Ryan Naraine

Another Excel Flaw Found, Exploit Code Released

Officials at the Microsoft Security Response Center are scrambling to investigate a second zero-day flaw in the Excel spreadsheet program, after a private researcher released exploit code to prove the extent of the vulnerability. A company spokesperson confirmed to eWEEK that the new vulnerability could be exploited if a user is tricked into clicking on […]

Unpatched iTunes, Skype, Firefox Inviting Malware Targets

Unpatched versions of some of the most popular software applications present a bigger threat to enterprise networks than malicious software, according to a warning from Bit9, an endpoint security vendor. Bit9, of Cambridge, Mass., on June 20 released a list of 15 widely deployed applications with critical vulnerabilities that go unnoticed in enterprise IT organizations […]

Microsoft Dons New Hat

Microsofts windows Vista has a date with some of the worlds smartest hackers. The software maker will use the spotlight of the Black Hat security conference Aug. 2-3 in Las Vegas to show off some of the key security features and functionality being fitted into Vista. Microsofts appearance on the Black Hat stage is a […]

Microsoft Posts Excel Zero-Day Flaw Workarounds

Microsofts security response center is recommending that businesses consider blocking Excel spreadsheet attachments at the network perimeter to help thwart targeted attacks that exploit an unpatched software vulnerability. The Redmond, Wash., software giant published a pre-patch advisory on June 19 with a list of workarounds that include blocking Excel file-types at the e-mail gateway. File […]

Microsoft Confirms Excel Zero-Day Attack Under Way

Microsoft June 15 confirmed that a new, undocumented flaw in its widely used Excel spreadsheet program was being used in an attack against an unnamed target. The companys warning comes less than a month after a code-execution hole in Microsoft Word was exploited in what is described as a “super, super targeted attack” against business […]

Exploits Aplenty for Patch Tuesday Bugs

Less than 24 hours after the release of patches for 21 product vulnerabilities, proof-of-concept exploits are popping up on the Internet. According to the SANS ISC (Internet Storm Center), a group of volunteers who track malicious Web activity, there are at least five publicly available exploits for flaws patched in Junes Patch Tuesday—including one for […]

Microsoft Has a Big Date Set with Black Hat Hackers

Microsofts Windows Vista has a date with some of the worlds smartest hackers. The software maker will use the spotlight of the Black Hat security conference in August to show off some of the key security features and functionality being fitted into Vista. Microsofts appearance on the Black Hat stage is a first on many […]

Microsoft Sounds Malware Alarm

Microsoft security researchers have used data collected from the companys Malicious Software Removal Tool, or MSRT, to produce the clearest picture yet of the malware scourge on Windows—and its not pretty. On the eve of the TechEd conference in Boston June 11-16, the Redmond, Wash., software maker offered a rare glimpse at the extent of […]

Microsoft: Trojans, Bots Are Significant and Tangible Threat

BOSTON—Microsoft security researchers have used data collected from its MSRT (malicious software removal tool) to produce the clearest picture yet of the malware scourge on Windows — and its not a pretty sight. On the eve of the Tech 2006 conference here, the software maker offered a rare glimpse of the extent of infected Windows […]

Microsoft Rebrands Enterprise Security Push as Forefront

BOSTON—Microsofts ambitious push into the enterprise security software market has a new name. At the TechEd conference here, the software makers SASD (Security, Access and Solutions Division) unveiled the Microsoft Forefront brand, a suite of business security products across client, server and edge. The first product to assume the Forefront name is the Client Security […]