Welcome to HashDot.com
Search  


Contact Us

Earn Money
Earn money online, For lifetime Hashdot membership and for Advertisement details..
Click Here

Login




 


 Log in Problems?
 New User? Sign Up!

  
Security hole digs into Microsoft
Posted by: Anonymous on Apr 02, 2006 - 12:21 PM
Microsoft 
SEATTLE -- For the second time this year, Microsoft is scrambling to fix a critical security hole in its Internet Explorer Web browser, a flaw cybercrooks found and have already begun to exploit.
The flaw allows intruders to seize control of the PCs of anyone visiting corrupted websites. Thursday, cybercrooks stepped up their weeklong assault by releasing e-mail spam that entices victims to visit such websites, says Dan Hubbard, research director at tech security firm Websense.
Spam recipients are asked to click on links to news stories about the U.S. dollar vs. other currencies. After clicking on the link, the user's PC freezes up for 30 seconds or so, as the website installs a software program that captures online bank account log-ins, then sends the log-ins back to cybercrooks. "You've really got to be confident about the website you're visiting," Hubbard says.
Microsoft security chief Stephen Toulouse downplays the threat. "We're not seeing a lot of attempts to exploit this," he says. Even so, Microsoft recommends turning off IE's "active scripting" function until an official patch is ready.
Instructions are at support.microsoft.com/security.
The larger issue: Microsoft is being forced for the second time in three months to deal with a feared phenomena in tech security: a vulnerability for which no patch exists, known as a "zero-day" threat.

In December, cybercrooks moved quickly to exploit a similar Internet Explorer flaw, hijacking hundreds of thousands of PCs before Microsoft made a patch available. The emergence of zero-day threats has raised complex dilemmas for the world's largest software maker.

Among them:

*Timing of patches. Microsoft issues security fixes on the second Tuesday of the month. The company plans to issue a patch April 11, the next scheduled release date.

It needs that time to make sure the patch works in 23 languages and doesn't interfere with applications tied into the browser, Toulouse says.

Meanwhile, tech security companies eEye and Determina this week made temporary patches available for free. Microsoft says it can't vouch for the third-party patches.

Still, eEye founder Marc Maiffret contends Microsoft's monthly patch cycle "isn't good enough to protect customers from zero-day threats."

*Widening attacks. As tech suppliers push more home-entertainment and workplace tools online, they are opening virgin territory for cybercrooks.

Zero-day threats lurk anywhere a PC user supplies data to online software applications such as browsers, e-mail or instant-messaging services and music or video players. Crooks are becoming adept at supplying data that tricks the application into giving up control of the PC.

"None of this activity would be visible to an infected user," says Charles Renert, research director at Determina.

To see more of USAToday.com, or to subscribe, go to http://www.usatoday.com
© Copyright 2006 USA TODAY, a division of Gannett Co. Inc.

Security hole digs into Microsoft | Log-in or register a new user account | 2 Comments
Comments are statements made by the person that posted them.
They do not necessarily represent the opinions of the site editor.

Re: Security hole digs into Microsoft

(Score: 1)
by labirex6915 on Dec 11, 2007 - 03:09 PM
(User information  | Send a message 
tvporno gratis sessogratis com sexi scop bergamo minorenni calde bionde movi mutande a gambe aperte foto mature da chiavare video sessuali gratis voglia di fica film gratis escort mature a torino minorenni calde foto bocchini culo pompini bocca piena foto nudo femminile privato la zia in calore culo negre casalinghe tettone racconti cuckold storie porno com ciccione americane hard sesso senza scaricare pornosex in elena grimaldi free movies foto clitoridi grossi video di ragazze famose che fanno sesso zoccole pompinare ano femminile video di cicciolina scat cercasi sciavo tv hard libere tette maxi video porno da guardare gratis senza soldi www video casalinghe it anteprima di trombate www myx figa it incesto nonna nipote ragazze sfondate www calendari hard it mature hard tvporno gratis shemales reggio emilia sperma dentro la fic cerco prostitute a palermo fica leccata vecchi gay scopano fregna calda treviso amatoriali il culo della canalis video valeria cavalli pelosa giovanni Read the rest of this comment...

Re: Security hole digs into Microsoft

(Score: 1)
by labirex6915 on Dec 14, 2007 - 04:59 PM
(User information  | Send a message 
brother sister sex celebrity penis star trek nude ***** power gay hentai yaoi jennifer ellison sexy independent irish escorts fisting central italian male models gay cartoons little hairy vagina pre teen boy erection boys erection daily porn dildo in use the temptations my girl mature dames gay cartoons teen advice vintage porn movies desi nudes mom incest simsons sex gwen stefani ass buck naked sex vacation girls gone bad diaper peeing big booty black girls pinup art tawnee and tori stone gay fat men porn bald teen ***** teen wet ***** big black women with asses glory hole ***** heather thomas nude secretaries in pantyhose stockings husband punishment humiliation thumbzilla babes free adult sex videos naked guys teen nude models busty petite as fitness models gay models in underwear 13 year old nudists big tits big tits free bad ***** brazilian girl street tits pros and cons of school uniforms free hentai anime movies sex vacation fawnia mondey sucking dick glamour girl Read the rest of this comment...

Web site powered by PostNuke ADODB database library PHP Language

All logos and trademarks in this site are property of their respective owner. The comments are property of their posters, all the rest (c) 2008 by me
This web site was made with PostNuke, a web portal system written in PHP. PostNuke is Free Software released under the GNU/GPL license.

You can syndicate our news using the file backend.php