Monday, October 19, 2009

Mozilla blocks Microsoft

Part of super patch tuesday was a plug in for firefox called .NET framework assistant. It opened up firefox to vulnerabilities. Mozilla released a patch to block the plugin on friday. What a system MS has- secure our software by exploiting someone else's!


http://www.networkworld.com/news/2009/101909-mozilla-blocks-microsofts-sneaky-firefox.html

Saturday, October 10, 2009

Unlucky 13 sets record as biggest-ever patch day

I'm not sure if this is good news or not??? Ready, set, go: october 13th is patch tuesday from hell. The joys of a windows system. Have a few friends over, maybe I'll order pizza and beer- really make a night of it! I've already fielded a couple calls, apparently the tv news had a story on this also. See you all wednesday night.

Microsoft plans monster Patch Tuesday

Microsoft Security Bulletin

Friday, October 2, 2009

Icann gains independence from the US

Anything that removes gov't control makes sense. I just wonder though if it is going to be like the UN: We (the US) pays 97% of all the bills, financially support most countries, and have to take crap from clowns like putin, el-gadhafi, musharraf, & chavez. This is getting too close to politics now.


http://news.zdnet.co.uk/internet/0,1000000097,39780163,00.htm

Thursday, September 24, 2009

Here's 2 articles from the New York Times that were run a week or so ago. The first one ran on 9/14 explaining that the NYT website was hacked and some rogue malware ads were placed on the server. The 2nd article (apparently unrelated) is from the very next day and it says that IT depts. prioritize the wrong threats and are focused on old problems. I just thought the contrast 1 day apart was very ironic.


http://www.nytimes.com/2009/09/15/technology/internet/15adco.html?_r=2

http://bits.blogs.nytimes.com/2009/09/15/security-pros-are-focused-on-the-wrong-threats/?ref=technology

Tuesday, September 15, 2009

DNSSEC

here's a good article that ties into last weeks class about DNS security. looks like all root servers will be on DNSSEC within a couple more years.

http://searchsecurity.techtarget.com/news/interview/0,289202,sid14_gci1367915,00.html?track=NL-102&ad=725126USCA&asrc=EM_NLN_9223953&uid=9172669

Monday, September 14, 2009

Apple missed security boat

Here's a good one. Microsoft actually one upped Apple. Given MS reactive nature to situations, hard to believe they're ahead of the curve on this. It is so simple a concept, and yet can help defeat buffer overflows. Can't believe Apple missed it.


http://www.networkworld.com/news/2009/091409-apple-missed-security-boat-with.html

Sunday, September 13, 2009

Microsoft putting money where mouth is on open source

Here's an interesting, albeit, short article. I have a question: WHY? These are the same people that won't give us the time of day for free and now they are backing an Open Source initiative? Is this just a legal rouse to lay claim to more open source code? Given their very public statements about open source in the past, what are we supposed to think?




http://www.smartbrief.com/news/comptia/storyDetails.jsp?issueid=F9126A3F-2A32-4868-BF55-33C45B4273A7&copyid=B00706CE-2753-4419-91AC-D0B7D865B586&brief=comptia&sb_code=rss&&campaign=rss