Email Alerts
-
SANS researcher: Implement every Java security fix
Malware writers see Java as a soft target because enterprises are not keeping it patched. News
-
Microsoft patches 49 security vulnerabilities in massive release
Huge update from Microsoft includes critical patches for Internet Explorer and fixes a flaw exploited by Stuxnet. Article
-
Is a full vulnerability disclosure strategy a responsible approach?
When it comes to vulnerability disclosure, is it responsible for an infosec research firm to release all the details of a flaw before patching measures are in place? Expert Nick Lewis examines the question in this response. Ask the Expert
-
Sick of news about the monthly patch process? You need it; here's why
Senior site editor Eric B. Parizo chides the grizzled security vets who are tired of news coverage about monthly and quarterly patches. Instead, he says, they should realize how critical it is. Column
-
September 2010 Microsoft security bulletins to fix 13 vulnerabilities
Among the nine bulletins are fixes for Windows, IIS and Microsoft Office, but probably not a fix for the recently discovered IE8 CSS bug that can harvest social network data. Article
-
Creating a third-party security policy to prevent a software exploit
Third-party software vulnerabilities are one of the most likely attack vectors in the information security landscape today. In this expert response, Nick Lewis discusses how to prevent these vulnerabilities from becoming exploits. Ask the Expert
-
Adobe: Automatic updates and creating 'perfect' software
Brad Arkin discusses Adobe's addition of automatic update downloads for Reader and Acrobat, and why it took Adobe so long to offer automatic updates. Plus he tackles the feasibility of making "perfect" software. Video
-
Reader overflow vulnerability to get emergency Adobe patch
Security updates from Adobe will patch a critical flaw that was discussed at last week's Black Hat conference. Article
-
August Microsoft security bulletins to fix record-tying 34 vulnerabilities
Microsoft will release 14 security bulletins this month, the most the software giant has ever released in one month. Article
-
TippingPoint Zero Day Initiative to push patch deadline on vendors
TippingPoint's vulnerability disclosure team will give vulnerable vendors six months to create a patch. Article
Security Management Strategies for the CIO