Exchange mail server simply by sending the program an infected e-mail message, the Times said.


Article 2

Windows Vista, the new computer operating system that Microsoft Corp. is touting as its most secure ever, contains a programming flaw that might let hackers gain full control of vulnerable computers.

Microsoft (nasdaq: MSFT - news - people ) and independent security researchers, however, tried to play down the risk from the flaw, which was posted on a Russian site recently and is apparently the first affecting the new Vista system released to larger businesses in late November.

The software company said it was investigating the threat but found so far that a hacker must already have access to the vulnerable computer in order to execute an attack.

That could occur if someone is actually sitting in front of the PC or otherwise gets the computer's owner to install rogue software, said Mikko Hypponen, chief research officer for Finnish security research company F-Secure Corp.

"The bottom line is you couldn't use a vulnerability like this to write a worm or hack a Vista system remotely," Hypponen said Tuesday. "It only has historical significance in that it's the first reported vulnerability that also affects Vista. It's a nonevent in other ways."

Attackers with low-level access privileges on a vulnerable machine could theoretically use the flaw to bump up their status, ultimately gaining systemwide control, Hypponen said.

The flaw affects older Windows systems, too, and Hypponen said vulnerabilities like these are quite common and can be fixed with a software patch, which Microsoft releases on the second Tuesday of each month except for the most serious threats. The flaw remains a proof of concept, with no one known to have actually launched an attack with it, Hypponen said.

In a posting on Microsoft's security-response Web journal, a senior security manager, Mike Reavey, said he remained confident "Windows Vista is our most secure platform to date."

Vista, the first major Windows upgrade since Windows XP launched in 2001, was made available Nov. 30 to businesses that buy Windows licenses in bulk. Consumers generally won't be able to get Vista until Jan. 30.

In trying to improve security, Microsoft redesigned its flagship operating system to reduce users' exposure to destructive programs from the Internet. But most security researchers believe a complex product like Vista can never be error-free, so it was a matter of time for someone discovered a security vulnerability.



Tuesday, December 26, 2006

Protect your PC - Free of cost !!- A guide to free antivirus , antispyware and firewall

In this cyberworld, viruses and spywares are no strangers to any PC users. But Most computer users never care to have an anitivirus or antispyware and even if someone wants to have one they would never like to spend 40$ – 50$ for such a pack.I have listed some essential and free virus/spyware tools. Just because these tools are free doesnt mean these are not effective, AVG although free is recommended and used by most PC users in the world.

Some users may tend to go for pirated versions of Norton/Mcafee but most of these cracked/hacked versions of these antivirus softwares themselves have spywares built in with them.So it is always safe to download these tools from their respective websites.

Antivirus Tools:

1.AVG ( http://www.grisoft.com )

AVG Free edition is one of the widely used free antivirus tool, it provides almost all features of paid versions. AVG free edition has real time protection,automatic updates, full system scan and scanning selected areas of your computer. It also has email scanninga and scanning inside compressed files.The only difference from professional edition of AVG is the cuctomer care support, otherwise there is no difference in the service.This is fully functional software unlike most trial softwares, and the software is valid as long as you wish to have it.

Other notable Antivirus softwares include :

2.Free Avast! 4 Home Edition (http://www.avast.com/eng/avast_4_home.html)

3.If interested checkout some of other antivirus partners for Windows who offer free trials from 90 days to 1 year.

http://www.microsoft.com/athome/security/downloads/default.mspx

Antispyware Tools :

1. Windows Defender : It is the most(more than 25 million users) used free antispyware tool from Microsoft, It offers full real time protection, anti spyware scans and also automatic updates every day.

http://www.microsoft.com/athome/security/spyware/software/default.mspx

2. Ad-Aware SE Professional : This is one of the widely used anti-spyware tools minus real time protection, this is serious disadvantage otherwise Ad-Aware works just fine.

http://www.lavasoftusa.com/software/adaware/

3. Ewido anti spyware : Same as Ad-Aware , but gives a 30 day trial of its auto-protect option.

http://www.grisoft.com

Firewalls :

Zone Alarm is the widely used free firewall. It provides all basic features of any paid verion of firewalls.

(http://www.zonelabs.com/store/content/company/products/znalm/freeDownload.jsp)

__________________________________

For any info mail me kj.dinesh@gmail.com K J Dinesh

Sunday, May 14, 2006

Zero day attack...

According to eWeek, there is a critical flaw in Microsoft Word that is being leveraged successfully to compromise fully patched Windows systems. The issue is designated as a zero-day attack because individuals responsible for the security incident are taking advantage of a flaw that was previously unknown.

Victims, it is reported, receive an e-mail that appears legitimate with an enclosed Word document. Once opened, the Word document launches a Trojan-like program that opens a back door into the affected system. Also troubling is the fact that neither the corrupt attachment nor the malware that it executes are currently being detected by anti-virus products. For all intents and purposes, attackers can gain full control of a compromised system using the method described in the article.

As there is currently no patch for the vulnerability being exploited, the recommended course of action for both home and corporate users is to be vigilant and reject any unexpected e-mail messages with Word attachment, even if they appear to come from legitimate sources.

It seems Microsoft is working on this and may release a patch on 13 jun 2006.But Antivirus vendors may introduce new updates much sooner.