On MovieTome: Leaked images from TRANSFORMERS 2?
1 Resources for

us-cert vulnerability note vu#585137

  • Subscribe to this listing via:
  • RSS
  • Email

TechRepublic Resources

Microsoft users face two zero-day threats in a week
Microsoft has released two security advisories in the past week, confirming two separate ActiveX vulnerabilities. Exploit code is circulating for both threats, but Microsoft hasn't yet released patches. Get the details in this edition of the IT Locksmith, and learn about possible workarounds. Two ActiveX threats have emerged for...
Tags: Microsoft Corp., John McCormick, Microsoft Windows, SECURITY, ActiveX/COM/COM+/DCOM, vulnerability, US-CERT Vulnerability Note VU#585137, IT Locksmith Newsletter, Information Technology, US-CERT
Technical articles 2006-11-06

Additional Resources

Critical flaw in RealPlayer and Flash, warns US-CERT
US-CERT has issued a warning concerning an unpatched vulnerability in RealPlayer and a flaw affecting Flash files. An excerpt from Register: A flaw in RealPlayer 11 build 6.0.14.748 might be used to inject hostile code onto Windows boxes running the software, security notification firm Secunia warns....
Tags: Vulnerability, RealNetworks RealPlayer, Flaw, US-CERT, Digital Music, Digital Media, Security, Personal Technology, Consumer Electronics, Arun Radhakrishnan
Blog posts 2008-01-04
Trojan exploits Windows WMF exploit
Virus writers have released code for a Trojan that exploits aflaw in the Window Metafile WMF image format. Computers running Windows XP(SP1 and SP2) and Windows Server 2003 systems are vulnerable. Older Windows versionmay also be at risk.Computer security organizations and AV researchers havereleased information on the new threat and...
Tags: Microsoft Windows, trojan horse, WMF vulnerability
Blog posts 2006-01-03
Lock IT Down: Snort flaw opens the door to intruders
The Snort intrusion-detection system IDS is supposed to help administrators keep intruders at bay, but a recently discovered vulnerability (CERT advisory CA-2003-13, “Multiple Vulnerabilities in Snort Preprocessors”) could actually open up network access to attackers.Snort is a widely used, open source, lightweight IP network IDS that can perform real-time traffic...
Tags: information technology, John McCormick, Snort, vulnerability
Technical articles 2003-06-02
Lock IT Down: BIND vulnerability puts DNS servers at risk
Shows the vulnerability of BIND in four bugs and explains why upgrades to BIND DNS servers are so importantDNS servers are a critical element of any Internet infrastructure, and they’re among the easiest targets for hackers to attack. Even so, many administrators have reportedly failed to make vital upgrades to...
Tags: Domain names, SECURITY, Operating systems, UNIX, DNS server, server, BIND, John McCormick, Berkley Internet Name Domain, Internet Software Consortium, vulnerability
Technical articles 2001-05-21
Security+
Hi, I'm from Brazil and i'm not find any trainning course for the Security+ cert... I need a help to get this cert, how do I proceed to get this? I will know the best books and tests engines, articles etc for this cert. Thaks a lot. Paulo Demestri(sorry about...
Tags: paulinhodemestri@..., certification, Security+
Discussion threads 2007-04-16
client certificate ignore
I have a win2003 server with a server cert, and SSL enabled. It must require a client cert from a vendor. The vendor's cert is installed and mapped to a local user on the server.However, when I log in with that client cert, it indicates that "client certificate...
Tags: certification, client cert
Q&A 2005-12-22
Nasty IFRAME flaw in Internet Explorer rated "extremely critical"
A new critical vulnerability in Internet Explorer 6.0 hasbeen exposed. Exploits for the flaw have already published. However, while it'spossible to mitigate damage from this flaw, no complete method of protection iscurrently available.DetailsUS-CERT has released avulnerability report, VU#842160,concerning the newly disclosed exploit in Internet Explorer 6.0. The problem istied to...
Tags: John McCormick, Microsoft Internet Explorer, security, US-CERT, vulnerability
Technical articles 2004-11-05
Windows Vista and SBS 2003 RWW
There seems to be an issue with Windows Vista and SBS 2003 self signed certificates. How do I add them as trusted?I can logon to the main page of RWW but when I try to connect to a Server it doesn't work.Any solutions?install the certinstall the cert from SBS [its...
Tags: certification, Microsoft Internet Explorer, Microsoft Windows, Microsoft Windows Small Business Server, Microsoft Windows Small Business Server 2003, Microsoft Windows Vista, networking, security, vista, windows, wmpierro@...
Discussion threads 2006-10-25
Vague Ethernet standard exposes sensitive data on many networks
Researchers from @stake have discovered a vulnerability that has been slowly bleeding sensitive data across networks for more than a decade.The report from @stake, "EtherLeak: Ethernet frame padding information leakage," indicates that the threat derives from the fact that some Ethernet device drivers have been padding small Ethernet packets with...
Tags: @stake Inc., CERT, device driver, Ethernet, John McCormick, network, null, sensitive data, vulnerability
Technical articles 2003-01-27
Acrobat flaw threatens both Firefox and IE browsers
While initially thought to only cause exposure to random code on Web sites, an Adobe Acrobat Reader flaw can also expose the contents of a user's local hard drive to hackers. Get the details in this edition of the IT Locksmith, and get the best of the rest of recent...
Tags: Mozilla Firefox, Adobe Acrobat, Microsoft Internet Explorer, OpenOffice.org, John McCormick, OpenOffice, Web browsers, SECURITY, Acrobat flaw, OpenOffice buffer-overflow vulnerability, Web browser, vulnerability, buffer-overflow, Apple QuickTime, IT Locksmith Newsletter, Information Technology, Threat, Flaw, Office Suites, Software, Internet
Technical articles 2007-01-08
Which Cert To Go For??
I am working a LAN Admin wndows and got my net+ and a+. I decided to for mcsa security as thats the area I want to focus on then I will go from there.Has anyone has the this cert.First certI plan to go the mcsa track myself the fisrt one...
Tags: certification
Discussion threads 2005-04-14
Exploit targets flaw in Microsoft Access database
US-CERT warns against targeted phishing attacks with e-mails containing malicious Microsoft Access database files, which take advantage of a buffer overflow vulnerability. An excerpt from Heise Security: Specially crafted Microsoft Access database files can be used to attack Windows PCs, according to a warning...
Tags: Microsoft Access, Vulnerability, Microsoft Corp., Buffer-overflow, File, Flaw, US-CERT, Security, Databases, Storage, Microsoft Office, Viruses And Worms, Enterprise Software, Software, Data Management, Hardware, Office Suites, Arun Radhakrishnan
Blog posts 2007-12-14
Samba flaw opens up root access to remote attackers
The SuSE Security Audit Team has reported that a vulnerability in the Samba suite—which provides SMB-based file and printer sharing on many Linux and UNIX systems—can open up a system to a remote attack resulting in complete compromise of the system by giving the attacker "root" privileges.DetailsA News.com story on...
Tags: flaw, John McCormick, Samba, Samba flaw, vulnerability
Technical articles 2003-04-07
Which direction to go....
I have been a Support/Network Tech. for the past 4 1/2 years. I would like to become a Net Admin but I am not sure which way to go. I only have my A+ cert. but would like to continue and get my MCSE. Would the 2000...
Tags: certification
Discussion threads 2004-10-12
Don't Get Hacked: Automated Remote Vulnerability Scanning
This white paper describes advantages of using Open Source Vulnerability Analysis tools to protect the Internet facing servers. While acknowledging that Vulnerability Analysis is only a part of the solution to securing the server, it is clear that a reliable ongoing vulnerability analysis is a step in the right direction.
Tags: Vulnerability, Internet, Productivity, Servers, Hardware
White papers 2007-08-01
MSc or Professional Cert
I'm a degree holder, I just got an offer from a company that require me to take Master (3 years - part time) but the study fees will be paid fully by the company. BUT salary wise will be reduced. I wonder if it's worthy? Actually a Professional Cert or...
Tags: certification, Master, Professional
Discussion threads 2006-09-01
Internal CA Cert about to expire - what are the options?
I've recently taken over a network where my predecessor set up a Win2K server with a CA and created a cert for OWA and the like. Then sometime after that they simply disconnected the server from the network (did I mention that it was a DC as well?). To add...
Tags: Microsoft Outlook, Microsoft Windows 2000, Servers, Microsoft Office, cablefree, certification, server, network, Computer Associates International Inc.
Discussion threads 2007-04-25
US-CERT: A free source of valuable security tools
I don’t believe a day passes when I dont search for potential vulnerabilities in either new or existing information processing and delivery systems. One of my team’s responsibilities is to ensure that risk associated with known vulnerabilities is identified and properly reported to management. Our job would be...
Tags: Computer Crime, Cybercrime, Government, It Management, National Vulnerability Database, NCAS, Security, security tool, Software, Threats, Tips, Tom Olzak, tool, US-CERT, vulnerability
Blog posts 2007-02-05
Automated Vulnerability Detection System
Vulnerability assessments have been recently identified, by independent market research, as one of the most sought after managed security outsourcing services. As with the outsourcing of any business function, the final decision is based on whether or not a trusted partner can do the job more efficiently, cheaper, and perhaps...
Tags: Vulnerability Assessment, Outsourcing, Security, It Operations, Business Operations, Outsourcing & Subcontracting
White papers 2006-08-16
  • << Previous
  • page 1 of 1
  • Next >>


Microsoft PowerPoint Basics
This Microsoft PowerPoint Basics presentation provides a preformatted solution for teaching end users Microsoft PowerPoint fundamentals. The presentat ...
Buy Now
Windows XP Professional Administration
Microsoft Windows XP's enhanced functionality and business productivity improvements can provide a significant payoff for your organization--but only ...
Buy Now