Email Alerts
-
Inside MSRC: Microsoft issues guidance on DNS server update
Microsoft's Bill Sisk of the Microsoft Security Response Center said the DNS client and server updates should be applied carefully to avoid impairing the operating system. Column
-
Microsoft issues DNS, SQL Server updates
Four security bulletins address a DNS server spoofing vulnerability and a flaw in SQL Server that could allow an elevation of privilege of an authenticated attacker. Article
-
Microsoft to issue Windows, SQL Server updates
Microsoft said it would repair vulnerabilities in SQL Server and Windows that could allow an elevation of privilege, spoofing and remote code execution. Article
-
Database patch denial: How 'critical' are Oracle's CPUs?
A recent survey found that a considerable number of users are outright rejecting Oracle's Critical Patch Updates, perhaps suggesting database administrators feel comfortable with their security defenses or find Oracle's patches to be more of a nuisan... Tip
-
Researchers defend study on patch distribution insecurities
A team of security researchers warn that a patch-based exploit generation technique could be easily carried out by an attacker. Article
-
Microsoft patches Bluetooth, Internet Explorer flaws
Dangerous holes in the Bluetooth stack in Windows could allow remote code execution. Article
-
Is attack code valuable for vulnerabilities or just a publicity stunt?
If a security company has developed attack code for a particular vulnerability, there will always be critics that cry "PR stunt." Expert Michael Cobb explains why the vulnerabilities should always be taken seriously. Ask the Expert
-
Microsoft Jet Database Engine update could be issue for admins
Deploying the updates for the Microsoft Jet Database Engine could be tricky for companies with homegrown applications. Experts are warning users to test those patches first. Article
-
Inside MSRC: Microsoft explains Word, Publisher flaws
Security patching programs are not much different than racquetball games, says Microsoft's Bill Sisk. It's all about devising a strategy early to maintain control. Column
-
Oracle fixes 41 flaws in April CPU
Attackers could exploit several Oracle flaws to compromise the confidentiality and integrity of targeted systems, Symantec said hours after Oracle's April 2008 CPU was released. Article
Security Management Strategies for the CIO