Andrew Berges

Configuration Manager, Security, and other musings from a self-confessed IT geek.

Browse by Tags

All Tags » Microsoft (RSS)
Deleting a Retired DP
Ran into a situation where I needed to remove a DP from all packages since it have already been previously decommissioned.  I’m linking to this extremely...
CVE-2008-3648: Remote Code Execution Exploit with Windows XP nslookup.exe
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3648 Overview nslookup.exe in Microsoft Windows XP SP2 allows user-assisted remote attackers to execute arbitrary...
Secunia: Microsoft Help Workshop Two Buffer Overflow Vulnerabilities
porkythepig has discovered two vulnerabilities in Microsoft Help Workshop, which can be exploited by malicious people to compromise a user's system. Microsoft...
F-Secure Antivirus Research Weblog: Further Information on the Pocket PC MMS Exploit
We have done further study on the MMS exploit discovered by Collin Mulliner. The exploit affects most Pocket PC phone edition and Windows Mobile devices...
Trend Micro: MS07-004 code in the WILD
It’s only been a few days since Microsoft released its first update for 2007 and already, the code for MS07-004 exploit has been introduced to the malicious...
Fundamental Computer Investigation Guide for Windows Now Available!
Microsoft is pleased to announce the Fundamental Computer Investigation Guide for Windows , which is now available for downloading. Best Practices and...
Posted: Jan 16 2007, 09:10 AM by aberges | with no comments
Filed under: ,
VeriSign Offers Hackers $8,000 Bounty on Vista, IE 7 Flaws
The company's iDefense Labs is placing cash bounties on remote code execution holes—and exploit code—in Windows Vista and Internet Explorer 7. Link to...
Microsoft Malformed WMF DoS
http://www.securiteam.com/exploits/5HP0C0AKAC.html A vulnerability in Microsoft's WMF parser allows attackers to cause the operating system to stop responding...
Microsoft Excel Unspecified Code Execution Vulnerability
Jie Ma has reported a vulnerability in Microsoft Excel, which can be exploited by malicious people to compromise a user's system. Link to Microsoft Excel...
Internet Explorer Memory Corruption Weakness
Michal Zalewski has discovered a weakness in Internet Explorer, which can be exploited by malicious people to cause a DoS (Denial of Service). Link to...
ISC: Concurrency strikes MSIE (potentially exploitable msxml3 flaws) (NEW)
Published: 2007-01-05, Last Updated: 2007-01-05 05:35:34 UTC by Adrien de Beaupre (Version: 1) As reported on full-disclosure, MS Internet Explorer is...
Windows Defender expired last December 31, 2006.. ensure you have new version
Get the new version at Microsoft Website - http://www.microsoft.com/athome/security/spyware/software/default.mspx Error that you might see is "Windows...
Windows Mobile MMS Exploit in the Wild
As reported by F-Secure and Symantec , an exploit was publicly disclosed at the Chaos Communication Conference on December 29th. Currently, the exploit...